U.S. CISA adds Oracle WebLogic Server and Mitel MiCollab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 8, 06:58 UTC · Jan 8, 2025Exploit / PoC in the wildCVE-2020-2883CVE-2024-41713CVE-2024-5555060
U.S. CISA adds ProjectSend, North Grid Proself, and Zyxel firewalls bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 4, 07:56 UTC · Dec 4, 2024Exploit / PoC in the wildCVE-2023-45727CVE-2024-11680CVE-2024-1166760
U.S. CISA adds Ivanti CSA and Fortinet bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 10, 11:11 UTC · Oct 10, 2024Exploit / PoC in the wildCVE-2024-23113CVE-2024-9379CVE-2024-9380+2 CVEs60
U.S. CISA adds Synacor Zimbra Collaboration flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 7, 05:24 UTC · Oct 7, 2024Exploit / PoC in the wildCVE-2024-4551960
U.S. CISA adds new Ivanti Cloud Services Appliance Vulnerability to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 25, 07:42 UTC · Sep 25, 2024Exploit / PoC in the wildCVE-2024-8190CVE-2024-896360
New Chrome zero-day actively exploited, patch quickly! (CVE-2024-7971)Help Net Security·Sep 19, 11:32 UTC · Sep 19, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-796560
U.S. CISA adds Ivanti Cloud Services Appliance Vulnerability to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 14, 15:45 UTC · Sep 14, 2024Exploit / PoC in the wildCVE-2024-819060
China-linked APT exploited Cisco NX-OS zeroSecurity Affairs·Jul 2, 07:25 UTC · Jul 2, 2024Exploit / PoC in the wildCVE-2024-2039960
Palo Alto firewalls: Public exploits, rising attacks, ineffective mitigationHelp Net Security·Apr 30, 13:31 UTC · Apr 30, 2024Exploit / PoCCVE-2024-340060
CISA ADDS ANDROID PIXEL AND SUNHILLO SURELINE BUGS TO ITS KNOWN EXPLOITED VULNERABILITIES CATALOGSecurity Affairs·Mar 6, 14:28 UTC · Mar 6, 2024Exploit / PoC in the wildCVE-2023-21237CVE-2021-3638060
Operation Triangulation attacks relied on an undocumented hardware featureSecurity Affairs·Dec 28, 23:10 UTC · Dec 28, 2023Exploit / PoCCVE-2023-41990CVE-2023-32434CVE-2023-38606160
Alert: PoC Exploits Released for Citrix and VMware VulnerabilitiesThe Hacker News·Nov 2, 12:20 UTC · Nov 2, 2023Exploit / PoC in the wildCVE-2023-34051CVE-2023-4966CVE-2023-35182+2 CVEs60
CISA adds second Cisco IOS XE flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 23, 20:20 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2023-20273CVE-2023-2019860
CISA adds Cisco IOS XE flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Oct 23, 19:49 UTC · Oct 23, 2023Exploit / PoC in the wildCVE-2021-1435CVE-2023-2019860
Google Bug Bounty Program Expands to Chrome V8, Google CloudInfosecurity Magazine·Oct 9, 15:00 UTC · Oct 9, 2023Exploit / PoC60
CISA adds Trend Micro Apex One and Worry-Free Business Security flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 22, 17:58 UTC · Sep 22, 2023Exploit / PoC in the wildCVE-2023-4117960
US CISA added critical Apache RocketMQ flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Sep 9, 17:01 UTC · Sep 9, 2023Exploit / PoC in the wildCVE-2023-3324660
CISA adds second Ivanti EPMM flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 2, 06:01 UTC · Aug 2, 2023Exploit / PoC in the wildCVE-2023-35081CVE-2023-3507860
Ivanti zero-day exploited to target Norwegian government (CVE-2023-35078)Help Net Security·Jul 31, 13:19 UTC · Jul 31, 2023Exploit / PoC in the wildCVE-2023-3507860
