Skip to content
June 20, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button

LATEST NEWS

Avada Builder vulnerability CVE-2026-8713 unauthenticated arbitrary file deletion in WordPress
  • Vulnerability Report

1M WordPress Sites at Risk: Critical Unauthenticated Arbitrary File Deletion in Avada Builder (CVSS 9.1)

Do Son June 19, 2026 0
Illustration of Chrome extension vulnerabilities and hacker exploiting MaXSS and Spyder flaws
  • Vulnerability Report

Chrome Extension Vulnerabilities: Millions at Risk

Do Son June 19, 2026 0
NGINX vulnerabilities CVE-2026-42530 HTTP/3 use-after-free and HTTP/2 buffer overflow
  • Vulnerability Report

F5 Patches Two Critical NGINX Flaws in HTTP/3 and HTTP/2 Modules (CVE-2026-42530, CVE-2026-42055)

Do Son June 19, 2026 0
iba deserialization vulnerability enabling remote code execution in ibaPDA and ibaDatCoordinator (CVE-2026-8024)
  • Vulnerability Report

Critical iba Deserialization Vulnerability Exposes ibaPDA and ibaDatCoordinator to RCE (CVE-2026-8024)

Do Son June 19, 2026 0
OpenBSD authentication bypass PoC exploit for the PPP PAP CVE-2026-55706 vulnerability
  • Vulnerability Report

27-Year-Old OpenBSD Authentication Bypass: Details and PoC Exploit Publicly Disclosed

Do Son June 19, 2026 0

Tech News

Google Calendar custom colors RGB picker event organization
  • Technology

Google Calendar Adds 200 Custom Colors and a Full RGB Picker

Do Son June 19, 2026 0
Claude Code quota reset notification displayed on a developer workstation screen
  • Technology

Claude Code Quota Reset Follows Morning Outage

Do Son June 19, 2026 0
iOS third-party app stores Brazil Apple CADE settlement
  • Technology

Apple Opens iOS to Third-Party App Stores in Brazil Under CADE Settlement

Do Son June 19, 2026 0
ChatGPT Scheduled Tasks feature transforming AI into an active agent
  • Technology

ChatGPT Scheduled Tasks Transform AI into an Active Agent

Do Son June 18, 2026 0

Vulnerability

FreeBSD privilege escalation CVE-2026-49413, Linuxulator vulnerability
  • Vulnerability

FreeBSD Privilege Escalation Flaw CVE-2026-49413 Hits the Linuxulator

Do Son June 15, 2026 0
CVE-2022-35951 Redis DarkReplica exploit CVE-2026-23631 public disclosure
  • Vulnerability

Redis DarkReplica Exploit: Full PoC Code and Technical Details Released

Do Son June 8, 2026 0
Mautic security vulnerabilities critical RCE flaws
  • Vulnerability

Critical RCE Flaws Fixed in Mautic Marketing Platform

Do Son June 4, 2026 0
Drupal SQL injection exploit wild exploit PoC
  • Vulnerability

Drupal SQL Injection Exploit: Critical Flaw Exploited in the Wild with Public PoC

Do Son June 3, 2026 0

Cyber Security

Critical ArcGIS Account Recovery Targeted in Active Attacks Illustration of ArcGIS Account Recovery attacks highlighted in the latest security bulletin
  • Cybercriminals

Critical ArcGIS Account Recovery Targeted in Active Attacks

June 20, 2026 0
Device Code Phishing: Microsoft 365 Attack That Steals No Passwords hack
  • Cybercriminals

Device Code Phishing: Microsoft 365 Attack That Steals No Passwords

June 20, 2026 0
UNC1151 ‘Ghostwriter’ Phishing Campaign Hijacks Gmail Accounts and 2FA Codes UNC1151 Gmail phishing fake Google login page stealing 2FA codes by Ghostwriter
  • Cybercriminals

UNC1151 ‘Ghostwriter’ Phishing Campaign Hijacks Gmail Accounts and 2FA Codes

June 19, 2026 0
Velvet Ant’s Operation Highland: A Decade Inside Critical Infrastructure conti
  • Cybercriminals

Velvet Ant’s Operation Highland: A Decade Inside Critical Infrastructure

June 18, 2026 0

Malware Alert

GlassWASM Malware Hidden in Open VSX Extensions code
  • Malware

GlassWASM Malware Hidden in Open VSX Extensions

June 20, 2026 0
Interlock and Rhysida Ransomware: IBM X-Force Maps a Shared Ecosystem malware
  • Malware

