Critical Commvault RCE vulnerability fixed, PoC available (CVE-2025-34028)Help Net Security·May 5, 07:42 UTC · May 5, 2025Exploit / PoC in the wildCVE-2025-3402860
Commvault CVE-2025-34028 Added to CISA KEV After Active Exploitation ConfirmedThe Hacker News·May 10, 06:43 UTC · May 10, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2025-392860
Highest-Risk Security Flaw Found in Commvault Backup SolutionsInfosecurity Magazine·Apr 24, 15:00 UTC · Apr 24, 2025Exploit / PoCCVE-2025-3402860
U.S. CISA adds Yii Framework and Commvault Command Center flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 3, 10:11 UTC · May 3, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2024-58136CVE-2025-32432260
Week in review: MITRE ATT&CK v17.0 released, PoC for Erlang/OTP SSH bug is publicHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2025Exploit / PoCCVE-2025-32433CVE-2025-34028CVE-2025-2761060
Pre-Auth Exploit Chains Found in Commvault Could Enable Remote Code Execution AttacksThe Hacker News·Aug 21, 16:38 UTC · Aug 21, 2025Vulnerability in the wildCVE-2025-57788CVE-2025-57789CVE-2025-57790+2 CVEs60
Commvault plugs holes in backup suite that allow remote code executionHelp Net Security·Aug 20, 00:00 UTC · Aug 20, 2025VulnerabilityCVE-2025-57788CVE-2025-57789CVE-2025-57791+2 CVEs47
⚡ Weekly Recap: Critical SAP Exploit, AI-Powered Phishing, Major Breaches, New CVEs & MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Phishing & fraudCVE-2025-31324CVE-2024-58136CVE-2025-32432+16 CVEs60
Critical Commvault Command Center Flaw Enables Attackers to Execute Code RemotelyThe Hacker News·Apr 24, 10:00 UTC · Apr 24, 2025Data breach in the wildCVE-2025-3402860