The Apache Software Foundation has issued a new security advisory addressing a critical vulnerability in Apache ActiveMQ’s...
Vulnerability Report
Siemens has released a critical security update for its SIMATIC ET 200SP communication processors, addressing an authentication...
Rockwell Automation has published a new security advisory warning customers about three vulnerabilities affecting its 1783-NATR Network...
Veeam Software has released patches addressing three newly disclosed vulnerabilities, including two critical Remote Code Execution (RCE)...
Google has released a new Stable Channel Update for Desktop, rolling out gradually to Windows, macOS, and...
Microsoft’s October 2025 Patch Tuesday has arrived with one of the largest security updates of the year—193...
Rockwell Automation has released a series of security advisories addressing vulnerabilities in several of its FactoryTalk and...
SAP has released its October 2025 Security Patch Day, addressing 13 new security notes and 3 updates...
Ivanti has disclosed 13 vulnerabilities affecting its Endpoint Manager (EPM) platform, including two high-severity flaws that could...
After discovering that hackers were exploiting a zero-day vulnerability in the Chakra JavaScript engine used by Internet...
The CERT Coordination Center (CERT/CC) has issued a warning regarding a critical supply chain vulnerability — CVE-2025-11577...
Elastic has released urgent security updates for Elastic Cloud Enterprise (ECE) to patch a critical vulnerability (CVE-2025-37729)...
A research team from ETH Zurich has disclosed a critical vulnerability — CVE-2025-0033, dubbed RMPocalypse — that...
Oracle has issued an emergency Security Alert Advisory for a newly discovered vulnerability affecting Oracle E-Business Suite,...
A critical security flaw has been discovered in Cherry Studio, a cross-platform desktop client that supports multiple...
A critical authentication bypass vulnerability has been discovered in Better Auth, a popular framework-agnostic authentication and authorization...
A critical-severity vulnerability has been disclosed in Happy DOM, a popular JavaScript package used to emulate web...
The Zero Day Initiative (ZDI) has published details of two critical vulnerabilities in the popular open-source compression...
Google Threat Intelligence Group (GTIG) and Mandiant have jointly disclosed an extensive data theft and extortion campaign...
Huntress has sounded the alarm over active exploitation of a newly discovered Local File Inclusion (LFI) vulnerability...
NVIDIA has released an important software security update for its GPU Display Driver, addressing multiple vulnerabilities that...
MediaTek has released its October 2025 Product Security Bulletin, disclosing a set of high- and medium-severity vulnerabilities...