Vulnerability landscape in Q4 2025Kaspersky Securelist·Mar 6, 10:00 UTC · Mar 6, 2026Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+7 CVEs160
Vulnerability landscape analysis for Q4 2024Kaspersky Securelist·Feb 26, 10:12 UTC · Feb 26, 2025Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+8 CVEs160
Beyond Vulnerability ManagementThe Hacker News·May 9, 16:51 UTC · May 9, 2025Vulnerability in the wild60
A Crisis of Context: The State of Vulnerability Management (Part 1)Recorded Future·Jan 26, 00:00 UTC · Jan 26, 2026Vulnerability in the wild60
Vulnerability Spotlight: R - PDF LoadEncoding Code Execution VulnerabilityCisco Talos·Mar 9, 15:22 UTC · Mar 9, 2017Vulnerability in the wildCVE-2016-871460
ToolShell: a story of five vulnerabilities in Microsoft SharePointKaspersky Securelist·Jul 25, 07:00 UTC · Jul 25, 2025Vulnerability in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs160
NIST proposes new metric to gauge exploited vulnerabilitiesHelp Net Security·May 26, 00:00 UTC · May 26, 2025Vulnerability in the wild60
Verizon DBIR: Vulnerability exploitation is the dominant initial access vectorHelp Net Security·May 20, 00:00 UTC · May 20, 2026Vulnerability in the wild60
NIST Limits CVE Enrichment After 263% Surge in Vulnerability SubmissionsThe Hacker News·Apr 17, 13:10 UTC · Apr 17, 2026Vulnerability in the wild60
LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI FrameworksThe Hacker News·Mar 27, 08:07 UTC · Mar 27, 2026Vulnerability in the wildCVE-2026-34070CVE-2025-68664CVE-2025-67644+2 CVEs160
iframe Security Exposed: The Blind Spot Fueling Payment Skimmer AttacksThe Hacker News·Sep 24, 11:03 UTC · Sep 24, 2025Vulnerability in the wild60
Week in review: Microsoft fixes wormable RCE bug on Windows, check for CitrixBleed 2 exploitationHelp Net Security·Jul 13, 00:00 UTC · Jul 13, 2025Vulnerability in the wildCVE-2025-47981CVE-2025-49719CVE-2025-5777160
Risk-Based Vulnerability Intelligence Does What CVSS Can’tRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability in the wild60
Zyxel CPE Devices Face Active Exploitation Due to Unpatched CVE-2024The Hacker News·Feb 5, 04:14 UTC · Feb 5, 2025Vulnerability in the wildCVE-2024-40891CVE-2024-40890CVE-2024-57726+3 CVEs60
80% of Manufacturing Firms Have Critical VulnerabilitiesInfosecurity Magazine·Oct 2, 14:00 UTC · Oct 2, 2024Vulnerability in the wild60
Review: Action1 – Simple and powerful patch managementHelp Net Security·Aug 2, 04:43 UTC · Aug 2, 2024Vulnerability in the wild60
Week in review: CDK Global cyberattack, critical vCenter Server RCE fixedHelp Net Security·Jun 23, 00:00 UTC · Jun 23, 2024Vulnerability in the wildCVE-2024-0762CVE-2024-37079CVE-2024-3708060
Researchers Uncover Active Exploitation of WordPress Plugin VulnerabilitiesThe Hacker News·May 30, 13:49 UTC · May 30, 2024Vulnerability in the wildCVE-2023-6961CVE-2023-40000CVE-2024-219460
Hackers Exploiting LiteSpeed Cache Bug to Gain Full Control of WordPress SitesThe Hacker News·May 8, 14:05 UTC · May 8, 2024Vulnerability in the wildCVE-2023-4000060
CISA Warns of Actively Exploited JetBrains TeamCity VulnerabilityThe Hacker News·Mar 8, 06:13 UTC · Mar 8, 2024Vulnerability in the wildCVE-2024-27198CVE-2024-2719960
Google: More than 40% of zero-days in 2022 were variants of previous vulnerabilitiesThe Record·Jul 29, 18:06 UTC · Jul 29, 2023Vulnerability in the wildCVE-2022-3818160
MOVEit app mass-exploited last month patches new critical vulnerabilityArs Technica · Security·Jul 7, 19:10 UTC · Jul 7, 2023Vulnerability in the wildCVE-2023-3693460
Vulnerability Spotlight: WellinTech ICS platform vulnerable to information disclosure, buffer overflow vulnerabilitiesCisco Talos·Mar 21, 13:27 UTC · Mar 21, 2023Vulnerability in the wildCVE-2022-45124CVE-2022-4366360
Qualys VMDR: Discover, prioritize, and patch critical vulnerabilities in real timeHelp Net Security·Mar 9, 20:02 UTC · Mar 9, 2023Vulnerability in the wild60
CISA Warns of Active Exploitation of Critical Spring4Shell VulnerabilityThe Hacker News·Apr 6, 03:27 UTC · Apr 6, 2022Vulnerability in the wildCVE-2022-22965CVE-2022-22674CVE-2022-22675+1 CVEs60
Answering Log4ShellKaspersky Securelist·Dec 21, 10:55 UTC · Dec 21, 2021Vulnerability in the wildCVE-2021-44228CVE-2021-45046CVE-2021-4510560
Vulnerability Spotlight: Vulnerabilities in metal detector peripheral could allow attackers to manipulate security devicesCisco Talos·Dec 20, 16:11 UTC · Dec 20, 2021Vulnerability in the wildCVE-2021-21901CVE-2021-21903CVE-2021-21905+6 CVEs60
CVE-2021-44228 vulnerability in Apache Log4j libraryKaspersky Securelist·Dec 13, 14:10 UTC · Dec 13, 2021Vulnerability in the wildCVE-2021-44228CVE-2021-4504660
Vulnerability Spotlight: Multiple vulnerabilities in OpenClinic’s GA web portalCisco Talos·Apr 13, 14:40 UTC · Apr 13, 2021Vulnerability in the wildCVE-2020-27226CVE-2020-27227CVE-2020-27228+7 CVEs60
China's national vulnerability database is merely a tool for its intelligence agenciesCyberScoop·Mar 9, 16:34 UTC · Mar 9, 2018Vulnerability in the wildCVE-2017-019960
Kaspersky Lab report: Evaluating the threat level of software vulnerabilitiesKaspersky Securelist·Feb 1, 14:30 UTC · Feb 1, 2013Vulnerability in the wild160