CISA adds Ivanti EPMM flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 26, 11:53 UTC · Jul 26, 2023Exploit / PoC in the wildCVE-2023-3507860
Shadowserver reported that +15K Citrix servers are likely vulnerable to attacks exploiting the flaw CVE-2023Security Affairs·Jul 23, 13:49 UTC · Jul 23, 2023Exploit / PoC in the wildCVE-2023-351960
Apple fixed actively exploited zeroSecurity Affairs·Jun 22, 10:38 UTC · Jun 22, 2023Exploit / PoC in the wildCVE-2023-32434CVE-2023-32435CVE-2023-3243960
PoC exploit for exploited MOVEit vulnerability released (CVE-2023-34362)Help Net Security·Jun 13, 00:00 UTC · Jun 13, 2023Exploit / PoCCVE-2023-34362CVE-2023-3503660
Experts released PoC for actively exploited PaperCut flawSecurity Affairs·Apr 24, 18:44 UTC · Apr 24, 2023Exploit / PoC in the wildCVE-2023-27350CVE-2023-27351160
Microsoft patches zero-day exploited by attackers (CVE-2023-28252)Help Net Security·Apr 11, 00:00 UTC · Apr 11, 2023Exploit / PoC in the wildCVE-2023-28252CVE-2023-23376CVE-2023-21554+4 CVEs60
CISA adds Plex Media Server bug, exploited in LastPass attack, to Known Exploited Vulnerabilities CatalogSecurity Affairs·Mar 13, 20:43 UTC · Mar 13, 2023Exploit / PoC in the wildCVE-2020-574160
Experts released PoC exploit for Zoho ManageEngine RCE flawSecurity Affairs·Jan 19, 20:51 UTC · Jan 19, 2023Exploit / PoCCVE-2022-4796660
US CISA adds Centos Web Panel RCE CVE-2022-44877 to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Jan 19, 09:48 UTC · Jan 19, 2023Exploit / PoC in the wildCVE-2022-4487760
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
CISA adds CVE-2022-1388 in F5 BIG-IP to Known Exploited Vulnerabilities CatalogSecurity Affairs·May 11, 21:45 UTC · May 11, 2022Exploit / PoC in the wildCVE-2022-138860
Week in review: Attackers exploiting VMware RCE, Microsoft fixes actively exploited zero-dayHelp Net Security·Apr 17, 00:00 UTC · Apr 17, 2022Exploit / PoC in the wildCVE-2022-24521CVE-2022-26904CVE-2022-26809+1 CVEs60
Critical Microsoft RPC runtime bug: No PoC exploit yet, but patch ASAP! (CVE-2022-26809)Help Net Security·Apr 15, 00:00 UTC · Apr 15, 2022Exploit / PoCCVE-2022-26809160
CISA adds 15 new flaws to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Feb 16, 09:58 UTC · Feb 16, 2022Exploit / PoC in the wildCVE-2021-36934CVE-2020-0796CVE-2018-1000861+12 CVEs60
Addressing CVE-2014Palo Alto Unit 42·Jan 28, 21:24 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2014-6332CVE-2014-0322CVE-2014-1776+1 CVEs160
NK-linked InkySquid APT leverages IE exploits in recent attacksSecurity Affairs·Aug 19, 06:51 UTC · Aug 19, 2021Exploit / PoC in the wildCVE-2020-1380CVE-2021-2641160
Hackers are exploiting new F5 bug in the wildCyberScoop·Mar 22, 21:04 UTC · Mar 22, 2021Exploit / PoC in the wild60
vBulletin zero-day exploited in the wild in wake of exploit releaseHelp Net Security·May 28, 11:23 UTC · May 28, 2020Exploit / PoC in the wildCVE-2019-1675960
A zero-day exploit for Zoom Windows RCE offered for $500,000Security Affairs·Apr 15, 22:43 UTC · Apr 15, 2020Exploit / PoC60
Microsoft addresses three Windows issues actively exploitedSecurity Affairs·Apr 14, 23:02 UTC · Apr 14, 2020Exploit / PoC in the wildCVE-2020-1020CVE-2020-0938CVE-2020-1027+1 CVEs160
iOS exploit chain deploys LightSpy featureKaspersky Securelist·Mar 26, 17:32 UTC · Mar 26, 2020Exploit / PoC57