U.S. CISA adds Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 20, 13:38 UTC · Jul 20, 2025Exploit / PoC in the wildCVE-2025-2525760
Fortinet FortiWeb flaw CVE-2025Security Affairs·Jul 19, 16:25 UTC · Jul 19, 2025Exploit / PoC in the wildCVE-2025-2525760
Patch immediately: CVE-2025-25257 PoC enables remote code execution on Fortinet FortiWebSecurity Affairs·Jul 13, 18:10 UTC · Jul 13, 2025Exploit / PoC in the wildCVE-2025-2525760
U.S. CISA adds MRLG, PHPMailer, Rails Ruby on Rails, and Synacor Zimbra Collaboration Suite flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 8, 14:13 UTC · Jul 8, 2025Exploit / PoC in the wildCVE-2014-3931CVE-2016-10033CVE-2019-5418+1 CVEs60
Attackers are chaining flaws to breach Palo Alto Networks firewallsHelp Net Security·Apr 18, 10:11 UTC · Apr 18, 2025Exploit / PoC in the wildCVE-2025-0108CVE-2024-9474CVE-2025-0111+1 CVEs60
Critical Docker Engine Flaw Allows Attackers to Bypass Authorization PluginsThe Hacker News·Jul 25, 05:47 UTC · Jul 25, 2024Exploit / PoC in the wildCVE-2024-41110160
Secator: Open-source pentesting Swiss army knifeHelp Net Security·Jul 3, 00:00 UTC · Jul 3, 2024Exploit / PoC57
CISA adds Apache Flink flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 24, 10:25 UTC · May 24, 2024Exploit / PoC in the wildCVE-2020-1751960
Experts released PoC exploit code for RCE in QNAP QTSSecurity Affairs·May 21, 07:34 UTC · May 21, 2024Exploit / PoCCVE-2024-27130CVE-2023-50361CVE-2023-50362+7 CVEs60
Critical Update: CrushFTP ZeroThe Hacker News·Apr 27, 05:01 UTC · Apr 27, 2024Exploit / PoC in the wildCVE-2024-404060
Hackers Exploit OpenMetadata Flaws to Mine Crypto on KubernetesThe Hacker News·Apr 23, 05:41 UTC · Apr 23, 2024Exploit / PoCCVE-2024-28847CVE-2024-28848CVE-2024-28253+3 CVEs60
RunC Flaws Enable Container Escapes, Granting Attackers Host AccessThe Hacker News·Feb 5, 08:03 UTC · Feb 5, 2024Exploit / PoC in the wildCVE-2024-21626CVE-2024-23651CVE-2024-23652+2 CVEs160
Comprehensive analysis of initial attack samples exploiting CVE-2023Kaspersky Securelist·Jul 19, 12:00 UTC · Jul 19, 2023Exploit / PoCCVE-2023-23397CVE-2023-2932460
MOVEit Transfer software zeroSecurity Affairs·Jun 7, 13:57 UTC · Jun 7, 2023Exploit / PoC in the wild60
Microsoft found a new bug that allows bypassing SIP root restrictions in macOSSecurity Affairs·May 31, 07:57 UTC · May 31, 2023Exploit / PoCCVE-2023-32369CVE-2021-30892150
PoC exploit code for critical Fortinet FortiNAC bug released onlineSecurity Affairs·Feb 21, 21:05 UTC · Feb 21, 2023Exploit / PoCCVE-2022-39952CVE-2021-42756160
PoC exploit, IoCs for Fortinet FortiNAC RCE released (CVE-2022-39952)Help Net Security·Feb 21, 00:00 UTC · Feb 21, 2023Exploit / PoC in the wildCVE-2022-3995260
Fortinet urges customers to fix actively exploited FortiOS SSLSecurity Affairs·Dec 12, 19:28 UTC · Dec 12, 2022Exploit / PoC in the wildCVE-2022-4247560
Browser synchronization abuse: Bookmarks as a covert data exfiltration channelHelp Net Security·Aug 2, 00:00 UTC · Aug 2, 2022Exploit / PoC45
Atlassian fixes critical flaws in Confluence, Jira, Bitbucket and other products, update quickly!Help Net Security·Jul 21, 00:00 UTC · Jul 21, 2022Exploit / PoC in the wildCVE-2022-26138CVE-2022-26136CVE-2022-2613760
Path Traversal flaw in UnRAR can allow hacking Zimbra Mail serversSecurity Affairs·Jun 29, 14:48 UTC · Jun 29, 2022Exploit / PoCCVE-2022-30333160
Cisco fixes an IOS XR flaw actively exploited in the wildSecurity Affairs·May 23, 18:30 UTC · May 23, 2022Exploit / PoC in the wildCVE-2022-2082160
CISA Alerts on Actively Exploited Flaws in Zabbix Network Monitoring PlatformThe Hacker News·Feb 24, 15:15 UTC · Feb 24, 2022Exploit / PoC in the wildCVE-2022-23131CVE-2022-2313460
FBI Issues Flash Alert on Actively Exploited FatPipe VPN ZeroThe Hacker News·Nov 19, 09:27 UTC · Nov 19, 2021Exploit / PoC in the wild60
Zero-Day flaw in FatPipe products actively exploited, FBI warnsSecurity Affairs·Nov 18, 15:34 UTC · Nov 18, 2021Exploit / PoC in the wild60
Lemon Duck spreads its wings: Actors target Microsoft Exchange servers, incorporate new TTPsCisco Talos·May 7, 19:50 UTC · May 7, 2021Exploit / PoCCVE-2021-26855CVE-2021-26857CVE-2021-26858+1 CVEs160
Attackers are exploiting zero-day in Pulse Secure VPNs to breach orgs (CVE-2021-22893)Help Net Security·Apr 21, 00:00 UTC · Apr 21, 2021Exploit / PoCCVE-2021-22893CVE-2019-11510CVE-2020-8243+1 CVEs60
XDSpy APT remained undetected since at least 2011Security Affairs·Oct 2, 12:12 UTC · Oct 2, 2020Exploit / PoCCVE-2020-096860
Honware: IoT honeypot for detecting zero-day exploitsHelp Net Security·Feb 6, 00:00 UTC · Feb 6, 2020Exploit / PoC60
0x20k of Ghost Squad released ODay Exploit Targeting Apache HadoopSecurity Affairs·Nov 1, 14:34 UTC · Nov 1, 2018Exploit / PoC60
Expert shows how to trigger blue-screen-ofSecurity Affairs·Apr 28, 15:16 UTC · Apr 28, 2018Exploit / PoC45
The Slingshot APT FAQKaspersky Securelist·Mar 9, 15:20 UTC · Mar 9, 2018Exploit / PoCCVE-2007-5633CVE-2010-1592CVE-2009-082460
Experts found a way to exploit HP Enterprise printers to hack into company networksSecurity Affairs·Nov 23, 08:14 UTC · Nov 23, 2017Exploit / PoC57
Credentials (UN)Management in home bankingSecurity Affairs·Oct 25, 05:16 UTC · Oct 25, 2017Exploit / PoC45
Miele Professional PG 8528 washer-disinfector affected by a Web Server Directory TraversalSecurity Affairs·Mar 27, 14:30 UTC · Mar 27, 2017Exploit / PoCCVE-2017-724050
Internet-Connected Medical WasherThe Hacker News·Mar 27, 12:45 UTC · Mar 27, 2017Exploit / PoCCVE-2017-724050
Leaked CIA documents show just how complicated computer warfare really isCyberScoop·Mar 15, 20:41 UTC · Mar 15, 2017Exploit / PoC in the wild60