Kaspersky Lab report: Evaluating the threat level of software vulnerabilitiesKaspersky Securelist·Feb 1, 14:30 UTC · Feb 1, 2013Vulnerability in the wild160
Exploit kits attack vector – midKaspersky Securelist·Aug 1, 13:25 UTC · Aug 1, 2011Vulnerability in the wildCVE-2010-1885CVE-2010-1423CVE-2010-0886+9 CVEs60
Are you using Java 15/16/17 or 18 in production? Patch them now!Security Affairs·Apr 23, 18:12 UTC · Apr 23, 2022VulnerabilityCVE-2022-2144960
Experts warn of need to patch critical cryptographic Java bugThe Record·Jan 12, 00:00 UTC · Jan 12, 2023VulnerabilityCVE-2022-2144960
Critical flaw in Apache Parquet's Java Library allows remote code executionSecurity Affairs·Apr 4, 10:00 UTC · Apr 4, 2025VulnerabilityCVE-2025-3006560
Critical Apache Avro SDK RCE flaw impacts Java applicationsSecurity Affairs·Oct 7, 11:04 UTC · Oct 7, 2024VulnerabilityCVE-2024-4756160
Cinterion EHS5 3G UMTS/HSPA Module ResearchKaspersky Securelist·Jun 13, 10:00 UTC · Jun 13, 2024VulnerabilityCVE-2020-1585860
Pre-auth RCE in enterprise Java hits Bonita and OFBiz serversHelp Net Security·Aug 5, 00:00 UTC · Aug 5, 2026VulnerabilityCVE-2026-3198660
More than 35,000 Java packages impacted by Log4j flaw, Google warnsSecurity Affairs·Dec 21, 09:46 UTC · Dec 21, 2021VulnerabilityCVE-2021-4504660
Hardcoded password and Java deserialization flaw found in Cisco productsSecurity Affairs·Mar 8, 13:38 UTC · Mar 8, 2018VulnerabilityCVE-2018-0141CVE-2018-014760
Unpatched Java Spring Framework 0-Day RCE Bug Threatens Enterprise Web Apps SecurityThe Hacker News·Mar 31, 15:27 UTC · Mar 31, 2022Vulnerability in the wildCVE-2010-1622CVE-2022-22950CVE-2022-2296360
Answering Log4ShellKaspersky Securelist·Dec 21, 10:55 UTC · Dec 21, 2021Vulnerability in the wildCVE-2021-44228CVE-2021-45046CVE-2021-4510560
Oracle CPU October 2018: 301 vulnerabilities patchedHelp Net Security·Oct 17, 00:00 UTC · Oct 17, 2018VulnerabilityCVE-2018-291360
New Exploit Targeting Java Vulnerability Found in BlackHole ArsenalKaspersky Securelist·Dec 13, 13:48 UTC · Dec 13, 2011VulnerabilityCVE-2011-3544CVE-2010-018860
Critical Apache Avro SDK Flaw Allows Remote Code Execution in Java ApplicationsThe Hacker News·Oct 11, 04:52 UTC · Oct 11, 2024VulnerabilityCVE-2024-4756160
Researchers Disclose Critical RCE Vulnerability Affecting Quarkus Java FrameworkThe Hacker News·Dec 1, 11:45 UTC · Dec 1, 2022VulnerabilityCVE-2022-411660
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Oracle Critical Patch Update October 2011Kaspersky Securelist·Oct 20, 01:02 UTC · Oct 20, 2011VulnerabilityCVE-2011-3389CVE-2011-353860
Microsoft Fixes 78 Flaws, 5 Zero-Days Exploited; CVSS 10 Bug Impacts Azure DevOps ServerThe Hacker News·May 15, 00:00 UTC · May 15, 2025Vulnerability in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+10 CVEs160
Apache Tomcat Vulnerability CVE-2024The Hacker News·Dec 24, 06:06 UTC · Dec 24, 2024VulnerabilityCVE-2024-56337CVE-2024-50379CVE-2024-1282860
CISA Issues Warning on Active Exploitation of ZK Java Web Framework VulnerabilityThe Hacker News·Feb 28, 13:28 UTC · Feb 28, 2023Vulnerability in the wildCVE-2022-3653760
