CrushFTP Vulnerability Exploited Following Disclosure IssuesInfosecurity Magazine·Apr 3, 16:00 UTC · Apr 3, 2025Vulnerability in the wildCVE-2025-31161CVE-2025-282560
A daily average of 80,000 printers exposed online via IPPSecurity Affairs·Jun 23, 13:16 UTC · Jun 23, 2020Vulnerability30
Tens of thousands of IPs vulnerable to Fortinet flaw dubbed 'must patch' by fedsCyberScoop·Oct 14, 16:22 UTC · Oct 14, 2024Vulnerability in the wild60
New MOVEit Transfer critical bug is actively exploitedSecurity Affairs·Jun 26, 19:54 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Over 80,000 servers hit as roundcube RCE bug gets rapidly exploitedSecurity Affairs·Jun 11, 11:43 UTC · Jun 11, 2025VulnerabilityCVE-2025-4911360
CISA: Patch Critical GeoServer GeoTools Bug NowInfosecurity Magazine·Jul 17, 09:30 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-3640160
CVE-2026-10520 Exploited: Ivanti Sentry Gateways Compromised Shortly After Patch ReleaseSecurity Affairs·Jun 12, 18:42 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-10520CVE-2026-1340CVE-2026-160360
Week in review: Veeam Service Provider Console flaws fixed, Patch Tuesday forecastHelp Net Security·Dec 8, 00:00 UTC · Dec 8, 2024VulnerabilityCVE-2024-42448CVE-2024-42449CVE-2024-41713+1 CVEs60
Over 28,000 Citrix instances remain exposed to critical RCE flaw CVE-2025Security Affairs·Aug 27, 19:05 UTC · Aug 27, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-842460
Citrix Patches Three Zero Days as One Sees Active ExploitationInfosecurity Magazine·Aug 27, 11:10 UTC · Aug 27, 2025Vulnerability in the wildCVE-2025-7775CVE-2025-7776CVE-2025-8424+1 CVEs60
Attackers Exploit RCE Flaw as 14,000 F5 BIGSecurity Affairs·Apr 6, 13:08 UTC · Apr 6, 2026Vulnerability in the wildCVE-2025-5352160
PHP addressed critical RCE potentially impacting millions of serversSecurity Affairs·Jun 9, 13:27 UTC · Jun 9, 2024VulnerabilityCVE-2024-4577CVE-2012-182360
Alert: Hackers Actively Exploiting Critical "Control Web Panel" RCE VulnerabilityThe Hacker News·Jan 12, 08:49 UTC · Jan 12, 2023Vulnerability in the wildCVE-2022-4487760
New Ivanti Vulnerability Observed as Widespread Security Concerns GrowInfosecurity Magazine·Feb 16, 15:45 UTC · Feb 16, 2024Vulnerability in the wildCVE-2024-22024CVE-2023-46805CVE-2024-21887+2 CVEs60
Ivanti Connect Secure flaw massively exploited by attackers (CVE-2024-21893)Help Net Security·Feb 7, 00:00 UTC · Feb 7, 2024VulnerabilityCVE-2024-21893CVE-2024-21888CVE-2023-46805+1 CVEs60
Critical Fortinet FortiOS bug CVE-2024-21762 potentially impact 150,000 internetSecurity Affairs·Mar 12, 14:56 UTC · Mar 12, 2024Vulnerability in the wildCVE-2024-2176260
Critical Apache HugeGraph Vulnerability Under AttackThe Hacker News·Jul 17, 05:25 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-2734860
Over 20,000 Zyxel Firewalls Still Exposed to Critical BugInfosecurity Magazine·May 16, 09:30 UTC · May 16, 2022Vulnerability in the wildCVE-2022-3052560
Over 1,200 IceWarp servers still vulnerable to unauthenticated RCE flaw (CVE-2025-14500)Help Net Security·Mar 4, 00:00 UTC · Mar 4, 2026Vulnerability in the wildCVE-2025-14500160
Researchers, NSA cybersecurity director warn of hackers targeting Zyxel vulnerabilityThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability in the wildCVE-2022-3052560
