Two security vulnerabilities (CVE-2024-24401 and CVE-2024-24402) have been identified in Nagios XI, a widely used enterprise-grade monitoring...
Vulnerability
A critical SQL injection vulnerability (CVE-2024-1698) was discovered in the widely used (over 30,000 installations) NotificationX WordPress...
A pair of critical vulnerabilities, recently patched in the Linux kernel, have raised alarms for anyone managing...
In the cybersecurity threats, DLL hijacking remains a classic maneuver in the arsenal of cyber adversaries. This...
A critical unauthenticated SQL Injection vulnerability was found in Ultimate Member, a popular WordPress plugin boasting over...
Sophos X-Ops has spotlighted a concerning trend in the exploitation of vulnerabilities within ConnectWise ScreenConnect installations, a...
A high-severity vulnerability, designated CVE-2024-26582, has been discovered within the Transport Layer Security (TLS) subsystem of the...
A patched vulnerability within Apple’s Shortcuts automation framework presents a substantial risk to macOS and iOS devices....
The notorious 8220 Gang has resurfaced, targeting cloud infrastructure in a campaign demonstrating significant advancements in their...
Security researchers have recently disclosed three vulnerabilities affecting Apache Answer versions up to 1.2.1. These vulnerabilities could...
Security researchers at Aqua Nautilus have uncovered a sophisticated campaign exploiting misconfigurations and vulnerabilities in Apache Hadoop...
Developers using the Fiber Go web framework should immediately address a critical vulnerability in the CORS middleware....
A critical security vulnerability has been exposed in Progress Kemp LoadMaster, leaving your network infrastructure at grave...
OpenVPN has released version 2.6.9 for Windows, Mac, and Linux, addressing a severe privilege escalation vulnerability (CVE-2023-7235)....
In September 2023, the infamous Russian-linked cyber-espionage group APT29 flexed its muscle again, this time targeting embassies...
In alarming news from February 2024, ConnectWise, a prevalent provider of remote desktop software, disclosed severe security...
The Spring Framework, a cornerstone of countless enterprise Java applications, recently revealed a significant vulnerability (CVE-2024-22243). This...
Atlassian has released a security update addressing CVE-2024-21678 (CVSS 8.5), a high-severity stored cross-site scripting (XSS) vulnerability...
A serious vulnerability jeopardizes the security of WordPress websites using the popular RSS Aggregator by the Feedzy...
A recent discovery by Sonar’s Vulnerability Research Team has exposed a major security issue within the popular...