The Qt Group has released a critical security advisory addressing two severe vulnerabilities in the Qt SVG...
Vulnerability Report
Elastic has issued five security advisories addressing five vulnerabilities affecting its Kibana and Elasticsearch components, including three...
CrowdStrike has sounded the alarm on an ongoing mass exploitation campaign targeting Oracle E-Business Suite (EBS) applications...
The developers of SillyTavern, a popular locally hosted interface for large language models (LLMs) and AI tools,...
Microsoft Threat Intelligence has issued a warning following the discovery of active exploitation of a newly disclosed...
IBM has released fixes for three security vulnerabilities affecting its IBM Security Verify Access and IBM Verify...
Security researchers at Rapid7 have published a detailed technical analysis uncovering how a pair of zero-day vulnerabilities...
Cybersecurity researchers at Synacktiv have uncovered two critical vulnerabilities in Snipe-IT, an open-source IT asset management system,...
A serious vulnerability in the Unity Runtime, tracked as CVE-2025-59489 (CVSS 8.4), has been discovered by security...
A newly disclosed vulnerability in the Zabbix Agent and Agent 2 for Windows could allow local attackers...
A newly disclosed vulnerability in DrayTekβs Vigor routers, tracked as CVE-2025-10547, could allow remote attackers to execute...
Oracle has issued an emergency Security Alert addressing a critical vulnerability (CVE-2025-61882) in Oracle E-Business Suite, warning...
QNAP has issued a new security advisory addressing multiple vulnerabilities in two of its widely used utilitiesβNetBak...
Redis, the popular open-source in-memory data store widely used for real-time analytics, caching, and message brokering, has...
A newly disclosed vulnerability in the Spirit Framework plugin for WordPress has put thousands of websites at...
A new vulnerability has been disclosed in the widely used Yoast SEO Premium plugin for WordPress, potentially...
Recently, GreyNoise observed a sudden and highly coordinated wave of exploitation attempts targeting CVE-2021-43798, a Grafana path...
Security researcher StreyPaws has published an in-depth analysis of CVE-2025-38352, a Time-of-Check to Time-of-Use (TOCTOU) race condition...
The Termix project has disclosed a critical authentication bypass vulnerability in its official Docker image, exposing sensitive...
The Chrome security team has announced the promotion of Chrome 141 to the Stable Channel for Windows,...