Cyber Intelligence

Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild

Medium Severity Global
Date Occurred Sep 19, 2026 08:18 UTC
Event Type Cyber Intelligence
Source TheHackerNews
Recorded Sep 19, 2026
Full Description

A critical vulnerability impacting Orkes Conductor is being actively exploited in the wild, according to Fortinet. The vulnerability in question is CVE-2026-58138 (CVSS v3.1 score: 9.8/CVSS v4 score:

Event Metadata
  • ID #32824
  • Type Cyber Intelligence
  • Region Global
  • Severity Medium
  • Indexed Sep 19, 2026