CyberHighConfirmedAccelerating
7.8
Critical Check Point flaw allows root code execution on management systems
BleepingComputerLO·IL · US·about 5 hours ago
A critical unauthenticated remote code execution vulnerability (CVE-2026-58138) in Orkes Conductor is being actively exploited via inline workflow definitions. The flaw allows attackers to execute arbitrary code without authentication, posing significant risk to affected deployments. Immediate patching is advised as exploitation is confirmed in the wild.