Security researchers have disclosed two critical vulnerabilities in DataEase, an open-source business intelligence (BI) tool designed for...
Vulnerability Report
The Cybersecurity and Infrastructure Security Agency (CISA) has added three new vulnerabilities to its Known Exploited Vulnerabilities...
TP-Link has issued a security advisory addressing a high-severity vulnerability (CVE-2025-8627) affecting its KP303 Smart Plug, warning...
Security researchers at Rapid7 have uncovered four serious vulnerabilities in Securden Unified Privileged Access Manager (PAM), a...
Earlier, encrypted email provider ProtonMail introduced a standalone two-factor authentication (2FA) tool. One might wonder why, given...
Salesforce Security has announced the resolution of multiple vulnerabilities in Tableau Server, identified during a proactive security...
IBM has released a security bulletin addressing a severe vulnerability in its Jazz Team Server, a Java-based...
Plex Media Server (PMS) users are being urged to update their systems immediately after the discovery of...
The Directus project has disclosed a critical vulnerability tracked as CVE-2025-55746 (CVSS 9.3) that could allow unauthenticated...
A new report from Palo Alto Networks’ Unit 42 has shed light on an unusual and stealthy...
A critical security vulnerability has been disclosed in sha.js, a widely used JavaScript library that implements the...
Cisco Talos has released a new analysis exposing “Static Tundra,” a Russian state-sponsored threat actor that has...
Kudelski Security has published a detailed write-up of a critical vulnerability discovered in CodeRabbit, the most installed...
The widely used Apache Tika toolkit, a powerful library for detecting and extracting metadata and text from...
BI.ZONE Threat Intelligence uncovered a series of targeted cyber-espionage campaigns conducted by the Paper Werewolf (GOFFEE) cluster,...
Apple has released urgent security updates to patch a zero-day vulnerability actively exploited in the wild, warning...
A newly disclosed security vulnerability in Plesk Obsidian, a widely used web hosting control panel, has been...
The CERT Coordination Center (CERT/CC) has issued a vulnerability note warning of serious security flaws in Workhorse...
Google has released a Stable Channel Update for its Chrome browser, addressing a critical security issue in...
In April, Microsoft has patched a high-severity, zero-day vulnerability (CVE-2025-29824) in the Windows Common Log File System...
A newly disclosed vulnerability in the Capsule Kubernetes multi-tenancy framework exposes organizations to privilege escalation and cross-tenant...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Trend Micro Apex One vulnerability—CVE-2025-54948—to...