Threat Brief: CVE-2022-41040 and CVE-2022-41082: Microsoft Exchange Server (ProxyNotShell)Palo Alto Unit 42·Jun 5, 17:51 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-41040CVE-2022-41082CVE-2021-34473+2 CVEs60
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for monthsHelp Net Security·May 3, 00:00 UTC · May 3, 2026Vulnerability in the wildCVE-2026-32202CVE-2026-21510CVE-2026-21513+3 CVEs260
ToolShell: a story of five vulnerabilities in Microsoft SharePointKaspersky Securelist·Jul 25, 07:00 UTC · Jul 25, 2025Vulnerability in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs160
Beyond Vulnerability ManagementThe Hacker News·May 9, 16:51 UTC · May 9, 2025Vulnerability in the wild60
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attackHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2026Vulnerability in the wildCVE-2026-20262CVE-2026-48558CVE-2026-39813+3 CVEs160
Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekThe Hacker News·Jun 19, 13:44 UTC · Jun 19, 2026Vulnerability in the wildCVE-2026-39813CVE-2026-39808CVE-2026-25089+1 CVEs60
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
Verizon DBIR: Vulnerability Exploits Overtake CredentialsInfosecurity Magazine·May 20, 08:40 UTC · May 20, 2026Vulnerability in the wild60
Verizon DBIR: Vulnerability exploitation is the dominant initial access vectorHelp Net Security·May 20, 00:00 UTC · May 20, 2026Vulnerability in the wild60
Week in review: Apache Struts vulnerability exploit attempt, EOL Sophos firewalls get hotfixHelp Net Security·Dec 17, 00:00 UTC · Dec 17, 2023Vulnerability in the wildCVE-2022-3236CVE-2023-50164CVE-2021-44228+1 CVEs60
Exploitable Vulnerabilities Present in 87% of OrganizationsInfosecurity Magazine·Feb 26, 14:00 UTC · Feb 26, 2026Vulnerability in the wild60
Exposed training apps are showing up in active cloud attacksHelp Net Security·Jan 22, 00:00 UTC · Jan 22, 2026Vulnerability in the wild60
Understanding Exploitation of Medium and Low CVSS Score VulnerabilitiesRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability in the wild60
NVD Revamps Operations as Vulnerability Reporting SurgesInfosecurity Magazine·Apr 11, 16:05 UTC · Apr 11, 2025Vulnerability in the wild57
Vulnerability Exploits Triple as Initial Access Point for BreachesInfosecurity Magazine·May 1, 12:00 UTC · May 1, 2024Vulnerability in the wild60
Mass exploitation of Ivanti VPNs is infecting networks around the globeArs Technica · Security·Jan 24, 01:36 UTC · Jan 24, 2024Vulnerability in the wild60
Cisco Talos Honeypot Analysis Reveals Rise in Attacks on Elasticsearch ClustersCisco Talos·Feb 26, 18:56 UTC · Feb 26, 2019Vulnerability in the wildCVE-2014-3120CVE-2015-1427CVE-2018-7600+2 CVEs160
Vulnerability Spotlight: YAML Parsing Remote Code Execution Vulnerabilities in Ansible Vault and TablibCisco Talos·Sep 14, 14:30 UTC · Sep 14, 2017Vulnerability in the wildCVE-2017-2809CVE-2017-2810160