Amazon's Hotpatch for Log4j Flaw Found Vulnerable to Privilege Escalation BugThe Hacker News·Apr 23, 05:41 UTC · Apr 23, 2022Vulnerability in the wildCVE-2021-3100CVE-2021-3101CVE-2022-0070+1 CVEs60
A unique ‘bodiless’ bot attacks news site visitorsKaspersky Securelist·Mar 16, 19:12 UTC · Mar 16, 2012VulnerabilityCVE-2011-354460
Researchers Warn of New Log4ShellInfosecurity Magazine·Jan 7, 09:26 UTC · Jan 7, 2022VulnerabilityCVE-2021-4239260
Apache Tomcat Patches Important Remote Code Execution FlawThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2019VulnerabilityCVE-2019-023260
Oracle warns of CVE-2018-3110 Critical flaw in Database product, patch it nowSecurity Affairs·Aug 13, 07:35 UTC · Aug 13, 2018VulnerabilityCVE-2018-311060
April Patch Tuesday forecast: Expect updates for Adobe Flash, othersHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2018VulnerabilityCVE-2018-103860
Apache Tomcat Patches Important Remote Code Execution FlawThe Hacker News·Oct 5, 11:16 UTC · Oct 5, 2017VulnerabilityCVE-2017-12617CVE-2017-12615260
CISA Orders US Government to Patch Maximum Severity Cisco FlawInfosecurity Magazine·Mar 23, 10:30 UTC · Mar 23, 2026Vulnerability in the wildCVE-2026-2013160
Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131)Help Net Security·Mar 20, 00:00 UTC · Mar 20, 2026VulnerabilityCVE-2026-20131CVE-2026-20127CVE-2026-20045+1 CVEs60
Cisco fixes maximum-severity Secure FMC bugs threatening firewall securitySecurity Affairs·Mar 4, 22:10 UTC · Mar 4, 2026Vulnerability in the wildCVE-2026-20079CVE-2026-2013160
Jenkins patched a critical RCE flaw in its open source automation serverSecurity Affairs·Oct 4, 15:37 UTC · Oct 4, 2025VulnerabilityCVE-2017-1000353CVE-2017-1000354CVE-2017-100035560
SAP GUI Input History Found Vulnerable to Weak EncryptionInfosecurity Magazine·Jun 25, 14:00 UTC · Jun 25, 2025VulnerabilityCVE-2025-0055CVE-2025-0056CVE-2025-005960
Critical Apache Roller flaw allows to retain unauthorized access even after a password changeSecurity Affairs·Apr 15, 14:05 UTC · Apr 15, 2025VulnerabilityCVE-2025-24859CVE-2025-3006560
Critical RCE impacts popular postSecurity Affairs·Oct 18, 12:27 UTC · Oct 18, 2022VulnerabilityCVE-2022-42948CVE-2022-3919760
A Mirai-based botnet is exploiting the Spring4Shell vulnerabilitySecurity Affairs·Apr 9, 07:45 UTC · Apr 9, 2022Vulnerability in the wildCVE-2022-2296560
No Patch Available Yet for Critical SpringShell BugInfosecurity Magazine·Mar 31, 09:45 UTC · Mar 31, 2022VulnerabilityCVE-2010-162260
Log4Shell-like Critical RCE Flaw Discovered in H2 Database ConsoleThe Hacker News·Jan 12, 07:56 UTC · Jan 12, 2022VulnerabilityCVE-2021-4239260
Unauthenticated RCE in H2 Database Console is similar to Log4ShellSecurity Affairs·Jan 8, 19:53 UTC · Jan 8, 2022VulnerabilityCVE-2021-42392CVE-2021-4422860
New Apache Log4j Update Released to Patch Newly Discovered VulnerabilityThe Hacker News·Dec 29, 05:00 UTC · Dec 29, 2021Vulnerability in the wildCVE-2021-44832CVE-2021-44228CVE-2021-45046+2 CVEs60