Critical SAP NetWeaver flaw exploited by suspected initial access broker (CVE-2025-31324)Help Net Security·Aug 20, 08:46 UTC · Aug 20, 2025Vulnerability in the wildCVE-2025-3132460
Attackers exploit critical Adobe ColdFusion vulnerability (CVE-2026-48282)Help Net Security·Jul 7, 00:00 UTC · Jul 7, 2026Vulnerability in the wildCVE-2026-4828260
Ivanti, Fortinet, and SAP Release Patches for Multiple Critical VulnerabilitiesThe Hacker News·Jun 12, 18:42 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-25089CVE-2026-10520CVE-2026-10523+4 CVEs60
CrushFTP: Patch critical vulnerability ASAP! (CVE-2025-2825)Help Net Security·Jun 8, 10:31 UTC · Jun 8, 2026Vulnerability in the wildCVE-2025-282560
Critical CrushFTP vulnerability exploited. Have you been targeted? (CVE-2025-54309)Help Net Security·Jun 8, 10:30 UTC · Jun 8, 2026VulnerabilityCVE-2025-54309CVE-2024-4040CVE-2025-282560
New cPanel vulnerabilities could allow file access and remote code executionSecurity Affairs·May 10, 16:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-29201CVE-2026-29202CVE-2026-29203+1 CVEs60
Weaver E-cology RCE Flaw CVE-2026The Hacker News·May 6, 01:14 UTC · May 6, 2026Vulnerability in the wildCVE-2026-2267960
Critical cPanel Vulnerability Weaponized to Target Government and MSP NetworksThe Hacker News·May 4, 16:03 UTC · May 4, 2026VulnerabilityCVE-2026-4194060
Multiple threat actors actively exploit cPanel vulnerability (CVE-2026-41940)Help Net Security·May 4, 00:00 UTC · May 4, 2026VulnerabilityCVE-2026-4194060
CISA Flags Actively Exploited n8n RCE Bug as 24,700 Instances Remain ExposedThe Hacker News·Mar 12, 05:18 UTC · Mar 12, 2026Vulnerability in the wildCVE-2025-68613CVE-2026-2757760
Week in review: Weaponized OAuth redirection logic delivers malware, Patch Tuesday forecastHelp Net Security·Mar 8, 00:00 UTC · Mar 8, 2026VulnerabilityCVE-2025-14500CVE-2026-28289CVE-2026-20128+1 CVEs60
CVE-2025-64328 exploitation impacts 900 Sangoma FreePBX instancesSecurity Affairs·Mar 1, 10:01 UTC · Mar 1, 2026Vulnerability in the wildCVE-2025-6432860
Roundcube RCE: Dark web activity signals imminent attacks (CVE-2025-49113)Help Net Security·Feb 23, 10:54 UTC · Feb 23, 2026Vulnerability in the wildCVE-2025-49113CVE-2024-42009CVE-2025-6846160
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
Two High-Severity n8n Flaws Allow Authenticated Remote Code ExecutionThe Hacker News·Jan 29, 16:54 UTC · Jan 29, 2026VulnerabilityCVE-2026-1470CVE-2026-0863CVE-2026-2185847
Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy DThe Hacker News·Jan 7, 09:23 UTC · Jan 7, 2026Vulnerability in the wildCVE-2026-062560
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
Fortinet Warns of Active Exploitation of FortiOS SSL VPN 2FA Bypass VulnerabilityThe Hacker News·Jan 3, 08:24 UTC · Jan 3, 2026Vulnerability in the wildCVE-2020-1281260
WatchGuard Warns of Active Exploitation of Critical Fireware OS VPN VulnerabilityThe Hacker News·Dec 23, 04:10 UTC · Dec 23, 2025Vulnerability in the wildCVE-2025-14733CVE-2025-59718CVE-2025-59719+1 CVEs60
React2Shell Vulnerability Actively Exploited to Deploy Linux BackdoorsThe Hacker News·Dec 17, 07:26 UTC · Dec 17, 2025Vulnerability in the wildCVE-2025-55182CVE-2025-29927CVE-2025-6647860