Skip to content
September 13, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2026-18885 (CVSS 10): ServiceNow Code Injection and SQL Injection Flaws Patched ServiceNow vulnerability code injection and SQL injection flaws CVE-2026-18885 rated CVSS 10
  • Vulnerability Report

CVE-2026-18885 (CVSS 10): ServiceNow Code Injection and SQL Injection Flaws Patched

Do Son August 28, 2026 0
Read More Read more about CVE-2026-18885 (CVSS 10): ServiceNow Code Injection and SQL Injection Flaws Patched
PaperCut NG/MF Vulnerability Exploited in the Wild, Emergency Patch Released PaperCut NG/MF vulnerability exploited in the wild shown in the urgent 27 Aug 2026 security advisory
  • Vulnerability Report

PaperCut NG/MF Vulnerability Exploited in the Wild, Emergency Patch Released

Do Son August 28, 2026 0
Read More Read more about PaperCut NG/MF Vulnerability Exploited in the Wild, Emergency Patch Released
CISA Warns of Exploited Flaws in ownCloud, Linux Kernel, and JFrog Artifactory CISA KEV Catalog update showing CVE-2023-49105, CVE-2026-53362, and CVE-2026-66384
  • Vulnerability Report

CISA Warns of Exploited Flaws in ownCloud, Linux Kernel, and JFrog Artifactory

Do Son August 28, 2026 0
Read More Read more about CISA Warns of Exploited Flaws in ownCloud, Linux Kernel, and JFrog Artifactory
CISA Issues Advisory on Xiiaozet LK100W Vulnerabilities Xiiaozet LK100W vulnerabilities CVE-2026-78239 flaw architecture
  • Vulnerability Report

CISA Issues Advisory on Xiiaozet LK100W Vulnerabilities

Do Son August 28, 2026 0
Read More Read more about CISA Issues Advisory on Xiiaozet LK100W Vulnerabilities
CVE-2026-71362 Exploited: Adobe Commerce Account Takeover, Details and PoC are Public Adobe Commerce vulnerability CVE-2026-71362 unauthenticated customer account takeover exploited in the wild Magento
  • Vulnerability Report

CVE-2026-71362 Exploited: Adobe Commerce Account Takeover, Details and PoC are Public

Do Son August 28, 2026 0
Read More Read more about CVE-2026-71362 Exploited: Adobe Commerce Account Takeover, Details and PoC are Public
CISA Vulnerability Review: Old Flaws Fuel Most Attacks CISA Vulnerability Review report showing known exploited vulnerabilities and top CWE trends
  • Vulnerability Report

CISA Vulnerability Review: Old Flaws Fuel Most Attacks

Do Son August 28, 2026 0
Read More Read more about CISA Vulnerability Review: Old Flaws Fuel Most Attacks
FBI Seizes QScan and QTRouter Platforms Run by China State Hackers JADEPUFFER agentic ransomware attack chain diagram from Langflow RCE to database extortion
  • Cybercriminals

FBI Seizes QScan and QTRouter Platforms Run by China State Hackers

Do Son August 27, 2026 0
Read More Read more about FBI Seizes QScan and QTRouter Platforms Run by China State Hackers
Windows 11 Phone Link Gains Remote Power Control Windows 11 Phone Link remote power control interface on an Android smartphone
  • Windows

Windows 11 Phone Link Gains Remote Power Control

Do Son August 27, 2026 0
Read More Read more about Windows 11 Phone Link Gains Remote Power Control
CVE-2026-19042: TeamViewer Command Injection Enables Remote Code Execution TeamViewer vulnerabilities CVE-2026-19042 command injection and CVE-2026-16444 path traversal enabling remote code execution on desktop clients
  • Vulnerability Report

CVE-2026-19042: TeamViewer Command Injection Enables Remote Code Execution

Do Son August 27, 2026 0
Read More Read more about CVE-2026-19042: TeamViewer Command Injection Enables Remote Code Execution
Meta Settles Child Privacy Lawsuit Rapidly Meta logo displayed alongside child privacy protection graphics
  • Data Leak

Meta Settles Child Privacy Lawsuit Rapidly

Do Son August 27, 2026 0
Read More Read more about Meta Settles Child Privacy Lawsuit Rapidly
Mercor Data Breach Targets AI Supply Chain Cybercriminals advertising the massive Mercor data breach on an underground forum
  • Data Leak

Mercor Data Breach Targets AI Supply Chain

Do Son August 27, 2026 0
Read More Read more about Mercor Data Breach Targets AI Supply Chain
uBlock Origin v1.74.0 Is the Final Version for Chrome Before Google’s Delisting uBlock Origin Chrome final version Manifest V2 removal Chrome Web Store
  • Technology

uBlock Origin v1.74.0 Is the Final Version for Chrome Before Google’s Delisting

Do Son August 27, 2026 0
Read More Read more about uBlock Origin v1.74.0 Is the Final Version for Chrome Before Google’s Delisting
Microsoft Unveils the AI at Work Roadmap Microsoft 365 Roadmap website interface transitioning to the new AI at Work Roadmap branding
  • Technology

