Atlassian Rovo, Metabase, LoadMaster zero-days & active exploitation
Atlassian Rovo exfiltrates Jira/Confluence data via prompt injection; Metabase zero-day (CVSS 10.0, no CVE) enables unauthenticated admin access in active breaches; Progress LoadMaster command injection (CVE-2026-8037) added to CISA KEV after 792 exploit attempts.
Read the full briefing →