Zoom and GitLab Release Security Updates Fixing RCE, DoS, and 2FA Bypass FlawsThe Hacker News·Jan 21, 15:42 UTC · Jan 21, 2026Vulnerability in the wildCVE-2026-22844CVE-2025-13927CVE-2025-13928+3 CVEs60
CISA: Patch Critical GeoServer GeoTools Bug NowInfosecurity Magazine·Jul 17, 09:30 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-3640160
CISA Orders Immediate Patch of Critical Sitecore Vulnerability Under Active ExploitationThe Hacker News·Sep 8, 14:09 UTC · Sep 8, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-30406CVE-2025-393560
Anthropic MCP Inspector: CVE-2025Recorded Future·Oct 14, 00:00 UTC · Oct 14, 2025Vulnerability in the wildCVE-2025-4959660
Cisco Fixes Critical Privilege Escalation Flaw in Meeting Management (CVSS 9.9)The Hacker News·Jan 23, 08:44 UTC · Jan 23, 2025Vulnerability in the wildCVE-2025-20156CVE-2025-20165CVE-2025-20128+4 CVEs160
New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS AttacksThe Hacker News·Jun 21, 09:10 UTC · Jun 21, 2025Vulnerability in the wildCVE-2025-324860
CISA Warns of Active Exploits Targeting Trimble Cityworks VulnerabilityThe Hacker News·Feb 12, 05:14 UTC · Feb 12, 2025Vulnerability in the wildCVE-2025-099460
February 2024 Patch Tuesday forecast: Zero days are back and a new server tooHelp Net Security·Mar 8, 05:15 UTC · Mar 8, 2024Vulnerability in the wildCVE-2024-23222CVE-2024-051960
Cisco urges to patch actively exploited IOS 0-day CVE-2023Security Affairs·Sep 28, 17:26 UTC · Sep 28, 2023Vulnerability in the wildCVE-2023-2010960
Critical flaw in SonicWall's firewalls patched, update quickly! (CVE-2020-5135)Help Net Security·Oct 19, 15:16 UTC · Oct 19, 2020Vulnerability in the wildCVE-2020-513560
Week in review: Follina exploit delivers Qbot malware, Patch Tuesday forecast, RSAC 2022Help Net Security·Jun 12, 00:00 UTC · Jun 12, 2022Vulnerability in the wildCVE-2022-30190CVE-2021-4232160
SonicWall releases second firmware updates for SMA 100 vulnerabilitySecurity Affairs·Feb 20, 16:49 UTC · Feb 20, 2021Vulnerability in the wildCVE-2021-2001660
Hackers Exploiting Triofox Flaw to Install Remote Access Tools via Antivirus FeatureThe Hacker News·Nov 10, 20:49 UTC · Nov 10, 2025Vulnerability in the wildCVE-2025-12480CVE-2025-30406CVE-2025-1137160
Microsoft SharePoint vulnerability allows hackers to sift through servers, Saudi authorities warnCyberScoop·May 9, 17:13 UTC · May 9, 2019Vulnerability in the wild60
Vulnerability Spotlight: Multiple vulnerabilities in Sealevel SeaConnectCisco Talos·Feb 2, 12:00 UTC · Feb 2, 2022Vulnerability in the wildCVE-2021-21960CVE-2021-21961CVE-2021-21962+10 CVEs60
When exploit code precedes a patch, attackers gain a massive head startHelp Net Security·May 14, 00:00 UTC · May 14, 2021Vulnerability in the wild60
Chinese Threat Actors Weaponize New Vulnerabilities in Under a DayInfosecurity Magazine·Aug 3, 15:00 UTC · Aug 3, 2026Vulnerability in the wild60
ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More StoriesThe Hacker News·Jan 8, 16:52 UTC · Jan 8, 2026Vulnerability in the wildCVE-2024-36401CVE-2007-0671CVE-2002-036760
High-severity vulnerability found in SecureDrop systemCyberScoop·Oct 24, 19:55 UTC · Oct 24, 2017Vulnerability in the wild60
Atlassian Confluence bug CVE-2022-26134 exploited in cryptocurrency mining campaignSecurity Affairs·Sep 22, 11:06 UTC · Sep 22, 2022Vulnerability in the wildCVE-2022-2613460
