Network Security Trends: Recent Exploits Observed in the Wild Include Remote Code Execution, CrossPalo Alto Unit 42·Jun 5, 20:05 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-22954CVE-2022-22963CVE-2022-22965+20 CVEs60
Vulnerability Spotlight: Multiple Vulnerabilities in Moxa EDRCisco Talos·Apr 13, 15:57 UTC · Apr 13, 2018VulnerabilityCVE-2017-12120CVE-2017-12121CVE-2017-12123+8 CVEs60
Zyxel Patches Critical OS Command Injection Flaw in Access Points and RoutersThe Hacker News·Sep 4, 23:02 UTC · Sep 4, 2024VulnerabilityCVE-2024-7261CVE-2024-5412CVE-2024-6343+7 CVEs60
New Mirai Variant Targets WebSVN Command Injection Vulnerability (CVE-2021Palo Alto Unit 42·Jun 6, 12:14 UTC · Jun 6, 2024VulnerabilityCVE-2021-3230560
Red Hat Linux DHCP Client affected by a command injection flaw, patch it now!Security Affairs·May 16, 09:00 UTC · May 16, 2018VulnerabilityCVE-2018-111160
Vulnerability Spotlight: Moxa AWK-3131A Multiple Features Login Username Parameter OS Command Injection VulnerabilityCisco Talos·Apr 3, 13:21 UTC · Apr 3, 2018VulnerabilityCVE-2017-1445960
Zimbra 10.1.20 patches multiple security issues, including a critical command injection bugSecurity Affairs·Jul 21, 18:25 UTC · Jul 21, 2026Vulnerability55
Zyxel fixed critical OS command injection flaw in multiple routersSecurity Affairs·Sep 4, 06:27 UTC · Sep 4, 2024VulnerabilityCVE-2024-7261CVE-2017-18368160
Ubiquiti Patches Critical UniFi OS Flaws Allowing Command Injection and Privilege EscalationSecurity Affairs·Jul 8, 20:21 UTC · Jul 8, 2026Vulnerability in the wildCVE-2026-50746CVE-2026-50747CVE-2026-50748+7 CVEs60
Critical Flaw in Cisco IP Phone Series Exposes Users to Command Injection AttackThe Hacker News·Mar 2, 04:17 UTC · Mar 2, 2023Vulnerability in the wildCVE-2023-20078CVE-2023-20079CVE-2023-22747+1 CVEs60
Command injection flaw in PHP Composer allowed supplySecurity Affairs·Apr 29, 21:28 UTC · Apr 29, 2021VulnerabilityCVE-2021-29472160
CISA flags exploited FileZen command injection bug, patch now! (CVE-2026-25108)Help Net Security·Jun 8, 10:29 UTC · Jun 8, 2026Vulnerability in the wildCVE-2026-2510860
Zimbra Patches Critical SNMP Command Injection and Four XSS VulnerabilitiesThe Hacker News·Jul 21, 13:18 UTC · Jul 21, 2026Vulnerability in the wildCVE-2026-5005560
Zyxel Releases Patch for Critical Firewall OS Command Injection VulnerabilityThe Hacker News·May 15, 00:00 UTC · May 15, 2022Vulnerability in the wildCVE-2022-30525CVE-2022-26413CVE-2022-26414+1 CVEs60
Zyxel fixes critical command injection flaw in EOL NAS devices (CVE-2024-6342)Help Net Security·Sep 10, 00:00 UTC · Sep 10, 2024Vulnerability in the wildCVE-2024-6342CVE-2024-2997360
Cisco fixes root privilege, command injection vulnerabilities in Cisco SD-WAN solutionHelp Net Security·May 28, 10:03 UTC · May 28, 2020Vulnerability in the wildCVE-2020-3265CVE-2020-3266CVE-2020-3264+2 CVEs60
Cisco fixed a critical command injection bug in IP Phone SeriesSecurity Affairs·Mar 2, 15:55 UTC · Mar 2, 2023Vulnerability in the wildCVE-2023-20078CVE-2023-2007960
QNAP fixes OS command injection flaws affecting its NAS devices (CVE-2023-47218, CVE-2023-50358)Help Net Security·Feb 14, 00:00 UTC · Feb 14, 2024VulnerabilityCVE-2023-47218CVE-2023-50358CVE-2023-4756560
QNAP fixed two critical flaws in QTS OS and appsSecurity Affairs·Nov 6, 14:27 UTC · Nov 6, 2023VulnerabilityCVE-2023-23368CVE-2023-2336960
Hackers target critical flaw CVE-2024-10914 in EOL DSecurity Affairs·Nov 14, 23:47 UTC · Nov 14, 2024VulnerabilityCVE-2024-1091460
Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply ChainThe Hacker News·Apr 22, 05:41 UTC · Apr 22, 2026VulnerabilityCVE-2025-65720CVE-2026-30623CVE-2026-30624+12 CVEs160
Kernel command line injection flaw found in Motorola handsets G4, G5Security Affairs·Jun 11, 12:08 UTC · Jun 11, 2017VulnerabilityCVE-2016-1027760
Critical Unpatched Flaws Disclosed In Western Digital 'My Cloud' Storage DevicesThe Hacker News·Jan 5, 12:24 UTC · Jan 5, 2018Vulnerability55
JPCERT/CC Reports Widespread Exploitation of Array Networks AG Gateway VulnerabilitySecurity Affairs·Dec 5, 13:19 UTC · Dec 5, 2025Vulnerability in the wildCVE-2023-2846160
Zyxel CPE Devices Face Active Exploitation Due to Unpatched CVE-2024The Hacker News·Feb 5, 04:14 UTC · Feb 5, 2025Vulnerability in the wildCVE-2024-40891CVE-2024-40890CVE-2024-57726+3 CVEs60
Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation AttemptsThe Hacker News·Jul 1, 13:58 UTC · Jul 1, 2026Vulnerability in the wildCVE-2026-8037CVE-2024-121260
TP-Link Patches Four Omada Gateway Flaws, Two Allow Remote Code ExecutionThe Hacker News·Oct 23, 14:30 UTC · Oct 23, 2025Vulnerability in the wildCVE-2025-6541CVE-2025-6542CVE-2025-7850+2 CVEs60
VMware fixes critical flaws in Aria Operations for Networks (CVE-2023-20887)Help Net Security·Jun 21, 09:47 UTC · Jun 21, 2023Vulnerability in the wildCVE-2023-20887CVE-2023-20888CVE-2023-20889+1 CVEs60
Serious flaws in Western Digital My Cloud NAS devices allow attackers to fully control themSecurity Affairs·Mar 8, 07:54 UTC · Mar 8, 2017VulnerabilityCVE-2016-10107CVE-2016-1010860
D-Link router models affected by RCE issue that will not be fixedSecurity Affairs·Oct 7, 14:47 UTC · Oct 7, 2019VulnerabilityCVE-2019-1692060
CISA Adds Critical Flaw in BeyondTrust Software to Exploited Vulnerabilities ListThe Hacker News·Dec 31, 05:34 UTC · Dec 31, 2024Vulnerability in the wildCVE-2024-12356CVE-2024-1268660
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from JanuaryRecorded Future·Mar 13, 00:00 UTC · Mar 13, 2026Vulnerability in the wildCVE-2025-15556CVE-2026-21513CVE-2026-21533+4 CVEs160
November 2025 CVE Landscape: 10 Critical Vulnerabilities Show 69% Drop from OctoberRecorded Future·Dec 10, 00:00 UTC · Dec 10, 2025Vulnerability in the wildCVE-2025-64446CVE-2025-58034CVE-2025-21042+1 CVEs60
Hewlett Packard Enterprise fixes critical authentication bypass in Aruba AOSSecurity Affairs·Mar 11, 11:28 UTC · Mar 11, 2026VulnerabilityCVE-2026-23813CVE-2026-23814CVE-2026-23815+3 CVEs60
Critical mySCADA myPRO Flaws Could Let Attackers Take Over Industrial Control SystemsThe Hacker News·Mar 19, 07:38 UTC · Mar 19, 2025VulnerabilityCVE-2025-20014CVE-2025-2006160
OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token VulnerabilityThe Hacker News·Mar 30, 18:05 UTC · Mar 30, 2026Vulnerability155
Hackers actively exploit critical RCE flaw in legacy DSecurity Affairs·Jan 7, 09:52 UTC · Jan 7, 2026Vulnerability in the wildCVE-2026-062560
CISA Warns of Critical Fortinet Flaw as Palo Alto and Cisco Issue Urgent Security PatchesThe Hacker News·Oct 12, 04:56 UTC · Oct 12, 2024Vulnerability in the wildCVE-2024-23113CVE-2024-9463CVE-2024-9464+4 CVEs60
How a single image takes control of a MacKaspersky Securelist·May 20, 09:11 UTC · May 20, 2026VulnerabilityCVE-2026-3102CVE-2021-2220460
Zyxel Releases Patches to Fix 15 Flaws in NAS, Firewall, and AP DevicesThe Hacker News·Dec 1, 06:22 UTC · Dec 1, 2023VulnerabilityCVE-2023-35138CVE-2023-4473CVE-2023-4474+3 CVEs60