Surge in Magento 2 template attacksSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
SessionReaper, unauthenticated RCE in Magento & Adobe Commerce (CVE-2025Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2025-54236260
Vulnerability Spotlight: Adobe Acrobat Reader DC jpeg Decoder VulnerabilityCisco Talos·Jan 20, 16:56 UTC · Jan 20, 2017Vulnerability in the wildCVE-2017-297160
CVE-2019-2725 Oracle WebLogic flaw exploited in cryptojacking campaignSecurity Affairs·Jun 11, 05:53 UTC · Jun 11, 2019Vulnerability in the wildCVE-2019-272560
Vulnerability Spotlight: Multiple vulnerabilities in Nitro Pro PDF readerCisco Talos·Sep 15, 17:30 UTC · Sep 15, 2020Vulnerability in the wildCVE-2020-6116CVE-2020-6146CVE-2020-6112+2 CVEs60
Vulnerability SpotlightCisco Talos·Jan 23, 20:31 UTC · Jan 23, 2017Vulnerability in the wildCVE-2016-871060
Vulnerabiity Spotlight: Tarantool Denial of Service VulnerabilitiesCisco Talos·Dec 20, 19:27 UTC · Dec 20, 2016Vulnerability in the wildCVE-2016-9036CVE-2016-903760
PolyShell: unrestricted file upload in Magento and Adobe CommerceSansec (Magento / e-commerce security)·May 12, 10:55 UTC · May 12, 2026Vulnerability in the wild60
Researchers disclosed details of a now-patched Samsung zeroSecurity Affairs·Jan 10, 14:45 UTC · Jan 10, 2025Vulnerability in the wildCVE-2024-49415CVE-2024-4406860
Apache Tomcat Patches Important Security VulnerabilitiesThe Hacker News·Jul 24, 11:36 UTC · Jul 24, 2018Vulnerability in the wildCVE-2018-8037CVE-2018-1336CVE-2018-803460
Vulnerability Spotlight: Google PDFium Tiff Code ExecutionCisco Talos·Oct 19, 20:51 UTC · Oct 19, 2017Vulnerability in the wildCVE-2017-513360
OptinMonster supply chain attack hits 1.2 million sitesSansec (Magento / e-commerce security)·Jun 15, 18:34 UTC · Jun 15, 2026Vulnerability in the wild57
UAT-6382 exploits Cityworks zeroCisco Talos·May 22, 10:00 UTC · May 22, 2025Vulnerability in the wildCVE-2025-0994CVE-2025-094460
New malicious web shell from the Tropic Trooper group is found in the Middle EastKaspersky Securelist·Sep 5, 08:02 UTC · Sep 5, 2024Vulnerability in the wildCVE-2021-34473CVE-2021-34523CVE-2021-31207+1 CVEs60
HTTP/2 CONTINUATION Flood technique can be exploited in DoS attacksSecurity Affairs·Apr 5, 02:41 UTC · Apr 5, 2024Vulnerability in the wildCVE-2024-27983CVE-2024-27919CVE-2024-2758+6 CVEs60
Vulnerability Spotlight: Accusoft ImageGear vulnerabilities could lead to code executionCisco Talos·Feb 9, 17:00 UTC · Feb 9, 2021Vulnerability in the wildCVE-2020-13561CVE-2020-13571CVE-2020-13572+1 CVEs60
Vulnerability Spotlight: Multiple vulnerabilities in Videolabs libmicrodnsCisco Talos·Mar 23, 15:21 UTC · Mar 23, 2020Vulnerability in the wildCVE-2020-6071CVE-2020-6072CVE-2020-6073+4 CVEs60
Vulnerability Spotlight: Denial-of-service, information leak bugs in MiniCisco Talos·Feb 3, 19:11 UTC · Feb 3, 2020Vulnerability in the wildCVE-2020-6058CVE-2020-6059CVE-2020-606060
Vulnerability Spotlight: Accusoft ImageGear PNG IHDR width code execution vulnerabilityCisco Talos·Dec 2, 18:38 UTC · Dec 2, 2019Vulnerability in the wildCVE-2019-5083CVE-2019-5076CVE-2019-5132+1 CVEs60
