Skip to content
September 25, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button

Weekly Recap

CVE-2023-50164 AEM Forms
  • Weekly Recap

Weekly CVE Report: 4,378 New Flaws and 10 Exploited Bugs

Do Son September 21, 2026 0
Weekly CVE report chart comparing Daily Cybersecurity exploited vulnerabilities against the CISA KEV catalog
  • Weekly Recap

Daily Cybersecurity Flagged 9 Exploited Flaws Before CISA KEV

Do Son September 14, 2026 0
This weekly CVE report covers 10 exploited vulnerabilities added to CISA KEV and 2,316 new CVEs from Aug 31 to Sep 6, 2026. Patch fast.
  • Weekly Recap

Weekly CVE Report: Daily Cybersecurity Beats CISA KEV on Exploited Flaws

Do Son September 7, 2026 0
Weekly CVE report dashboard showing new vulnerabilities and CISA KEV exploited flaws for the week
  • Weekly Recap

Weekly CVE Report: 11 Exploited Flaws Added to KEV

Do Son August 31, 2026 0
Chart summarizing the CVE weekly report with 9 exploited vulnerabilities added to the CISA KEV catalog
  • Weekly Recap

Weekly Threat Intelligence Report: Late August 2026

Do Son August 24, 2026 0

Tech News

Microsoft Copilot interface showcasing Home, Code, Autopilot, and Office tabs
  • Technology

Microsoft Unveils the Next Generation of Copilot

Do Son September 25, 2026 0
Google Project Suncatcher orbital AI data center satellite
  • Technology

Google Project Suncatcher: Pioneering Orbital AI Data Centers

Do Son September 25, 2026 0
Microsoft game ad patent concept showing a paused game screen for promotional content
  • Technology

Microsoft Explores Intrusive In-Game Advertising

Do Son September 24, 2026 0
iOS 27 Auto Lock feature securing a snatched iPhone and protecting user data
  • Technology

Apple Introduces the iOS 27 Auto Lock Feature

Do Son September 23, 2026 0

Vulnerability

Diagram illustrating critical MongoDB driver vulnerabilities and patched MongoDB driver vulnerabilities
  • Vulnerability Report

MongoDB Driver Vulnerabilities Fixed Across Ecosystem

Do Son September 25, 2026 0
Diagram showing Apache Qpid Broker-J vulnerabilities and attack mechanisms
  • Vulnerability Report

High-Severity Apache Qpid Broker-J Vulnerabilities Fixed

Do Son September 25, 2026 0
card-80442
  • Vulnerability Report

Norwegian Cruise Line Vulnerability Permits Keycard Replay

Do Son September 25, 2026 0
Diagram illustrating critical PHP vulnerabilities and patched PHP vulnerabilities
  • Vulnerability Report

High-Severity PHP Vulnerabilities Patched Across Multiple Branches

Do Son September 25, 2026 0

Cyber Security

TeamFiltration Password Spray Campaign Hits Chile illegal streaming networks complex criminal enterprises UAT-7290 China-nexus Espionage Adversarial Misuse of Generative AI
  • Cybercriminals

TeamFiltration Password Spray Campaign Hits Chile

September 25, 2026 0
Chinese Hackers Deploy UTA0565 Zero-Day Exploits Diagram of Chinese UTA0565 zero-day exploits showing how UTA0565 zero-day exploits drop CLEANGULP malware
  • Cybercriminals

Chinese Hackers Deploy UTA0565 Zero-Day Exploits

September 24, 2026 0
Italian Phishing Campaign Delivering an iOS Exploit Chain Italian phishing campaign delivering an iOS exploit chain and Coruna Pro V2 exploit kit details
  • Cybercriminals

Italian Phishing Campaign Delivering an iOS Exploit Chain

September 24, 2026 0
SideCopy APT Campaign Targets Academic Institutions CoreRAT malware decoy PDF used in Core Werewolf phishing attack on Russian defense targets
  • Cybercriminals

