SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2025-54236260
Threat Brief: CVE-2022-41040 and CVE-2022-41082: Microsoft Exchange Server (ProxyNotShell)Palo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
CitrixBleed 2:a nightmare that echoes CitrixBleed flaw in NetScalerSecurity Affairs·Jun 26, 07:31 UTC · Jun 26, 2025VulnerabilityCVE-2025-5777CVE-2023-4966CVE-2025-534960
Citrix patches a new NetScaler flaw with echoes of CitrixBleedCyberScoop·Jun 30, 21:52 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-8451CVE-2026-3055160
Hackers seize severe Microsoft Exchange vulnerabilities in echo of widespread March attacksCyberScoop·Aug 23, 16:41 UTC · Aug 23, 2021Vulnerability in the wild60
What’s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security and the KIRA AI assistantKaspersky Securelist·May 29, 07:00 UTC · May 29, 2026VulnerabilityCVE-2025-55182CVE-2023-4911CVE-2021-4034+3 CVEs60
Cisco Talos Honeypot Analysis Reveals Rise in Attacks on Elasticsearch ClustersCisco Talos·Feb 26, 18:56 UTC · Feb 26, 2019Vulnerability in the wildCVE-2014-3120CVE-2015-1427CVE-2018-7600+2 CVEs60
Critical RCE vulnerability found in over a million GPON Home RoutersSecurity Affairs·May 8, 08:29 UTC · May 8, 2018VulnerabilityCVE-2018-10561CVE-2018-1056260
Vulnerability Spotlight: BlueStacks App Player Privilege EscalationCisco Talos·Aug 11, 02:49 UTC · Aug 11, 2016VulnerabilityCVE-2016-428860
“Bash” (CVE-2014-6271) vulnerabilityKaspersky Securelist·Sep 25, 14:45 UTC · Sep 25, 2014Vulnerability in the wildCVE-2014-627160
Another Major Vulnerability Bashes SystemsCisco Talos·Sep 25, 08:55 UTC · Sep 25, 2014Vulnerability in the wildCVE-2014-627160
Microsoft ships largest Patch Tuesday on record, with one bug under active attackThe Record·Jun 10, 13:03 UTC · Jun 10, 2026Vulnerability in the wildCVE-2026-45657CVE-2026-41091CVE-2026-50507160
UK weakens proposed telecoms defenses against Chinese hackers after industry pushbackThe Record·Jun 10, 06:46 UTC · Jun 10, 2026Vulnerability in the wild60
Everest Forms Pro WordPress Flaw is Handing Attackers Admin AccessSecurity Affairs·Jun 8, 14:11 UTC · Jun 8, 2026Vulnerability in the wildCVE-2026-330060
Containers on fire: from container escapes to supply chain attacksKaspersky Securelist·Jun 1, 10:00 UTC · Jun 1, 2026Vulnerability in the wildCVE-2019-5736CVE-2022-0492CVE-2024-21626160
Fragnesia: New Linux kernel LPE bug was spawned by Dirty Frag patch (CVE-2026-46300)Help Net Security·May 18, 13:54 UTC · May 18, 2026Vulnerability in the wildCVE-2026-46300CVE-2026-4328460
Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin AccessThe Hacker News·May 15, 00:00 UTC · May 15, 2026Vulnerability in the wildCVE-2026-20182CVE-2026-2012760
Rushed Patches Follow Broken Embargo on Linux Kernel VulnerabilitiesInfosecurity Magazine·May 11, 14:30 UTC · May 11, 2026Vulnerability in the wildCVE-2026-31431CVE-2026-43284CVE-2026-43500160
Found defunct.dat on your site? You've got a problem.Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
Vendors defeat Magento security patch (+ simple check)Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2022-24086CVE-2022-24087CVE-2026-7565060
CVE-2026-1731 fuels ongoing attacks on BeyondTrust remote access productsSecurity Affairs·Feb 23, 12:09 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-173160
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
Three hacking groups, two vulnerabilities and all eyes on ChinaThe Record·Dec 8, 15:09 UTC · Dec 8, 2025VulnerabilityCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
Anthropic MCP Inspector: CVE-2025Recorded Future·Oct 14, 00:00 UTC · Oct 14, 2025Vulnerability in the wildCVE-2025-4959660
Russian state cyber group Static Tundra exploiting Cisco devices, FBI warnsThe Record·Aug 20, 19:06 UTC · Aug 20, 2025VulnerabilityCVE-2018-017160
SentinelOne Warns Cybersecurity Vendors of Chinese AttacksInfosecurity Magazine·Jun 10, 10:30 UTC · Jun 10, 2025VulnerabilityCVE-2024-8963CVE-2024-819060
SonicWall pushes urgent patch for its SMA applianceCyberScoop·Jan 24, 14:45 UTC · Jan 24, 2025Vulnerability in the wildCVE-2025-2300660
Moxa Urges Immediate Updates for Security VulnerabilitiesInfosecurity Magazine·Jan 7, 16:30 UTC · Jan 7, 2025Vulnerability in the wildCVE-2024-9138CVE-2024-914060
U.S. and Allies Warn of Iranian Cyberattacks on Critical Infrastructure in YearThe Hacker News·Oct 21, 12:12 UTC · Oct 21, 2024VulnerabilityCVE-2020-147260
Juniper Networks released out-of-band updates to fix highSecurity Affairs·Jan 30, 15:08 UTC · Jan 30, 2024VulnerabilityCVE-2024-21619CVE-2024-21620CVE-2023-36846+2 CVEs60
Cybersecurity experts warn of new vulnerabilities affecting Apple, Atlassian and Fortra productsThe Record·Jan 23, 21:31 UTC · Jan 23, 2024Vulnerability in the wildCVE-2024-23222CVE-2024-0204CVE-2023-22527+2 CVEs60
New RCE vulnerability in Apache Struts 2 fixed, upgrade ASAP (CVE-2023-50164)Help Net Security·Dec 14, 10:29 UTC · Dec 14, 2023VulnerabilityCVE-2023-5016460
Experts warn of critical ownCloud vulnerability being exploitedThe Record·Nov 28, 22:23 UTC · Nov 28, 2023VulnerabilityCVE-2023-4910360
Vulnerability disclosure: Legal risks and ethical considerations for researchersHelp Net Security·Nov 27, 00:00 UTC · Nov 27, 2023Vulnerability in the wild60
‘Downfall’ vulnerability leaves billions of Intel CPUs at riskCyberScoop·Aug 8, 17:00 UTC · Aug 8, 2023Vulnerability in the wild60
Adobe, Microsoft and Citrix vulnerabilities draw warnings from CISAThe Record·Jul 18, 19:46 UTC · Jul 18, 2023Vulnerability in the wildCVE-2023-29298CVE-2023-38203CVE-2023-36884+1 CVEs60
Microsoft Releases Patches for 132 Vulnerabilities, Including 6 Under Active AttackThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Vulnerability in the wildCVE-2023-32046CVE-2023-32049CVE-2023-35311+2 CVEs160
Cisco Warns of Critical Vulnerability in End-ofInfosecurity Magazine·Jan 13, 16:00 UTC · Jan 13, 2023VulnerabilityCVE-2023-2002560
ACSC: Australian organizations compromised through ForgeRock vulnerabilityThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Vulnerability in the wildCVE-2021-3546460
Apple Warns of Critical Security Risk in Safari For iPhones, iPads and MacsInfosecurity Magazine·Aug 19, 15:00 UTC · Aug 19, 2022Vulnerability in the wild60