WizCase Report: Vulnerabilities found in WD My Book, NetGear Stora, SeaGate Home, Medion LifeCloud NASSecurity Affairs·Nov 26, 21:19 UTC · Nov 26, 2020VulnerabilityCVE-2018-18472CVE-2018-1847160
XML external entity flaw affects Sauter building automation productSecurity Affairs·Nov 5, 10:32 UTC · Nov 5, 2018VulnerabilityCVE-2018-1791260
September 2025 CVE LandscapeRecorded Future·Oct 17, 00:00 UTC · Oct 17, 2025Exploit / PoC in the wildCVE-2025-53690CVE-2021-21311CVE-2025-20333+6 CVEs60
ToolShell: a story of five vulnerabilities in Microsoft SharePointKaspersky Securelist·Jul 25, 07:00 UTC · Jul 25, 2025Vulnerability in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs160
Critical Flaw in ESET Antivirus Exposes Mac Users to Remote HackingThe Hacker News·Feb 28, 14:06 UTC · Feb 28, 2017Exploit / PoCCVE-2016-9892CVE-2016-071860
Macro Intruders: Sneaking Past Office DefensesCisco Talos·Aug 2, 13:42 UTC · Aug 2, 2016Exploit / PoC in the wild60
August 2025 CVE LandscapeRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Ransomware in the wildCVE-2025-8088CVE-2025-7775CVE-2025-57819+5 CVEs60
New GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML FilesThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoCCVE-2026-4558560
Persistent Magento backdoor hidden in XMLSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Malware in the wildCVE-2024-20720CVE-2026-7565060
Atlassian fixed maximum severity flaw CVE-2025Security Affairs·Dec 15, 15:03 UTC · Dec 15, 2025Exploit / PoCCVE-2025-66516CVE-2025-54988CVE-2021-39227+1 CVEs60
Maximum-severity XXE vulnerability discovered in Apache TikaSecurity Affairs·Dec 6, 00:03 UTC · Dec 6, 2025VulnerabilityCVE-2025-66516CVE-2025-5498860
Researchers discovered a code execution flaw in NSA GHIDRASecurity Affairs·Oct 9, 07:21 UTC · Oct 9, 2019VulnerabilityCVE-2019-1694160
Microsoft Patch TuesdayCisco Talos·Jul 11, 19:59 UTC · Jul 11, 2017VulnerabilityCVE-2017-8463CVE-2017-8584CVE-2017-8589+22 CVEs60
U.S. CISA adds an OSGeo GeoServer flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 12, 09:24 UTC · Dec 12, 2025Exploit / PoC in the wildCVE-2025-58360CVE-2024-3640160
CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV CatalogThe Hacker News·Dec 12, 05:04 UTC · Dec 12, 2025Exploit / PoC in the wildCVE-2025-58360CVE-2024-3640160
Zoom and Xerox Release Critical Security Updates Fixing Privilege Escalation and RCE FlawsThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025VulnerabilityCVE-2025-49457CVE-2025-8355CVE-2025-835660
Experts uncovered novel Malware persistence within VMware ESXi HypervisorsSecurity Affairs·Jun 13, 20:17 UTC · Jun 13, 2023Malware155
CVE-2022-41040 and CVE-2022-41082 – zeroKaspersky Securelist·Dec 19, 16:07 UTC · Dec 19, 2022VulnerabilityCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
PoC released for CVE-2020Security Affairs·Jul 23, 16:37 UTC · Jul 23, 2020Exploit / PoCCVE-2020-114760
Experts found a critical vulnerability in NSA Ghidra toolSecurity Affairs·Mar 21, 08:35 UTC · Mar 21, 2019Vulnerability55
Micropatch prevents malicious PDFs from Calling HomeSecurity Affairs·Feb 21, 20:30 UTC · Feb 21, 2019VulnerabilityCVE-2018-499360
September 2018 Security Notes address 14 flaws in SAP productsSecurity Affairs·Sep 12, 14:28 UTC · Sep 12, 2018VulnerabilityCVE-2018-2458CVE-2018-2462CVE-2018-246560
Microsoft Patch Tuesday for April 2015: 11 Bulletins ReleasedCisco Talos·Apr 14, 11:40 UTC · Apr 14, 2015VulnerabilityCVE-2015-1641CVE-2015-1649CVE-2015-1650+13 CVEs60
Kaspersky Security Bulletin 2006: Internet AttacksKaspersky Securelist·Feb 27, 20:48 UTC · Feb 27, 2007Advisory in the wildCVE-2005-1921CVE-2005-0116CVE-2005-195060
Pre-auth RCE in enterprise Java hits Bonita and OFBiz serversHelp Net Security·Aug 5, 00:00 UTC · Aug 5, 2026VulnerabilityCVE-2026-31986160
Ivanti, Fortinet, and SAP Release Patches for Multiple Critical VulnerabilitiesThe Hacker News·Jun 12, 18:42 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-25089CVE-2026-10520CVE-2026-10523+4 CVEs160
EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesThe Hacker News·Jun 7, 15:47 UTC · Jun 7, 2026Malware155
Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation FlawsThe Hacker News·May 18, 17:02 UTC · May 18, 2026VulnerabilityCVE-2026-8043CVE-2026-44277CVE-2026-26083+8 CVEs160
Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent PatchThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025VulnerabilityCVE-2025-66516CVE-2025-5498860
U.S. CISA adds CrushFTP, Google Chromium, and SysAid flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 24, 06:48 UTC · Jul 24, 2025Exploit / PoC in the wildCVE-2025-54309CVE-2025-6558CVE-2025-2776+2 CVEs60
SysAid Patches 4 Critical Flaws Enabling Pre-Auth RCE in OnThe Hacker News·Jul 23, 09:22 UTC · Jul 23, 2025VulnerabilityCVE-2025-2775CVE-2025-2776CVE-2025-2777+3 CVEs60
GitHub Uncovers New ruby-saml Vulnerabilities Allowing Account Takeover AttacksThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025VulnerabilityCVE-2025-25291CVE-2025-25292CVE-2025-25293+1 CVEs60
U.S. CISA adds Adobe Commerce and Magento, SolarWinds Serv-U, and VMware vCenter Server bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 21, 08:29 UTC · Jul 21, 2024Exploit / PoC in the wildCVE-2024-34102CVE-2024-28995CVE-2022-2294860
A patched Windows attack surface is still exploitableKaspersky Securelist·Mar 14, 10:00 UTC · Mar 14, 2024Vulnerability in the wildCVE-2022-22047CVE-2022-37989CVE-2022-29104+3 CVEs60
Attacks on web applications spike in third quarter, new Talos IR data showsCisco Talos·Oct 24, 12:00 UTC · Oct 24, 2023Ransomware60
Messages Sent Through Zoom Can Expose People to CyberInfosecurity Magazine·May 25, 13:47 UTC · May 25, 2022VulnerabilityCVE-2022-22784CVE-2022-22787CVE-2022-22785+1 CVEs60
Juniper releases barrage of security fixes for security, networking devicesHelp Net Security·May 28, 11:18 UTC · May 28, 2020Exploit / PoC in the wildCVE-2019-0006CVE-2019-0007CVE-2015-1283+4 CVEs60
Three flaws in Nitro Pro PDF reader expose businesses to hackSecurity Affairs·May 20, 09:03 UTC · May 20, 2020VulnerabilityCVE-2020-6074CVE-2020-6092CVE-2020-609360
NSA’s reverse engineering tool Ghidra impacted by a bug — but there's no need to panicCyberScoop·Oct 1, 21:13 UTC · Oct 1, 2019Exploit / PoC in the wildCVE-2019-1694160