SideCopy APT Campaign Targets Academic Institutions

September 23, 2026 0

Malware Alert

Malicious Terraform Providers Spread Graphalgo Go Malware Diagram to detect malicious Terraform providers and stop malicious Terraform providers in CI/CD
  • Malware

Malicious Terraform Providers Spread Graphalgo Go Malware

September 25, 2026 0
CLOSEDQUORUM AI Malware Uses LLMs for Autonomous C2 Diagram of the autonomous CLOSEDQUORUM AI malware architecture showing how CLOSEDQUORUM AI malware queries language models
  • Malware

CLOSEDQUORUM AI Malware Uses LLMs for Autonomous C2

September 25, 2026 0
WordPress Must-Use Plugin Malware Uses EtherHiding Analysis of stealthy WordPress must-use plugin malware and WordPress must-use plugin malware architecture
  • Malware

WordPress Must-Use Plugin Malware Uses EtherHiding

September 25, 2026 0
New TASK#STOMP PowerShell Backdoor Targets Windows Diagram showing how prompt injection attacks and prompt injection techniques threaten AI security.
  • Malware

New TASK#STOMP PowerShell Backdoor Targets Windows

September 24, 2026 0

Data Leak

Meta Muse Secretly Used Humans for AI Phone Calls Meta Muse AI agent phone calling feature secretly handed off to human contractors
  • Data Leak

Meta Muse Secretly Used Humans for AI Phone Calls

September 24, 2026 0
ShinyHunters Syndicate Alleges Major FBI Network Compromise Bling Libra
  • Data Leak

ShinyHunters Syndicate Alleges Major FBI Network Compromise

September 24, 2026 0
Leaked GitHub App Private Keys Expose Critical Infrastructure Diagram showing leaked GitHub App private keys and how GitHub App private keys compromise repositories
  • Data Leak

Leaked GitHub App Private Keys Expose Critical Infrastructure

September 23, 2026 0
OpenAI’s Project Lily Employs Humans to Read ChatGPT Chats Project Lily workspace illustration showing contractors reviewing ChatGPT user dialogues
  • Data Leak

OpenAI’s Project Lily Employs Humans to Read ChatGPT Chats

September 16, 2026 0
Auctions as a Conversion Tool: How Bidding Increases Engagement in eCommerce tech
  • Technique

Auctions as a Conversion Tool: How Bidding Increases Engagement in eCommerce

Do Son September 25, 2026 0
Read More Read more about Auctions as a Conversion Tool: How Bidding Increases Engagement in eCommerce
Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems image_26_1790250272WOIo9JWZto
  • Press Release

Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems

cybernewswire September 25, 2026 0
Read More Read more about Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems
Exploited SharePoint RCE Vulnerability Details Disclosed Diagram illustrating the exploited SharePoint RCE vulnerability attack flow
  • Vulnerability Report

Exploited SharePoint RCE Vulnerability Details Disclosed

Do Son September 25, 2026 0
Read More Read more about Exploited SharePoint RCE Vulnerability Details Disclosed
Critical ServiceNow Vulnerabilities Fixed in AI Platform Diagram showing critical ServiceNow vulnerabilities and attack paths in the AI Platform
  • Vulnerability Report

Critical ServiceNow Vulnerabilities Fixed in AI Platform

Do Son September 25, 2026 0
Read More Read more about Critical ServiceNow Vulnerabilities Fixed in AI Platform
Critical Eufy Robot Vacuum Vulnerabilities Allow System Takeover Diagram illustrating Eufy robot vacuum vulnerabilities and OS command injection paths
  • Vulnerability Report

Critical Eufy Robot Vacuum Vulnerabilities Allow System Takeover

Do Son September 25, 2026 0
Read More Read more about Critical Eufy Robot Vacuum Vulnerabilities Allow System Takeover
Exploited F5 BIG-IP RCE Vulnerability Details and PoC Disclosed Diagram showing the exploited F5 BIG-IP RCE vulnerability attack chain
  • Vulnerability Report

