A recently disclosed security vulnerability in Next.js, a popular React framework used by millions of developers worldwide,...
Vulnerability
Forcepoint researchers have uncovered an alarming rise in activity involving a new infostealer malware named VIPKeyLogger. Distributed...
Datadog Security Labs has uncovered a potential privilege escalation method in Azure Key Vault that could grant...
Hitachi Vantara has disclosed a critical authentication bypass vulnerability (CVE-2024-10205) affecting its Infrastructure Analytics Advisor and Ops...
A critical command injection vulnerability (CVE-2024-12356) has been discovered in BeyondTrust’s Privileged Remote Access (PRA) and Remote...
Unit 42 researchers have uncovered multiple vulnerabilities in Azure Data Factory’s managed Apache Airflow integration, potentially enabling...
Google has released a crucial update for its Chrome browser, addressing five security vulnerabilities, several of which...
The Apache Software Foundation has released important security updates to address two vulnerabilities in Apache Tomcat, a...
Security researcher Thanatos has uncovered a critical vulnerability (CVE-2024-53376) in CyberPanel, a popular web hosting control panel,...
A newly discovered vulnerability in MinIO, the popular open-source object storage platform, could allow any user to...
The FBI, in collaboration with CISA, has issued a new alert regarding the HiatusRAT malware campaign. The...
A new report by Wiz Threat Research highlights critical misconfigurations in Spring Boot Actuator, exposing sensitive data...
The Japan Computer Emergency Response Team Coordination Center (JPCERT/CC) has issued a warning about multiple critical vulnerabilities...
Forescout Research – Vedere Labs, in collaboration with PRODAFT, has unveiled a massive ransomware campaign exploiting vulnerabilities...
Microsoft has disclosed a critical Remote Code Execution (RCE) vulnerability in its Lightweight Directory Access Protocol (LDAP)...
Threat actors have begun exploiting a critical vulnerability in the Apache Struts framework, CVE-2024-53677, just days after...
A serious security flaw has been discovered in Laravel Pulse, a popular real-time application performance monitoring and...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about two critical vulnerabilities...
A critical XML External Entity (XXE) Injection vulnerability, identified as CVE-2024-55875, has been discovered in the http4k...