Apache Struts 2.3.x vulnerable to two year old RCE flawHelp Net Security·Dec 15, 12:31 UTC · Dec 15, 2023VulnerabilityCVE-2016-100003160
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched AvailableThe Hacker News·Jul 25, 12:54 UTC · Jul 25, 2026Vulnerability in the wildCVE-2026-1672360
Hackers Started Exploiting Critical "Text4Shell" Apache Commons Text VulnerabilityThe Hacker News·Oct 24, 05:48 UTC · Oct 24, 2022Vulnerability in the wildCVE-2022-42889CVE-2022-3398060
More than 35,000 Java packages impacted by Log4j flaw, Google warnsSecurity Affairs·Dec 21, 09:46 UTC · Dec 21, 2021VulnerabilityCVE-2021-4504660
Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn StealerThe Hacker News·Jun 30, 11:18 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-48558260
SimpleHelp vulnerability exploited to deliver mighty Djinn Stealer (CVE-2026-48558)Help Net Security·Jun 30, 00:00 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-48558160
Unauthenticated RCE in H2 Database Console is similar to Log4ShellSecurity Affairs·Jan 8, 19:53 UTC · Jan 8, 2022VulnerabilityCVE-2021-42392CVE-2021-4422860
Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploitedHelp Net Security·May 17, 00:00 UTC · May 17, 2026Vulnerability in the wildCVE-2026-44413CVE-2026-41940CVE-2026-46300+2 CVEs160
Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent PatchThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025VulnerabilityCVE-2025-66516CVE-2025-5498860