Interlock and Rhysida Ransomware: IBM X-Force Maps a Shared Ecosystem

June 19, 2026 0
APT37 NarwhalRAT Malware: A Python Backdoor Threat APT37 NarwhalRAT malware diagram
  • Malware

APT37 NarwhalRAT Malware: A Python Backdoor Threat

June 19, 2026 0
AsyncRAT AI Lures Target Users Hunting AI Skills cy
  • Malware

AsyncRAT AI Lures Target Users Hunting AI Skills

June 18, 2026 0

Data Leak

Novo Nordisk Breach Exposes AI Models and Patient Data Novo Nordisk data breach Novo Nordisk hack, AI training data theft, clinical trial data leak
  • Data Leak

Novo Nordisk Breach Exposes AI Models and Patient Data

June 16, 2026 0
Uncanny Automator Breach: Backdoored Plugin Build Hit WordPress Sites Uncanny Automator breach WordPress supply chain attack, plugin backdoor, data breach
  • Data Leak

Uncanny Automator Breach: Backdoored Plugin Build Hit WordPress Sites

June 15, 2026 0
Architectural Exposure: Developers Extract Apple’s Subterranean Core Prompts for Siri AI Siri AI system prompt Siri AI iOS 27
  • Data Leak

Architectural Exposure: Developers Extract Apple’s Subterranean Core Prompts for Siri AI

June 10, 2026 0
Cybercriminals Deploy Malicious AI Extensions to Steal Private Chat Data malicious AI extensions browser data exfiltration
  • Data Leak
  • Malware

Cybercriminals Deploy Malicious AI Extensions to Steal Private Chat Data

June 10, 2026 0
Gcore Helps Ucom Safeguard Public Live Broadcast Infrastructure During Armenia’s Parliamentary Elections fi_5_e3ed09ff94_1_1781877042S8sPtX4e3f
  • Press Release

Gcore Helps Ucom Safeguard Public Live Broadcast Infrastructure During Armenia’s Parliamentary Elections

cybernewswire June 19, 2026 0
Luxembourg, Luxembourg, 19th June 2026, CyberNewswire
Read More Read more about Gcore Helps Ucom Safeguard Public Live Broadcast Infrastructure During Armenia’s Parliamentary Elections
eFAQ Publishes Investigation Into Alleged Scam Activity and Coordinated Reputation Attacks ChatGPT_Image_12__2026__14_15_31_1781266554PR1huQkj8c
  • Press Release

eFAQ Publishes Investigation Into Alleged Scam Activity and Coordinated Reputation Attacks

cybernewswire June 19, 2026 0
New York, USA, 19th June 2026, CyberNewswire
Read More Read more about eFAQ Publishes Investigation Into Alleged Scam Activity and Coordinated Reputation Attacks
Chrome Extension Vulnerabilities: Millions at Risk Illustration of Chrome extension vulnerabilities and hacker exploiting MaXSS and Spyder flaws
  • Vulnerability Report

Chrome Extension Vulnerabilities: Millions at Risk

Do Son June 19, 2026 0
Rebora Security Research recently uncovered severe Chrome extension vulnerabilities. These critical flaws impact two widely used AI...
Read More Read more about Chrome Extension Vulnerabilities: Millions at Risk
F5 Patches Two Critical NGINX Flaws in HTTP/3 and HTTP/2 Modules (CVE-2026-42530, CVE-2026-42055) NGINX vulnerabilities CVE-2026-42530 HTTP/3 use-after-free and HTTP/2 buffer overflow
  • Vulnerability Report

F5 Patches Two Critical NGINX Flaws in HTTP/3 and HTTP/2 Modules (CVE-2026-42530, CVE-2026-42055)

Do Son June 19, 2026 0
F5 has issued out-of-band patches for two serious flaws in its NGINX web server. The critical NGINX...
Read More Read more about F5 Patches Two Critical NGINX Flaws in HTTP/3 and HTTP/2 Modules (CVE-2026-42530, CVE-2026-42055)
Critical iba Deserialization Vulnerability Exposes ibaPDA and ibaDatCoordinator to RCE (CVE-2026-8024) iba deserialization vulnerability enabling remote code execution in ibaPDA and ibaDatCoordinator (CVE-2026-8024)
  • Vulnerability Report

