Isometric network nodes highlighting critical software vulnerabilities and cyber attacks.

Daily Cybersecurity News - June 6, 2026

Critical Everest Forms Pro Flaw Exploited

Hackers are actively exploiting a critical flaw in Everest Forms Pro to seize full control of WordPress sites.

CVE-2026-3300 is a PHP code injection flaw in the Calculation Addon's eval() function. Attackers inject malicious PHP through form fields on any site using the Complex Calculation feature. CVSS 9.8, actively exploited in the wild.

Affects Everest Forms Pro versions up to and including 1.9.12, patched in 1.9.13.

Widespread exploitation observed since April 13, 2026. No verified site count available.

AI Agent Finds 21 FFmpeg Zero Days

An AI agent just found 21 unknown bugs in FFmpeg, the media library inside video tools everywhere.

The startup reported them this week. Google also released Chrome 149 fixing 429 issues, a new record for one update.

FFmpeg ships in browsers, players, encoders, and servers across Linux, Windows, and macOS setups.

Chrome 149 alone closed more flaws than any prior release.

Cisco SD WAN Manager Flaw Under Attack

Cisco SD WAN Manager has a remote code execution flaw that attackers are already exploiting in the wild.

CVE-2026-20245 scores CVSS 7.8 and affects all Cisco Catalyst SD-WAN deployment types: on-prem, Cloud-Pro, Cisco Managed Cloud, and FedRAMP.

No patch exists yet.

Exploitation requires netadmin privileges, which attackers can obtain by chaining CVE-2026-20182 or CVE-2026-20127.

The flaw surfaced in a June advisory with no fixed build listed.

Miasma Worm Hits Microsoft GitHub Repos

Miasma worm has spread into Microsoft GitHub repositories, infecting 73 repos across four organizations.

The campaign reuses self-replicating worm tactics seen in prior supply chain incidents, but now focuses on high-profile Microsoft-owned code instead of smaller projects.