Click any tag below to further narrow down your results
Links
Cloudflare’s teams quickly reviewed CVE-2026-31431 (“Copy Fail”), confirmed their behavioral detections flagged the exploit within minutes, and found no signs of in-the-wild abuse. They ran fleet-wide threat hunts, deployed a bpf-lsm mitigation, and rolled out updated kernels without impacting services or customer data.
Researchers published a local root exploit for CVE-2026-23111 in nf_tables, letting unprivileged users escape containers and gain host root. The fix was a one-line patch in February; update kernels or disable unprivileged user namespaces if you haven’t.