A coordinated disclosure by CERT@VDE and WAGO has unveiled a devastating vulnerability—CVE-2025-41672—impacting WAGO’s industrial automation platform Device...
Vulnerability Report
Redis, the popular in-memory data store used for caching, message brokering, and real-time analytics, has issued a...
In a recent security advisory, researchers from Synacktiv revealed two chained vulnerabilities in ScriptCase’s Production Environment module—known...
IBM X-Force has peeled back the layers on Microsoft Azure Arc, uncovering how the hybrid-cloud management tool—meant...
Security researchers from SecureLayer7 published the technical details and a proof-of-concept exploit for a security vulnerability, CVE-2025-6019,...
A newly discovered critical vulnerability in DjVuLibre, the open-source decoder for DjVu document files, has opened the...
FortiGuard Labs has uncovered a stealthy and highly adaptive botnet dubbed RondoDox, which is actively exploiting two...
A cache poisoning vulnerability (CVE-2025-49826) with a CVSS score of 7.5 has been disclosed in Next.js, the...
Microsoft has released Edge Stable Channel Version 138.0.3351.65, an update that addresses critical browser vulnerabilities impacting Chromium-based...
The PHP project has released security patches addressing two vulnerabilities that expose PHP-based applications to SQL injection...
In a recent deep-dive analysis, Palo Alto Networks’ Unit 42 revealed disturbing insights into a surge of...
A newly disclosed vulnerability in HIKVISION’s widely deployed security management platform, applyCT (previously known as HikCentral), has...
Cymulate Research Labs has revealed Anthropic’s Filesystem MCP Server vulnerabilities. Two newly disclosed flaws—CVE-2025-53110 and CVE-2025-53109—exposes systems...
Apache APISIX, a high-performance and AI-ready API gateway trusted for managing traffic across microservices and LLM-based applications,...
A critical security flaw has been discovered in Lucee, the high-performance, open-source CFML (ColdFusion Markup Language) application...
Microsoft recently published a blog post highlighting its youngest security researcher to date—an individual who began collaborating...
Before 2010, Industrial Control Systems (ICS) mostly operated within isolated Operational Technology (OT) networks and received little...
Grafana Labs has issued an urgent security advisory addressing four critical vulnerabilities affecting two of its key...
Cisco has disclosed a critical vulnerability in its Unified Communications Manager (Unified CM) and Session Management Edition...
A newly disclosed vulnerability in dpkg-deb, the core utility responsible for handling Debian package archives, has raised...
A critical remote code execution (RCE) vulnerability has been discovered in Wing FTP Server, a popular cross-platform...
A newly disclosed high-severity vulnerability in the popular Forminator plugin threatens the security of hundreds of thousands...