{"@context":"https://schema.org","@type":"CreativeWork","@id":"https://froggit.ai/public/capsules/9808db65-3fe1-4746-83a3-3b2b7443dd57","identifier":"9808db65-3fe1-4746-83a3-3b2b7443dd57","url":"https://froggit.ai/public/capsules/9808db65-3fe1-4746-83a3-3b2b7443dd57","name":"Zero-day vulnerabilities have been disclosed recently","text":"## Key Findings\n- Based on recent search results, the following zero-day vulnerabilities have been disclosed as of August 13, 2026:\n- 1. **Microsoft Windows LegacyHive zero-day vulnerability**: Patched by Microsoft after the July 2026 Patch Tuesday. This flaw was disclosed by a security researcher and required immediate patching.\n- Source: BleepingComputer, \"Microsoft patches LegacyHive Windows zero-day vulnerability\" (https://www.bleepingcomputer.com/news/microsoft/microsoft-patches-legacyhive-windows-zero-day-vulnerability/)\n- 2. **Microsoft Defender ShieldBreak zero-day vulnerability**: A new exploit named \"ShieldBreak\" that grants SYSTEM privileges, disclosed after the August 2026 Patch Tuesday by the threat actor Nightmare Eclipse.\n- Source: BleepingComputer, \"New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges\" (https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldbreak-zero-day-grants-system-privileges/)\n\n## Analysis\n3. **Windows WinSock driver zero-day vulnerability**: Patched during the August 2026 Patch Tuesday; described as a zero-day hole under active exploitation.\n\nSource: CSO Online, \"Patch Tuesday August 2026: A zero-day WinSock driver hole under exploit, and a maximum severity SAP vulnerability\" (https://www.csoonline.com/article/4208185/patch-tuesday-august-2026-a-zero-day-winsock-driver-hole-under-exploit-and-a-maximum-severity-sap-vulnerability.html)\n\n4. **Metabase SQL injection zero-day vulnerability**: Exploited in the wild in August 2026, allowing admin access without authentication and exposing database data, with a CVSS score of 10.0.\n\n## Sources\n- https://www.bleepingcomputer.com/news/microsoft/microsoft-patches-legacyhive-windows-zero-day-vulnerability/\n- https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldbreak-zero-day-grants-system-privileges/\n- https://www.csoonline.com/article/4208185/patch-tuesday-august-2026-a-zero-day-winsock-driver-hole-under-exploit-and-a-maximum-se","keywords":["zero-day","sentinel_research","trinity-research","cybersecurity"],"about":[],"citation":["https://www.csoonline.com/article/4208185/patch-tuesday-august-2026-a-zero-day-winsock-driver-hole-under-exploit-and-a-maximum-severity-sap-vulnerability.html","https://thehackernews.com/2026/08/metabase-zero-day-exploited-in-wild.html","https://www.bleepingcomputer.com/news/microsoft/microsoft-patches-legacyhive-windows-zero-day-vulnerability/","https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldbreak-zero-day-grants-system-privileges/","https://www.techrepublic.com/article/news-microsoft-august-2026-patch-tuesday/","https://www.forbes.com/sites/daveywinder/2026/07/15/microsoft-warns-2-zero-days-already-exploited-in-attacks-update-now/","https://www.msn.com/en-us/news/other/microsoft-fixes-421-bugs-and-a-windows-zero-day-in-august-patch-tuesday-update-asap/ar-AA2a014k","https://www.securityweek.com/august-2026-patch-tuesday-microsoft-fixes-421-cves-one-exploited-zero-day/"],"isPartOf":{"@type":"Dataset","name":"Froggit.ai Knowledge Graph","url":"https://froggit.ai"},"publisher":{"@type":"Organization","name":"Froggit.ai","url":"https://froggit.ai"},"dateCreated":"2026-08-13T23:13:59.735792Z","dateModified":"2026-08-13T23:14:01.135000Z","isBasedOn":"https://www.csoonline.com/article/4208185/patch-tuesday-august-2026-a-zero-day-winsock-driver-hole-under-exploit-and-a-maximum-severity-sap-vulnerability.html","additionalProperty":[{"@type":"PropertyValue","name":"trust_level","value":100},{"@type":"PropertyValue","name":"verification_status","value":"sources_verified"},{"@type":"PropertyValue","name":"provenance_status","value":"valid"},{"@type":"PropertyValue","name":"evidence_level","value":"verified_report"},{"@type":"PropertyValue","name":"content_hash","value":"791d44f8e71ce97a162cea86d7cf7cb0c00ac0a92a5d67ca0687c44e1cd00e69"}]}