Hackers Targeting Unpatched Atlassian Confluence Servers to Deploy Crypto MinersThe Hacker News·Sep 22, 06:17 UTC · Sep 22, 2022Vulnerability in the wildCVE-2022-26134CVE-2021-403460
Threat Brief: Microsoft Critical Vulnerabilities (CVE-2022-26809, CVE-2022-26923, CVE-2022Palo Alto Unit 42·Jun 5, 20:13 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-26809CVE-2022-26923CVE-2022-26925160
Vulnerability Spotlight: Remote code execution, privilege escalation bugs in Microsoft Azure SphereCisco Talos·Aug 24, 19:28 UTC · Aug 24, 2020Vulnerability in the wild57
The importance of hardening firmware securityHelp Net Security·Jul 17, 00:00 UTC · Jul 17, 2019Vulnerability in the wild57
Severe Vulnerabilities Reported in Microsoft Azure Bastion and Container RegistryThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wild157
CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk VulnerabilityThe Hacker News·Dec 3, 13:34 UTC · Dec 3, 2021Vulnerability in the wildCVE-2021-44077CVE-2021-4053960
Active exploitation of Cisco IOS XE Software Web Management User Interface vulnerabilitiesCisco Talos·Oct 16, 15:05 UTC · Oct 16, 2023Vulnerability in the wildCVE-2023-20198CVE-2023-20273CVE-2021-143560
Ghost CMS flaw abused to push ClickFix attacks on hundreds of sitesSecurity Affairs·May 25, 18:07 UTC · May 25, 2026Vulnerability in the wildCVE-2026-2698060
Patch it up: Old vulnerabilities are everyone’s problemsCisco Talos·Mar 13, 18:04 UTC · Mar 13, 2025Vulnerability in the wildCVE-2025-22224CVE-2024-457760
Threat actors have been exploiting CVE-2023-4966 in Citrix NetScaler ADC/Gateway devices since AugustSecurity Affairs·Oct 18, 13:56 UTC · Oct 18, 2023Vulnerability in the wildCVE-2023-4966CVE-2023-351960
Mirai Botnet Variant Exploits Four-Faith Router Vulnerability for DDoS AttacksThe Hacker News·Jan 8, 10:30 UTC · Jan 8, 2025Vulnerability in the wildCVE-2024-12856CVE-2013-3307CVE-2013-7471+11 CVEs60
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
Zyxel Vulnerability Exploited by DDoS Botnets on Linux SystemsInfosecurity Magazine·Jul 20, 16:00 UTC · Jul 20, 2023Vulnerability in the wildCVE-2023-2877160
CISA Flags Actively Exploited Wing FTP Vulnerability Leaking Server PathsThe Hacker News·Mar 17, 05:23 UTC · Mar 17, 2026Vulnerability in the wildCVE-2025-47813CVE-2025-4781260
Microsoft Patch Tuesday for August 2023 fixed 2 actively exploited flawsSecurity Affairs·Aug 8, 22:30 UTC · Aug 8, 2023Vulnerability in the wildCVE-2023-36884CVE-2023-38180CVE-2023-3538560
Critical Windows DNS vulnerability gives hackers the 'keys to the kingdom'CyberScoop·Oct 10, 18:07 UTC · Oct 10, 2017Vulnerability in the wild60
Cisco Meeting Server- CVE-2016-6445 allows to impersonate legitimate usersSecurity Affairs·Oct 14, 05:52 UTC · Oct 14, 2016Vulnerability in the wildCVE-2016-644560
Microsoft fixes CVE-2020-0601 flaw, the first issue ever reported by NSASecurity Affairs·Jan 15, 08:04 UTC · Jan 15, 2020Vulnerability in the wildCVE-2020-060160
ThreatsDay Bulletin: Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ StoriesThe Hacker News·Feb 5, 17:14 UTC · Feb 5, 2026Vulnerability in the wild160
New Mac Malware Exploits GateKeeper Bypass Bug that Apple Left UnpatchedThe Hacker News·Aug 9, 07:22 UTC · Aug 9, 2019Vulnerability in the wild57