Critical mcp-remote Vulnerability Enables Remote Code Execution, Impacting 437,000+ DownloadsThe Hacker News·Jul 11, 04:05 UTC · Jul 11, 2025VulnerabilityCVE-2025-6514CVE-2025-49596CVE-2025-53110+1 CVEs60
Critical Vulnerability in Anthropic's MCP Exposes Developer Machines to Remote ExploitsThe Hacker News·Jul 4, 09:23 UTC · Jul 4, 2025VulnerabilityCVE-2025-4959660
Anthropic MCP Inspector: CVE-2025Recorded Future·Oct 14, 00:00 UTC · Oct 14, 2025Vulnerability in the wildCVE-2025-4959660
Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply ChainThe Hacker News·Apr 22, 05:41 UTC · Apr 22, 2026VulnerabilityCVE-2025-65720CVE-2026-30623CVE-2026-30624+12 CVEs160
Cursor AI Code Editor Vulnerability Enables RCE via Malicious MCP File Swaps Post ApprovalThe Hacker News·Aug 5, 13:04 UTC · Aug 5, 2025VulnerabilityCVE-2025-54136160
Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 CrossThe Hacker News·Aug 5, 14:27 UTC · Aug 5, 2026Vulnerability in the wildCVE-2026-58073CVE-2026-58072CVE-2026-58067+10 CVEs160
Systemic Flaw in MCP Protocol Could Expose 150 Million DownloadsInfosecurity Magazine·Apr 16, 09:40 UTC · Apr 16, 2026Vulnerability55
Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server TakeoverThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-33032CVE-2026-27944CVE-2026-27825+1 CVEs60
Docker Fixes Critical Ask Gordon AI Flaw Allowing Code Execution via Image MetadataThe Hacker News·Feb 3, 16:41 UTC · Feb 3, 2026Vulnerability155
Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI MemoryThe Hacker News·Jul 29, 15:39 UTC · Jul 29, 2026VulnerabilityCVE-2026-59726160
New Zero-Click Flaw in Claude Extensions, Anthropic Declines FixInfosecurity Magazine·Feb 9, 17:30 UTC · Feb 9, 2026Vulnerability55
How Pentera Turns AI Security Workflows into Validation EnginesThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Vulnerability55
Microsoft Patch Tuesday for March 2026 — Snort rules and prominent vulnerabilitiesCisco Talos·Mar 10, 22:23 UTC · Mar 10, 2026VulnerabilityCVE-2026-26110CVE-2026-26113CVE-2026-26144+14 CVEs60
Cisco enhances security for enterprise AI adoptionHelp Net Security·Feb 11, 00:00 UTC · Feb 11, 2026Vulnerability55
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
XM Cyber advances AI security with enhanced exposure and attack path visibilityHelp Net Security·Mar 25, 09:46 UTC · Mar 25, 2026Vulnerability55
Microsoft Patches 84 Flaws in March Patch Tuesday, Including Two Public ZeroThe Hacker News·Mar 11, 09:15 UTC · Mar 11, 2026VulnerabilityCVE-2026-26127CVE-2026-21262CVE-2026-21536+3 CVEs60
DockerDash Exposes AI Supply Chain Weakness In Docker's Ask GordonInfosecurity Magazine·Feb 3, 15:15 UTC · Feb 3, 2026Vulnerability155
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference FrameworksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025VulnerabilityCVE-2024-50050CVE-2025-30165CVE-2025-23254+1 CVEs60
Agentjacking Attack Tricks AI Coding Agents Into Running Malicious CodeThe Hacker News·Jun 12, 12:04 UTC · Jun 12, 2026Vulnerability155
Digimarc adds provenance, audit, and verification controls for AI agent workflowsHelp Net Security·May 28, 00:00 UTC · May 28, 2026Vulnerability55
Cisco builds security framework for safe enterprise adoption of AI agentsHelp Net Security·Mar 24, 00:00 UTC · Mar 24, 2026Vulnerability55
Virtue AI AgentSuite enables enterprises to test and secure AI agentsHelp Net Security·Jan 29, 00:00 UTC · Jan 29, 2026Vulnerability55
Chinese DeepSeek-R1 AI Generates Insecure Code When Prompts Mention Tibet or UyghursThe Hacker News·Nov 24, 11:08 UTC · Nov 24, 2025Vulnerability55
Red Hat Enterprise Linux adds post-quantum security and AI-driven automation in latest releasesHelp Net Security·May 7, 00:00 UTC · May 7, 2026Vulnerability55
Proofpoint addresses AI threats with intent-based securityHelp Net Security·Mar 25, 09:42 UTC · Mar 25, 2026Vulnerability55
ContextCrush Flaw Exposes AI Development Tools to AttacksInfosecurity Magazine·Mar 5, 14:00 UTC · Mar 5, 2026Vulnerability155
Over 600 Laravel Apps Exposed to Remote Code Execution Due to Leaked APP_KEYs on GitHubThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Vulnerability in the wildCVE-2018-15133CVE-2024-5555660
Traefik Labs introduces Distro Zero secure runtime for API and AI gatewaysHelp Net Security·Jul 31, 00:00 UTC · Jul 31, 2026Vulnerability55
The Kill Chain Is Obsolete When Your AI Agent Is the ThreatThe Hacker News·Jul 9, 15:37 UTC · Jul 9, 2026Vulnerability55
NetSPI pairs AI pentesting with expert-validated security findingsHelp Net Security·Jul 9, 00:00 UTC · Jul 9, 2026Vulnerability55
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecastHelp Net Security·Jun 7, 00:00 UTC · Jun 7, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-41089CVE-2025-48595+1 CVEs60
NetSPI AI-powered Continuous Pentesting identifies high-impact vulnerabilitiesHelp Net Security·May 13, 00:00 UTC · May 13, 2026Vulnerability55
Researchers Find ChatGPT Vulnerabilities That Let Attackers Trick AI Into Leaking DataThe Hacker News·Apr 16, 15:50 UTC · Apr 16, 2026VulnerabilityCVE-2025-59145160
CVE-2026-33032: severe nginx-ui bug grants unauthenticated server accessSecurity Affairs·Apr 15, 18:17 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-3303260
Virtue AI brings continuous stress testing to enterprise AI agentsHelp Net Security·Apr 15, 10:01 UTC · Apr 15, 2026Vulnerability55
Flowise AI Agent Builder Under Active CVSS 10.0 RCE Exploitation; 12,000+ Instances ExposedThe Hacker News·Apr 7, 05:56 UTC · Apr 7, 2026Vulnerability in the wildCVE-2025-59528CVE-2025-8943CVE-2025-2631960
Untrusted repositories turn Claude code into an attack vectorSecurity Affairs·Feb 25, 21:39 UTC · Feb 25, 2026VulnerabilityCVE-2025-59536CVE-2026-2185260