Exploited F5 BIG-IP RCE Vulnerability Details and PoC Disclosed

Do Son September 25, 2026 0
Read More Read more about Exploited F5 BIG-IP RCE Vulnerability Details and PoC Disclosed
CVE-2026-96512: Sudo Security Vulnerability Allows Privilege Escalation Diagram explaining the Sudo security vulnerability and CVE-2026-96512 mitigation
  • Vulnerability Report

CVE-2026-96512: Sudo Security Vulnerability Allows Privilege Escalation

Do Son September 25, 2026 0
Read More Read more about CVE-2026-96512: Sudo Security Vulnerability Allows Privilege Escalation
CISA Adds WSO2 and Adobe Flaws to KEV Catalog Diagram illustrating exploited CISA KEV vulnerabilities affecting WSO2 and Adobe
  • Vulnerability Report

CISA Adds WSO2 and Adobe Flaws to KEV Catalog

Do Son September 25, 2026 0
Read More Read more about CISA Adds WSO2 and Adobe Flaws to KEV Catalog
RustyTux: Public PoC Exploit Targets Linux Kernel Privilege Escalation Flaw RustyTux Linux kernel privilege escalation exploit chaining an ESP-in-TCP use-after-free race to a root shell on CentOS and Ubuntu
  • Vulnerability Report

RustyTux: Public PoC Exploit Targets Linux Kernel Privilege Escalation Flaw

Do Son September 25, 2026 0
Read More Read more about RustyTux: Public PoC Exploit Targets Linux Kernel Privilege Escalation Flaw
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta SCOUTz_-_Header_Banner_1200x720_1790189561nFevdYxfGB
  • Press Release

SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta

cybernewswire September 24, 2026 0
Read More Read more about SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Windows 11 Update Breaks Always On VPN Connections Windows 11 Always On VPN connection stuck after the September 2026 update with a port in use error
  • Windows

Windows 11 Update Breaks Always On VPN Connections

Do Son September 24, 2026 0
Read More Read more about Windows 11 Update Breaks Always On VPN Connections
Ansible Automation Platform Vulnerabilities Allow Exploits Diagram of Ansible Automation Platform vulnerabilities and critical Ansible Automation Platform vulnerabilities
  • Vulnerability Report

Ansible Automation Platform Vulnerabilities Allow Exploits

Do Son September 24, 2026 0
Read More Read more about Ansible Automation Platform Vulnerabilities Allow Exploits
CVE-2026-48842: Roundcube Webmail Vulnerability Exploited in the Wild Diagram of the exploited Roundcube Webmail vulnerability and SQL injection attack chain
  • Vulnerability Report

CVE-2026-48842: Roundcube Webmail Vulnerability Exploited in the Wild

Do Son September 24, 2026 0
Read More Read more about CVE-2026-48842: Roundcube Webmail Vulnerability Exploited in the Wild
Critical Rancher XSS Vulnerability Exposes Admin Credentials Diagram explaining the Rancher XSS vulnerability and CVE-2026-88804 attack chain
  • Vulnerability Report

Critical Rancher XSS Vulnerability Exposes Admin Credentials

Do Son September 24, 2026 0
Read More Read more about Critical Rancher XSS Vulnerability Exposes Admin Credentials
macOS DesktopServicesHelper LPE Vulnerability Details and PoC Disclosed Diagram explaining the critical macOS DesktopServicesHelper vulnerability and root escalation chain
  • Vulnerability Report

macOS DesktopServicesHelper LPE Vulnerability Details and PoC Disclosed

Do Son September 24, 2026 0
Read More Read more about macOS DesktopServicesHelper LPE Vulnerability Details and PoC Disclosed
Critical cPanel Security Vulnerabilities Allow Root Escalation Diagram illustrating cPanel security vulnerabilities and critical cPanel security vulnerabilities affecting WHM
  • Vulnerability Report

