BleepingComputer·21h ago highElementor WordPress flaw lets attackers create admin accounts#elementor#wordpress#csrf 3 sources 2 min
Help Net Security·23h ago criticalWordPress 7.1.2 fixes critical unauthenticated path traversal vulnerability (CVE-2026-87902)#cve-2026-87902#patch#path-traversalCVE-2026-87902 16 sources
Cyber Security News·1d ago high16-Year-Old Researcher Finds Microsoft Auth Vulnerability that Exposes 17.3 Trillion Stored Records#microsoft#titan#jwt 4 min1
oss-security·1d agoRe: XSS vulnerability in <ansi2html-1.9.4#xss#ansi2html#oss-securityVulnerability 3 sources
Cyber Security News·1d agoOnePlus 15 Flaws Let Zero-Permission Apps Gain Root Access Through OxygenOS Services#oneplus#oxygenos#oppo 2 sources 3 min
Cyber Security News·1d ago highCritical GitLab Bugs Let Attackers Execute Code Through Malicious CI/CD Regex#gitlab#rce#ci-cd 2 sources 3 min2
The Hacker News·1d agoWordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session#comment2shell#cyber#exploit 6 sources in the wild 3 min
Ubuntu Security Notices·1d agoUSN-8729-3: Linux kernel vulnerabilities#advisory#arm#driversAdvisory 12 sources
GBHackers·2d agoCloudflare Containers Flaw Could Expose Data From Other Customers’ Workloads#cloudflare#containers#cross-tenant 4 sources 3 min
Wordfence·2d agoWordfence Intelligence Weekly WordPress Vulnerability Report (September 14, 2026 to September 20, 2026)#wordpress#wordfence#vulnerability
BleepingComputer·2d ago criticalArista patches actively exploited VeloCloud Orchestrator zero-day#arista-networks#cisa-kev#sd-wanCVE-2026-93952 5 sources in the wild 3 min2
Cyber Security News·2d ago criticalCritical SolarWinds Flaws Let Attackers Remotely Execute Code on Observability Servers#cvss-9.8#patch#remote-code-execution 5 sources 3 min1
oss-security·3d agoRe: Flatpak 1.18.1 fixes multiple vulnerabilities#flatpak#linux#cveCVE-2026-90616 2 sources
oss-security·3d agoCVE-2026-78383: Apache Tomcat: AJP DoS via missing request body#apache#tomcat#cve-2026-78383CVE-2026-78383 15 sources
Lobsters · security·3d agoRadicle: Disclosure of Vulnerability in the Network Protocol#authentication-bypass#information-disclosure#open-source 2 sources 5 min
Cyber Security News·3d ago highCritical IBM FTM Flaws Let Attackers Execute Code and Access Payment Systems#critical-patch#cve#financial-transaction-manager 3 min1
BleepingComputer·3d ago criticalInfraTrust report warns network management systems under attack#check-point#cisa-kev#cisco in the wild 6 min
Cyber Security News·3d ago highAWS Lambda Flaw Lets Attackers Bypass IAM Permissions and Access Cloud Services#aws#cloud-security#iam 3 min
GBHackers·3d ago highHPE Networking Analytics Engine Flaws Let Attackers Gain Root Access#hpe#aruba#ale 4 min
The Hacker News·3d ago highExploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape#ai-vulnerability-discovery#container-escape#docker 3 min1
Cyber Security News·3d ago highNVIDIA Fixes Linux Component Flaws That Could Expose Sensitive System Information#advisory#credential#infrastructure-controller 4 min
GBHackers·3d ago highChrome Update Fixes 108 Vulnerabilities Including Critical GPU, WebGL and ANGLE Flaws#angle#chrome#google 3 min
Cyber Security News·3d ago highChrome Patches 108 Vulnerabilities Including Crticial Flaws that Enable Code Execution Attacks#browser#buffer-overflow#chrome 3 min