Australia Alerts Organizations to Ongoing CMS Exploitation AttacksSecurity Affairs·Jul 13, 07:39 UTC · Jul 13, 2026Exploit / PoC in the wildCVE-2025-34085CVE-2020-36847CVE-2025-12057+15 CVEs60
Australian Cyber Agency Warns of Global CMS Exploitation CampaignInfosecurity Magazine·Jul 13, 08:30 UTC · Jul 13, 2026Threat actor60
Hackers Exploit Critical Craft CMS Flaws; Hundreds of Servers Likely CompromisedThe Hacker News·Apr 29, 10:40 UTC · Apr 29, 2025Exploit / PoC in the wildCVE-2024-58136CVE-2024-4990CVE-2025-32432+1 CVEs60
CMS portal breach exposes 75,000 individuals' recordsCyberScoop·Oct 22, 15:30 UTC · Oct 22, 2018Data breach in the wild60
U.S. CISA adds Apple, Laravel Livewire and Craft CMS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 22, 14:40 UTC · Mar 22, 2026Exploit / PoC in the wildCVE-2025-31277CVE-2025-32432CVE-2025-43510+3 CVEs60
Ghost CMS flaw abused to push ClickFix attacks on hundreds of sitesSecurity Affairs·May 25, 18:07 UTC · May 25, 2026Vulnerability in the wildCVE-2026-2698060
U.S. CISA adds Sitecore CMS and XP, and GitHub Action flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 27, 12:31 UTC · Mar 27, 2025Exploit / PoC in the wildCVE-2019-9875CVE-2019-9874CVE-2025-3015460
CISA Flags Craft CMS Vulnerability CVE-2025The Hacker News·Feb 21, 12:50 UTC · Feb 21, 2025Vulnerability in the wildCVE-2025-23209CVE-2024-5614560
Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix AttacksThe Hacker News·Jun 26, 07:33 UTC · Jun 26, 2026VulnerabilityCVE-2026-2698060
U.S. CISA adds ASUS RT-AX55 devices, Craft CMS, and ConnectWise ScreenConnect flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 3, 19:35 UTC · Jun 3, 2025Exploit / PoC in the wildCVE-2021-32030CVE-2023-39780CVE-2024-56145+2 CVEs60
Attackers behind CMS portal breach used legit accounts to swipe dataCyberScoop·Nov 9, 18:56 UTC · Nov 9, 2018Exploit / PoC in the wild60
May 2026 CVE LandscapeRecorded Future·Jun 15, 00:00 UTC · Jun 15, 2026Exploit / PoC in the wildCVE-2008-4250CVE-2009-1537CVE-2009-3459+19 CVEs60
MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution AttacksThe Hacker News·May 5, 11:56 UTC · May 5, 2026VulnerabilityCVE-2026-2901460
U.S. CISA adds Craft CMS and Palo Alto Networks PAN-OS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 21, 10:40 UTC · Feb 21, 2025Exploit / PoC in the wildCVE-2025-23209CVE-2025-0111CVE-2025-0108+1 CVEs60
Vulnerability Spotlight: XSS vulnerability in Ghost CMSCisco Talos·Jan 19, 20:01 UTC · Jan 19, 2023Vulnerability in the wildCVE-2022-47194CVE-2022-4719760
KashmirBlack Botnet Hijacks Thousands of Sites Running On Popular CMS PlatformsThe Hacker News·Oct 29, 10:02 UTC · Oct 29, 2020Malware in the wildCVE-2017-984160
Drupal version 8.2.7 address multiple vulnerabilities in the current version of the popular CMSSecurity Affairs·Mar 16, 15:01 UTC · Mar 16, 2017VulnerabilityCVE-2017-6377CVE-2017-6379CVE-2017-638160
The Plone community claims the FBI hack is a fake, it's a mysterySecurity Affairs·Jan 6, 12:40 UTC · Jan 6, 2017Data breach in the wild60
FBI website hacked by CyberZeist and data leaked onlineSecurity Affairs·Jan 4, 21:02 UTC · Jan 4, 2017Data breach60
CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026The Hacker News·Mar 21, 08:25 UTC · Mar 21, 2026Exploit / PoC in the wildCVE-2025-31277CVE-2025-43510CVE-2025-43520+2 CVEs160
