OptinMonster supply chain attack hits 1.2 million sitesSansec (Magento / e-commerce security)·Jun 15, 18:34 UTC · Jun 15, 2026Vulnerability in the wild57
‘Downfall’ vulnerability leaves billions of Intel CPUs at riskCyberScoop·Aug 8, 17:00 UTC · Aug 8, 2023Vulnerability in the wild60
Vulnerability Spotlight: Multiple GdkCisco Talos·Aug 30, 19:06 UTC · Aug 30, 2017Vulnerability in the wildCVE-2017-2870CVE-2017-286260
GreyNoise enhances threat response with real-time blocklists, feeds, and SOAR integrationsHelp Net Security·Jul 31, 00:00 UTC · Jul 31, 2025Vulnerability in the wild60
NVD Leaves Exploited Vulnerabilities UncheckedInfosecurity Magazine·May 23, 14:00 UTC · May 23, 2024Vulnerability in the wild60
Crimeware: A new round of confrontation begins…Kaspersky Securelist·Apr 29, 14:13 UTC · Apr 29, 2010Vulnerability in the wild57
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.9 CVSS Score BugsThe Hacker News·Aug 7, 06:12 UTC · Aug 7, 2026Vulnerability in the wildCVE-2026-20303CVE-2026-20304CVE-2026-20310+12 CVEs160
Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User InteractionThe Hacker News·Aug 1, 07:12 UTC · Aug 1, 2026Vulnerability in the wildCVE-2026-48449CVE-2026-48448CVE-2026-48395+7 CVEs160
SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify DataThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Vulnerability in the wildCVE-2026-44747CVE-2026-27690CVE-2026-4476160
Week in review: SimpleHelp vulnerability exploited, Oracle EBS Payments flaw under attackHelp Net Security·Jul 5, 00:00 UTC · Jul 5, 2026Vulnerability in the wildCVE-2026-12569CVE-2026-48558CVE-2026-4681760
Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-ofThe Hacker News·Jul 2, 15:49 UTC · Jul 2, 2026Vulnerability in the wildCVE-2026-8451CVE-2026-8452CVE-2026-8655+4 CVEs60
Ivanti, Fortinet, and SAP Release Patches for Multiple Critical VulnerabilitiesThe Hacker News·Jun 12, 18:42 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-25089CVE-2026-10520CVE-2026-10523+4 CVEs60
Langflow Vulnerability CVE-2026The Hacker News·Jun 12, 04:10 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-5027CVE-2026-0770CVE-2026-33017+2 CVEs60
Patch Responsibility Remains Up for Grabs as AI Unearth Flaws At ScaleInfosecurity Magazine·Jun 3, 09:00 UTC · Jun 3, 2026Vulnerability in the wild60
Critical WP Maps Pro Flaw Actively Exploited to Create Admin AccountsThe Hacker News·Jun 1, 08:45 UTC · Jun 1, 2026Vulnerability in the wildCVE-2026-873260
Microsoft Patches SharePoint RCE Flaw CVE-2026The Hacker News·May 26, 11:49 UTC · May 26, 2026Vulnerability in the wildCVE-2026-45659CVE-2026-32201160
Microsoft Warns of Two Actively Exploited Defender VulnerabilitiesThe Hacker News·May 26, 07:28 UTC · May 26, 2026Vulnerability in the wildCVE-2026-41091CVE-2026-45498CVE-2026-33825+7 CVEs60
Nine-year-old Linux kernel flaw enables reliable local privilege escalation (CVE-2026-31431)Help Net Security·May 11, 11:22 UTC · May 11, 2026Vulnerability in the wildCVE-2026-3143160
cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch NowThe Hacker News·May 9, 10:15 UTC · May 9, 2026Vulnerability in the wildCVE-2026-29201CVE-2026-29202CVE-2026-29203+1 CVEs60
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs160
Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassThe Hacker News·May 4, 16:34 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4670CVE-2026-517460
Over 400,000 sites at risk as hackers exploit Breeze Cache plugin flaw (CVE-2026Security Affairs·Apr 25, 14:22 UTC · Apr 25, 2026Vulnerability in the wildCVE-2026-384460
ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched ServersThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2025-052060
⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-34621160
Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code ExecutionThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-20184CVE-2026-20147CVE-2026-20180+1 CVEs60
Tech giants launch AI-powered ‘Project Glasswing’ to identify critical software vulnerabilitiesCyberScoop·Apr 7, 19:35 UTC · Apr 7, 2026Vulnerability in the wild60
Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System CompromiseThe Hacker News·Apr 3, 07:45 UTC · Apr 3, 2026Vulnerability in the wildCVE-2026-20093CVE-2026-2016060
LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI FrameworksThe Hacker News·Mar 27, 08:07 UTC · Mar 27, 2026Vulnerability in the wildCVE-2026-34070CVE-2025-68664CVE-2025-67644+2 CVEs160
Citrix Urges Immediate Patching for Critical NetScaler VulnerabilitiesInfosecurity Magazine·Mar 24, 15:15 UTC · Mar 24, 2026Vulnerability in the wildCVE-2026-3055CVE-2026-436860
Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity ManagerThe Hacker News·Mar 21, 10:24 UTC · Mar 21, 2026Vulnerability in the wildCVE-2026-21992CVE-2025-6175760
Critical n8n Flaws Allow Remote Code Execution and Exposure of Stored CredentialsThe Hacker News·Mar 11, 14:51 UTC · Mar 11, 2026Vulnerability in the wildCVE-2026-27577CVE-2026-27493CVE-2026-27495+1 CVEs60
Apple Backports Fix for CVE-2025-43300 Exploited in Sophisticated Spyware AttackThe Hacker News·Mar 10, 05:52 UTC · Mar 10, 2026Vulnerability in the wildCVE-2025-43300CVE-2025-55177CVE-2025-31255+13 CVEs60
BeyondTrust Fixes Critical Pre-Auth RCE Vulnerability in Remote Support and PRAThe Hacker News·Feb 12, 13:33 UTC · Feb 12, 2026Vulnerability in the wildCVE-2026-173160
CSA Issues Alert on Critical SmarterMail Bug Allowing Remote Code ExecutionThe Hacker News·Jan 9, 09:18 UTC · Jan 9, 2026Vulnerability in the wildCVE-2025-5269160
Critical CVSS 9.8 Flaw Found in IBM API Connect Authentication SystemThe Hacker News·Jan 1, 05:05 UTC · Jan 1, 2026Vulnerability in the wildCVE-2025-1391560
HPE OneView Flaw Rated CVSS 10.0 Allows Unauthenticated Remote Code ExecutionThe Hacker News·Dec 18, 14:39 UTC · Dec 18, 2025Vulnerability in the wildCVE-2025-37164160
FreePBX Patches Critical SQLi, File-Upload, and AUTHTYPE Bypass Flaws Enabling RCEThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-61675CVE-2025-61678CVE-2025-66039+1 CVEs60
CISA Adds Actively Exploited XSS Bug CVE-2021The Hacker News·Dec 4, 04:57 UTC · Dec 4, 2025Vulnerability in the wildCVE-2021-26829CVE-2021-2682860
RondoDox Exploits Unpatched XWiki Servers to Pull More Devices Into Its BotnetThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025Vulnerability in the wildCVE-2025-2489360
Cisco Warns of New Firewall Attack Exploiting CVE-2025-20333 and CVE-2025The Hacker News·Nov 6, 14:58 UTC · Nov 6, 2025Vulnerability in the wildCVE-2025-20333CVE-2025-20362CVE-2025-20354+2 CVEs60