Critical cPanel Security Vulnerabilities Allow Root Escalation

Do Son September 24, 2026 0
Read More Read more about Critical cPanel Security Vulnerabilities Allow Root Escalation
Fluent Bit Vulnerability Details and PoC Disclosed Diagram of the critical Fluent Bit vulnerability CVE-2026-61674 buffer overflow
  • Vulnerability Report

Fluent Bit Vulnerability Details and PoC Disclosed

Do Son September 24, 2026 0
Read More Read more about Fluent Bit Vulnerability Details and PoC Disclosed
Critical GitHub Enterprise Server Vulnerabilities Addressed Diagram showing the attack chain of critical GitHub Enterprise Server vulnerabilities
  • Vulnerability Report

Critical GitHub Enterprise Server Vulnerabilities Addressed

Do Son September 24, 2026 0
Read More Read more about Critical GitHub Enterprise Server Vulnerabilities Addressed
GitLab Critical Patch Release Fixes Severe RCE Flaws Diagram illustrating the GitLab critical patch release mitigating the GitLab RCE vulnerability
  • Vulnerability Report

GitLab Critical Patch Release Fixes Severe RCE Flaws

Do Son September 23, 2026 0
Read More Read more about GitLab Critical Patch Release Fixes Severe RCE Flaws
Apache Tomcat Vulnerabilities Fixed in 11.0.26 Update Diagram illustrating Apache Tomcat vulnerabilities including CVE-2026-87022
  • Vulnerability Report

Apache Tomcat Vulnerabilities Fixed in 11.0.26 Update

Do Son September 23, 2026 0
Read More Read more about Apache Tomcat Vulnerabilities Fixed in 11.0.26 Update
Apache Doris Vulnerabilities Patched in New Updates Diagram of patched Apache Doris vulnerabilities and attack paths
  • Vulnerability Report

Apache Doris Vulnerabilities Patched in New Updates

Do Son September 23, 2026 0
Read More Read more about Apache Doris Vulnerabilities Patched in New Updates
Exploited WordPress RCE Vulnerability Details and PoC Disclosed Diagram showing the exploited WordPress RCE vulnerability and attack chain
  • Vulnerability Report

Exploited WordPress RCE Vulnerability Details and PoC Disclosed

Do Son September 23, 2026 0
Read More Read more about Exploited WordPress RCE Vulnerability Details and PoC Disclosed
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 7 days →

🚨 Active Exploits in the Wild

  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-85102CVSS 9.8
    Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93616CVSS 9.8
    A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-76708CVSS 9.8
    A vulnerability exists in the Analytics and Location Engine (ALE) where the application and underlying operating system use...
    📅 Updated: Sep 25, 2026
  • CVE-2026-97230CVSS 9.8
    IO::Socket::SSL::SelfCertificate versions 1.00 for Perl contains malware which executes Python code from an obfuscated URL. The generate_certificate runs...
    📅 Updated: Sep 25, 2026
  • CVE-2026-93641CVSS 9.3
    An unauthenticated sender can forge a share notification that triggers stored XSS when a signed-in Zimbra Classic recipient...
    📅 Updated: Sep 25, 2026
  • CVE-2026-93642CVSS 9.3
    An unauthenticated sender can forge a share notification that triggers stored XSS when a signed-in Zimbra Modern recipient...
    📅 Updated: Sep 25, 2026
  • CVE-2026-93643CVSS 9.8
    When OnlyOffice/Document Editing is available, an unauthenticated remote attacker with access to an existing supported public Briefcase document...
    📅 Updated: Sep 25, 2026
  • CVE-2026-39353CVSS 9.1
    InvoicePlane is a self-hosted open source application for managing invoices, clients, and payments. Prior to 1.7.2-rc-1, InvoicePlane builds...
    📅 Updated: Sep 25, 2026
  • CVE-2026-20147CVSS 9.9
    A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands...
    📅 Updated: Sep 25, 2026
  • CVE-2026-20181CVSS 9.1
    A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on...
    📅 Updated: Sep 25, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.