Drupal addressed the critical CVE-2018Security Affairs·Mar 29, 12:24 UTC · Mar 29, 2018Exploit / PoCCVE-2018-7600CVE-2014-370460
Exploit in the Wild: #drupalgeddon2 - Analysis of CVE-2018Palo Alto Unit 42·Jan 28, 21:25 UTC · Jan 28, 2022Exploit / PoC in the wildCVE-2018-760060
Recently disclosed Drupal CVE-2019Security Affairs·Feb 26, 22:06 UTC · Feb 26, 2019Exploit / PoCCVE-2019-634060
Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEVThe Hacker News·May 23, 13:25 UTC · May 23, 2026Exploit / PoC in the wildCVE-2026-908260
Over 115,000 Drupal Sites still vulnerable to Drupalgeddon2, a gift to crooksSecurity Affairs·Jun 5, 06:56 UTC · Jun 5, 2018Exploit / PoCCVE-2018-760060
Over 115,000 Drupal Sites Still Vulnerable to Drupalgeddon2 ExploitThe Hacker News·Jun 5, 08:06 UTC · Jun 5, 2018Exploit / PoC in the wildCVE-2018-760060
Release of PoC Exploit for New Drupal Flaw Once Again Puts Sites Under AttackThe Hacker News·Apr 26, 12:32 UTC · Apr 26, 2018Exploit / PoC in the wildCVE-2018-7602CVE-2018-760060
Latest WinRAR, Drupal flaws under active exploitationHelp Net Security·Feb 26, 00:00 UTC · Feb 26, 2019Exploit / PoC in the wildCVE-2018-20250CVE-2019-634060
U.S. CISA adds a flaw in Drupal Core to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 24, 07:54 UTC · May 24, 2026Exploit / PoC in the wildCVE-2026-908260
Experts are observing Drupalgeddon2 (CVE-2018Security Affairs·Apr 19, 04:02 UTC · Apr 19, 2018Exploit / PoCCVE-2018-7600CVE-2017-1027160
Network Attack Trends: Internet of Threats (November 2020Palo Alto Unit 42·Jun 6, 13:24 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2020-28188CVE-2020-17519CVE-2020-29227+62 CVEs60
Crypto Me0wing attacks: Kitty cashes in on MoneroHelp Net Security·Jun 26, 21:20 UTC · Jun 26, 2018Exploit / PoCCVE-2018-760060
Hackers continue to exploit the Drupalgeddon2 flaw in attacks in the wildSecurity Affairs·Oct 8, 05:32 UTC · Oct 8, 2019Exploit / PoCCVE-2018-760060
IIS attacks surge from 2,000 to 1.7 million over last quarterHelp Net Security·Oct 10, 00:00 UTC · Oct 10, 2018Exploit / PoC45
May 2026 CVE LandscapeRecorded Future·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2008-4250CVE-2009-1537CVE-2009-3459+19 CVEs60
Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network PlatformsThe Hacker News·Feb 11, 13:28 UTC · Feb 11, 2026Exploit / PoC in the wildCVE-2026-0488CVE-2026-0509CVE-2025-32007+4 CVEs60
Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two ZeroThe Hacker News·Dec 10, 15:09 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-62223CVE-2025-62221CVE-2025-54100+6 CVEs160
Microsoft Fixes 63 Security Flaws, Including a Windows Kernel ZeroThe Hacker News·Nov 12, 11:14 UTC · Nov 12, 2025Exploit / PoC in the wildCVE-2025-62215CVE-2025-60724CVE-2025-62220+1 CVEs60
Two New Windows Zero-Days Exploited in the Wild — One Affects Every Version Ever ShippedThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Exploit / PoC in the wildCVE-2025-24990CVE-2025-59230CVE-2025-47827+5 CVEs160
ShadowSilk Hits 35 Organizations in Central Asia and APAC Using Telegram BotsThe Hacker News·Aug 28, 03:59 UTC · Aug 28, 2025Exploit / PoCCVE-2018-7600CVE-2018-76020CVE-2024-2795650
3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security UpdateThe Hacker News·Jan 21, 15:30 UTC · Jan 21, 2025Exploit / PoC in the wildCVE-2024-7344CVE-2025-21333CVE-2025-21334+13 CVEs60
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs260
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the WildThe Hacker News·Oct 9, 12:48 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-43572CVE-2024-43573CVE-2024-43583+7 CVEs60
Google "confirms" that exploited Chrome zero-day is actually in libwebp (CVE-2023-5129)Help Net Security·Sep 29, 10:48 UTC · Sep 29, 2023Exploit / PoC in the wildCVE-2023-5129CVE-2023-4863CVE-2023-4106460
US CISA added 17 flaws to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Jan 23, 18:13 UTC · Jan 23, 2022Exploit / PoC in the wildCVE-2021-32648CVE-2021-21315CVE-2021-21975+14 CVEs160
The Insecurity of WordPress and Apache StrutsSchneier on Security·Mar 18, 07:45 UTC · Mar 18, 2020Exploit / PoC in the wild60
Multiple Code Execution Flaws Found In PHP Programming LanguageThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2019Exploit / PoC in the wildCVE-2019-1322460
Latest WinRAR Flaw Being Exploited in the Wild to Hack Windows ComputersThe Hacker News·Feb 26, 13:45 UTC · Feb 26, 2019Exploit / PoC in the wildCVE-2018-2025060
ZDI offers hefty bounties for zero-days in popular web servers, CMSesHelp Net Security·Jul 25, 00:00 UTC · Jul 25, 2018Exploit / PoC60
3 Critical Zero-Day Flaws Found in PHP 7 — One Remains Unpatched!The Hacker News·Dec 29, 10:45 UTC · Dec 29, 2016Exploit / PoC in the wildCVE-2016-7479CVE-2016-7480CVE-2016-7478+1 CVEs60
Critical PHPMailer Flaw leaves Millions of Websites Vulnerable to Remote ExploitThe Hacker News·Dec 27, 12:27 UTC · Dec 27, 2016Exploit / PoCCVE-2016-1003360