Cymulate Research Labs has uncovered a critical zero-click NTLM credential leakage vulnerability—CVE-2025-50154—that bypasses Microsoft’s April 2025 patch...
Vulnerability
Security researcher Zhongquan Li has uncovered a critical flaw in macOS InstallAssistant, tracked as CVE-2025-24103 with a...
Ubiquiti has issued a comprehensive security advisory addressing multiple vulnerabilities in its UniFi Connect product line, affecting...
Security researcher Juan Jose Lopez Jaimez published the technical details and proof-of-concept exploit code for a vulnerability...
Dell Technologies has released an urgent security advisory addressing multiple vulnerabilities affecting its PowerProtect Data Domain Operating...
Enable Security has disclosed critical vulnerabilities in Rtpengine, a popular media relay component used in Voice over...
SUSE has issued a high-severity security advisory for CVE-2025-46811, a critical vulnerability in SUSE Manager that allows...
Elastic has issued patches for two local privilege escalation (LPE) vulnerabilities affecting its popular observability tools—APM Server...
A severe server-side request forgery (SSRF) vulnerability has been disclosed in BentoML, a widely used Python framework...
ASUS has issued security updates to patch two vulnerabilities in its MyASUS software, a pre-installed utility application...
Developers relying on CodeIgniter, one of the most widely adopted PHP full-stack web frameworks with over 2.9...
A critical vulnerability in several Bitnami Helm charts has exposed sensitive Kubernetes secrets to unauthenticated web access,...
Mitel has issued a security advisory addressing a critical-severity vulnerability in the Provisioning Manager component of its...
A newly released Metasploit module highlights the critical threat posed by an actively exploited remote code execution...
SonicWall has issued a critical security advisory for a newly identified vulnerability—CVE-2025-40599—affecting its SMA 100 series appliances,...
The Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with Schneider Electric, has issued a security advisory...
The Kubernetes project has issued an important advisory addressing a critical vulnerability—CVE-2025-7342 (CVSS 8.1)—in the Kubernetes Image...
In April 2025, Microsoft issued a critical security patch addressing a serious vulnerability in the Windows Common...
Ubiquiti has issued a security advisory for a critical vulnerability affecting multiple models in its UniFi Access...
Security researcher Vagebondcur has uncovered four vulnerabilities in the Nexxt Solutions NCM-X1800 mesh router, including unauthenticated telnet...
A critical vulnerability—CVE-2025-34068—has been discovered in Samsung’s WLAN AP WEA453e access points, allowing unauthenticated remote command execution...
A critical remote code execution (RCE) vulnerability has been discovered in the Symantec Endpoint Management suite, also...