Critical iba Deserialization Vulnerability Exposes ibaPDA and ibaDatCoordinator to RCE (CVE-2026-8024)

Do Son June 19, 2026 0
Unauthenticated RCE hits iba industrial software A critical iba deserialization vulnerability could let remote attackers run arbitrary...
Read More Read more about Critical iba Deserialization Vulnerability Exposes ibaPDA and ibaDatCoordinator to RCE (CVE-2026-8024)
27-Year-Old OpenBSD Authentication Bypass: Details and PoC Exploit Publicly Disclosed OpenBSD authentication bypass PoC exploit for the PPP PAP CVE-2026-55706 vulnerability
  • Vulnerability Report

27-Year-Old OpenBSD Authentication Bypass: Details and PoC Exploit Publicly Disclosed

Do Son June 19, 2026 0
A one-line bug that survived 27 years Researchers at Argus have publicly disclosed an OpenBSD authentication bypass...
Read More Read more about 27-Year-Old OpenBSD Authentication Bypass: Details and PoC Exploit Publicly Disclosed
LiteLLM Authentication Bypass via Host Header Injection (CVE-2026-49468) LiteLLM authentication bypass via Host Header Injection in the AI Gateway proxy (CVE-2026-49468)
  • Vulnerability Report

LiteLLM Authentication Bypass via Host Header Injection (CVE-2026-49468)

Do Son June 19, 2026 0
  Critical bug exposes LiteLLM management routes A newly disclosed LiteLLM authentication bypass could let unauthenticated attackers...
Read More Read more about LiteLLM Authentication Bypass via Host Header Injection (CVE-2026-49468)
Langflow File Upload Flaw: Details and PoC Exploit Publicly Disclosed (CVE-2026-55450) Langflow file upload flaw enabling unauthenticated denial-of-service and path leak (CVE-2026-55450)
  • Vulnerability Report

Langflow File Upload Flaw: Details and PoC Exploit Publicly Disclosed (CVE-2026-55450)

Do Son June 19, 2026 0
  Unauthenticated upload exposes Langflow servers A newly published Langflow file upload flaw lets anyone with network...
Read More Read more about Langflow File Upload Flaw: Details and PoC Exploit Publicly Disclosed (CVE-2026-55450)
Rockwell Automation patches multiple ICS flaws Rockwell Automation vulnerabilities in FactoryTalk Historian and FLEX I/O EtherNet/IP adapters
  • Vulnerability Report

Rockwell Automation patches multiple ICS flaws

Do Son June 19, 2026 0
Rockwell Automation has disclosed two security advisories that reveal several Rockwell Automation vulnerabilities across its industrial product...
Read More Read more about Rockwell Automation patches multiple ICS flaws
Splunk CVE-2026-20253: CVSS 9.8 RCE Exploited in the Wild Splunk CVE-2026-20253 remote code execution vulnerability diagram
  • Vulnerability Report

Splunk CVE-2026-20253: CVSS 9.8 RCE Exploited in the Wild

Do Son June 18, 2026 0
  The cybersecurity landscape faces a critical threat today. CISA confirmed active exploitation of Splunk CVE-2026-20253. Consequently,...
Read More Read more about Splunk CVE-2026-20253: CVSS 9.8 RCE Exploited in the Wild
Node.js Security Updates: Urgent Action Required Node.js security updates patch critical vulnerabilities
  • Vulnerability Report

Node.js Security Updates: Urgent Action Required

Do Son June 18, 2026 0
Critical Node.js Security Updates Released Developers must quickly apply the newest Node.js security updates. The Node.js project...
Read More Read more about Node.js Security Updates: Urgent Action Required
Microsoft China AI Business Thrives on OpenAI Sales Microsoft China AI business growth via OpenAI and ByteDance partnership
  • Technology

Microsoft China AI Business Thrives on OpenAI Sales

Do Son June 18, 2026 0
The artificial intelligence rivalry and technological warfare between the United States and China continue to escalate. This...
Read More Read more about Microsoft China AI Business Thrives on OpenAI Sales
Moxa Patches NPort Flaws: Root RCE and Format String Bugs (CVE-2026-10829) Moxa NPort vulnerability CVE-2026-10829 stack buffer overflow in serial device server
  • Vulnerability Report