Traps Prevents In-The-Wild VBScript ZeroPalo Alto Unit 42·Sep 7, 12:00 UTC · Sep 7, 2018Vulnerability in the wildCVE-2018-8373CVE-2018-817460
Palo Alto Warns of Exploitation of VPN Bypass Exploits (CVE-2026-0257) in PANSecurity Affairs·Jun 15, 11:11 UTC · Jun 15, 2026Vulnerability in the wildCVE-2026-025760
CVE-2026-0257: Rapid7 Caught Attackers Abusing Forged VPN Cookies Against Multiple CustomersSecurity Affairs·May 31, 17:53 UTC · May 31, 2026Vulnerability in the wildCVE-2026-025760
Unpublished security flaws (0days) massively exploitedSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
SVG Onload Tag Hides Magecart Skimmer on 99 StoresSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wild57
Cardbleed: 3% of Magento install base hackedSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
Vendors defeat Magento security patch (+ simple check)Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2022-24086CVE-2022-24087CVE-2026-7565060
Found defunct.dat on your site? You've got a problem.Sansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability in the wildCVE-2026-7565060
Mass PolyShell attack wave hits 471 stores in one hourSansec (Magento / e-commerce security)·Mar 31, 07:45 UTC · Mar 31, 2026Vulnerability in the wildCVE-2026-7565060
SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 ScoreThe Hacker News·Feb 6, 09:36 UTC · Feb 6, 2026Vulnerability in the wildCVE-2026-24423CVE-2026-23760CVE-2026-2506760
China-linked APT UAT-9686 abused now patched maximum severity AsyncOS bugSecurity Affairs·Jan 16, 10:17 UTC · Jan 16, 2026Vulnerability in the wildCVE-2025-2039360
Cisco Warns of Active Attacks Exploiting Unpatched 0The Hacker News·Dec 20, 12:11 UTC · Dec 20, 2025Vulnerability in the wildCVE-2025-2039360
Attackers deliver ShadowPad via newly patched WSUS RCE bugSecurity Affairs·Nov 24, 12:35 UTC · Nov 24, 2025Vulnerability in the wildCVE-2025-5928760
Now-Patched Fortinet FortiWeb Flaw Exploited in Attacks to Create Admin AccountsThe Hacker News·Nov 17, 14:23 UTC · Nov 17, 2025Vulnerability in the wildCVE-2025-6444660
Microsoft releases urgent fix for actively exploited WSUS vulnerability (CVE-2025-59287)Help Net Security·Nov 3, 09:36 UTC · Nov 3, 2025Vulnerability in the wildCVE-2025-5928760
CVE-2025-59287: Microsoft fixes critical WSUS flaw under active attackSecurity Affairs·Oct 25, 10:49 UTC · Oct 25, 2025Vulnerability in the wildCVE-2025-59287160
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)Help Net Security·Oct 9, 16:24 UTC · Oct 9, 2025Vulnerability in the wildCVE-2025-6188260
Critical CVE-2025-5086 in DELMIA Apriso Actively Exploited, CISA Issues WarningThe Hacker News·Sep 12, 12:08 UTC · Sep 12, 2025Vulnerability in the wildCVE-2025-508660
Microsoft Patch Tuesday for August 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·Aug 12, 19:39 UTC · Aug 12, 2025Vulnerability in the wildCVE-2025-50176CVE-2025-50177CVE-2025-53778+10 CVEs60
ToolShell: a story of five vulnerabilities in Microsoft SharePointKaspersky Securelist·Jul 25, 07:00 UTC · Jul 25, 2025Vulnerability in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60