Bottom line: The 2026 Pwn2Own Ireland event demonstrated the industry's commitment to security by publicly disclosing vulnerabilities in multiple products.
What's happening: Researchers from the USA and Israel exploited vulnerabilities in Adobe Acrobat (CVE-2022-42172, CVSS score 9.8) and Cisco WebEx (CVE-2022-22948, CVSS score 9.1) to gain unauthorized access to systems, while participants from the EU demonstrated the impact of phishing attacks on Microsoft Office (CVE-2022-30228, CVSS score 8.8). The event was held in Dublin, Ireland, from May 9-12, 2026.
What to do: Security leaders should review their product vulnerabilities and implement patches for Adobe Acrobat and Cisco WebEx, and educate users about phishing attacks and their impact on Microsoft Office.