Moxa Patches NPort Flaws: Root RCE and Format String Bugs (CVE-2026-10829)

Do Son June 18, 2026 0
Industrial network gear is back in the spotlight. Moxa has disclosed two flaws in its NPort serial...
Read More Read more about Moxa Patches NPort Flaws: Root RCE and Format String Bugs (CVE-2026-10829)
Apple Intelligence Developer Tools Revealed at WWDC 2026 Apple Intelligence developer tools showcase at WWDC 2026
  • Technology

Apple Intelligence Developer Tools Revealed at WWDC 2026

Do Son June 18, 2026 0
During the recent WWDC 2026 special session, Apple profoundly explored the underlying operational mechanisms of its artificial...
Read More Read more about Apple Intelligence Developer Tools Revealed at WWDC 2026
WhatsApp Tests View Once Text Messages WhatsApp testing View Once text messages feature on smartphone screen
  • Technology

WhatsApp Tests View Once Text Messages

Do Son June 18, 2026 0
While WhatsApp currently supports “View Once” options for photos, videos, and voice notes, traditional text messages have...
Read More Read more about WhatsApp Tests View Once Text Messages
OpenAI Joins Rust Foundation with $600K Donation OpenAI joins Rust Foundation to support open-source infrastructure
  • Technology

OpenAI Joins Rust Foundation with $600K Donation

Do Son June 18, 2026 0
The Rust Foundation, the non-profit stewardship organization behind the renowned programming language Rust, recently welcomes OpenAI as...
Read More Read more about OpenAI Joins Rust Foundation with $600K Donation
Apple Price Increase Looms Amid AI Memory Crisis Apple price increase due to AI memory component shortages
  • Technology

Apple Price Increase Looms Amid AI Memory Crisis

Do Son June 18, 2026 0
The retail prices of Apple products will likely experience a significant escalation soon. Tim Cook, the current...
Read More Read more about Apple Price Increase Looms Amid AI Memory Crisis
Khmer Shadow Espionage Campaign Targets Cambodian Government hack
  • Malware

Khmer Shadow Espionage Campaign Targets Cambodian Government

Do Son June 18, 2026 0
Acronis Threat Research Unit has uncovered a previously unreported Khmer Shadow espionage campaign that uses a custom...
Read More Read more about Khmer Shadow Espionage Campaign Targets Cambodian Government
FortiBleed: 30,791 Fortinet Firewalls Compromised in Global Credential Heist FortiBleed campaign map of 30,791 compromised Fortinet firewalls and VPN credential leak
  • Cybercriminals

FortiBleed: 30,791 Fortinet Firewalls Compromised in Global Credential Heist

Do Son June 18, 2026 0
Your firewall is supposed to keep attackers out. Yet a sweeping new campaign turns that assumption on...
Read More Read more about FortiBleed: 30,791 Fortinet Firewalls Compromised in Global Credential Heist
AI Drives 2026 Vulnerability Forecast to 66K CVEs, But Risk Stays Flat 2026 vulnerability forecast chart showing AI vulnerability discovery driving CVE growth
  • Vulnerability Report

AI Drives 2026 Vulnerability Forecast to 66K CVEs, But Risk Stays Flat

Do Son June 18, 2026 0
The numbers look alarming at first glance. According to the 2026 vulnerability forecast from the Forum of...
Read More Read more about AI Drives 2026 Vulnerability Forecast to 66K CVEs, But Risk Stays Flat
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-5366CVSS 9.9
    Prefect version 3.6.23 is vulnerable to remote code execution due to improper...
  • CVE-2024-58351CVSS 9.8
    Flowise before 2.1.4 allows configuration to be injected into the Chainflow during...
  • CVE-2022-50972CVSS 9.8
    WooCommerce 7.1.0 contains a remote code execution vulnerability that allows attackers to...
  • CVE-2019-25763CVSS 9.8
    WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability...
  • CVE-2026-11551CVSS 9.8
    The Branda plugin for WordPress is vulnerable to privilege escalation via account...
  • CVE-2026-56081CVSS 9.1
    Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker...
  • CVE-2026-56073CVSS 9.4
    Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that...
  • CVE-2026-55447CVSS 9.6
    ### Summary All components based on `BaseFileComponent` are vulnerable to the following...
  • CVE-2026-48584CVSS 9.9
    Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to...
  • CVE-2026-48582CVSS 9.6
    Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.