CVE-2026-8037 in Progress Kemp LoadMaster Is Already Under Attack: RCE-Risk Flaw Demands Urgent Review

Colleagues, a cybersecurity update: exploitation attempts targeting CVE-2026-8037 in Progress Kemp LoadMaster have been observed.
This is a pre-auth command-injection flaw in the API that could lead to remote code execution without credentials. Attacks began on 29 June, and a PoC is already available.
According to eSentire, the attempts so far have failed, but the availability of technical details increases the risk of further attacks.
Why it matters: if you use LoadMaster, urgently check for available updates and restrict external requests.
Have you already reviewed your instances?
#cybersecurity #vulnerability #RCE #ThreatIntel