CMS Provider Sitecore Patches Exploited Critical Zero DayInfosecurity Magazine·Sep 4, 13:30 UTC · Sep 4, 2025VulnerabilityCVE-2025-5369060
Vulnerability Spotlight: Node-SQLite3 issue could lead to denial of service in Ghost CMSCisco Talos·Mar 16, 18:32 UTC · Mar 16, 2023Vulnerability in the wildCVE-2022-4344160
EnemyBot malware adds new exploits to target CMS servers and Android devicesSecurity Affairs·May 30, 07:09 UTC · May 30, 2022MalwareCVE-2020-17456CVE-2018-10823CVE-2022-27226+19 CVEs60
iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as ZeroThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoC in the wildCVE-2026-48939CVE-2026-56291CVE-2025-6389+9 CVEs60
CosmicSting attack & defense overviewSansec (Magento / e-commerce security)·Apr 14, 20:16 UTC · Apr 14, 2026Data breach in the wildCVE-2024-2961CVE-2024-3410260
New malicious web shell from the Tropic Trooper group is found in the Middle EastKaspersky Securelist·Sep 5, 08:02 UTC · Sep 5, 2024Vulnerability in the wildCVE-2021-34473CVE-2021-34523CVE-2021-31207+1 CVEs60
More than 330,000 Medicare recipients affected by MOVEit breachThe Record·Nov 17, 21:45 UTC · Nov 17, 2023Ransomware60
High-Severity Vulnerability Discovered in Popular CMSInfosecurity Magazine·Sep 6, 11:30 UTC · Sep 6, 2023Vulnerability in the wildCVE-2023-2453CVE-2023-448060
Adobe patches Magento CMS zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023VulnerabilityCVE-2022-2408660
Two New Security Flaws Reported in Ghost CMS Blogging SoftwareThe Hacker News·Dec 23, 11:36 UTC · Dec 23, 2022Exploit / PoC in the wildCVE-2022-41654CVE-2022-4169760
Vulnerability Spotlight: Authentication bypass and enumeration vulnerabilities in Ghost CMSCisco Talos·Dec 21, 17:43 UTC · Dec 21, 2022Vulnerability in the wildCVE-2022-41654CVE-2022-4169760
Drupal developers fixed a code execution flaw in the popular CMSSecurity Affairs·Jul 25, 06:21 UTC · Jul 25, 2022VulnerabilityCVE-2022-2527760
Drupal Releases Core CMS Updates to Patch Several VulnerabilitiesThe Hacker News·Apr 17, 21:51 UTC · Apr 17, 2019Vulnerability in the wildCVE-2019-10909CVE-2019-10910CVE-2019-109160
Critical WordPress REST API Bug: Prevent Your Blog From Being Hacked!The Hacker News·Feb 2, 08:24 UTC · Feb 2, 2017Exploit / PoC in the wild60
Threat Actor Mimo Targets Magento and Docker to Deploy Crypto Miners and ProxywareThe Hacker News·Jul 23, 17:15 UTC · Jul 23, 2025Threat actorCVE-2025-3243260
U.S. CISA adds Yii Framework and Commvault Command Center flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 3, 10:11 UTC · May 3, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2024-58136CVE-2025-32432260
Update — Hacker Claims to Have Hacked the FBI, But It Wasn'tThe Hacker News·Jan 6, 13:06 UTC · Jan 6, 2017Data breach in the wild60
Two Critical Vulnerabilities Patched in Joomla 3.6.4. Update it asap!Security Affairs·Oct 26, 06:15 UTC · Oct 26, 2016VulnerabilityCVE-2016-8870CVE-2016-886960
Drupal addressed XSS and information disclosure flawsSecurity Affairs·Sep 17, 17:39 UTC · Sep 17, 2020VulnerabilityCVE-2020-13668CVE-2020-13670CVE-2020-13667+1 CVEs60
July 2026 CVE LandscapeRecorded Future·Aug 7, 00:00 UTC · Aug 7, 2026Ransomware in the wildCVE-2025-3248CVE-2008-4128CVE-2017-17215+78 CVEs160