Microsoft Unveils the AI at Work Roadmap

Do Son August 27, 2026 0
Read More Read more about Microsoft Unveils the AI at Work Roadmap
WeedHack Malware Still Hits Minecraft Gamers via Fake Sites WeedHack malware fake Minecraft client website using SEO poisoning to spread malicious downloads to gamers
  • Malware

WeedHack Malware Still Hits Minecraft Gamers via Fake Sites

Do Son August 27, 2026 0
Read More Read more about WeedHack Malware Still Hits Minecraft Gamers via Fake Sites
SilkParasite APT Hits Central Asian Governments With 7 RATs SilkParasite APT diagram showing China-nexus cyberespionage attack chain with DLL sideloading and RAT deployment across Central Asia
  • Cybercriminals

SilkParasite APT Hits Central Asian Governments With 7 RATs

Do Son August 27, 2026 0
Read More Read more about SilkParasite APT Hits Central Asian Governments With 7 RATs
Google Launches Gemini 3.5 Transcribe With Sub-Second Streaming Latency Gemini 3.5 Transcribe Google speech to text model streaming latency
  • Technology

Google Launches Gemini 3.5 Transcribe With Sub-Second Streaming Latency

Do Son August 27, 2026 0
Read More Read more about Google Launches Gemini 3.5 Transcribe With Sub-Second Streaming Latency
Cruciferra Malware Loader Uses ClickFix Lures to Kill EDR ClickFix lure
  • Malware

Cruciferra Malware Loader Uses ClickFix Lures to Kill EDR

Do Son August 27, 2026 0
Read More Read more about Cruciferra Malware Loader Uses ClickFix Lures to Kill EDR
AccuKnox Launches AgentZ to Help Enterprises Build, Run, and Govern AI Agents at Scale agentz-768x432_1787631829YqVBJAuyIB
  • Press Release

AccuKnox Launches AgentZ to Help Enterprises Build, Run, and Govern AI Agents at Scale

cybernewswire August 27, 2026 0
Read More Read more about AccuKnox Launches AgentZ to Help Enterprises Build, Run, and Govern AI Agents at Scale
CVE-2026-72137 (CVSS 9.8): Linux Kernel Flaw Enables Root Privilege Escalation, PoC Public Linux kernel CVE-2026-72137 double-free vulnerability enabling root privilege escalation with public PoC exploit code
  • Vulnerability Report

CVE-2026-72137 (CVSS 9.8): Linux Kernel Flaw Enables Root Privilege Escalation, PoC Public

Do Son August 27, 2026 0
Read More Read more about CVE-2026-72137 (CVSS 9.8): Linux Kernel Flaw Enables Root Privilege Escalation, PoC Public
NVIDIA Hugging Face Acquisition Rumors Surface NVIDIA Hugging Face acquisition negotiations impacting the open-source AI community
  • Technology

NVIDIA Hugging Face Acquisition Rumors Surface

Do Son August 27, 2026 0
Read More Read more about NVIDIA Hugging Face Acquisition Rumors Surface
CISA Adds Six Exploited Vulnerabilities Including Citrix NetScaler Flaw CISA KEV Catalog warning showing six exploited vulnerabilities and Citrix NetScaler flaw CVE-2026-8452
  • Vulnerability Report

CISA Adds Six Exploited Vulnerabilities Including Citrix NetScaler Flaw

Do Son August 27, 2026 0
Read More Read more about CISA Adds Six Exploited Vulnerabilities Including Citrix NetScaler Flaw
Dell Cloud Disaster Recovery CVE-2026-70419 (CVSS 9.1) Allows Command Execution Dell Cloud Disaster Recovery vulnerability enabling command execution, CVE-2026-70419 CVSS 9.1 critical OS command injection flaw
  • Vulnerability Report

Dell Cloud Disaster Recovery CVE-2026-70419 (CVSS 9.1) Allows Command Execution

Do Son August 27, 2026 0
Read More Read more about Dell Cloud Disaster Recovery CVE-2026-70419 (CVSS 9.1) Allows Command Execution
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-90558CVSS 9.8
    sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting...
  • CVE-2026-78159CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-85681CVSS 9.8
    The WP Component WordPress plugin through 2.2.4 does not have any capability...
  • CVE-2026-84171CVSS 9.8
    The WP images upload on piclect WordPress plugin through 1.0 does not...
  • CVE-2026-82845CVSS 9.9
    The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values...
  • CVE-2026-81402CVSS 9.8
    The DS Ad Rotator WordPress plugin through 0.8 does not perform any...
  • CVE-2026-77006CVSS 9.6
    The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied...
  • CVE-2026-77005CVSS 9.6
    The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a...
  • CVE-2026-75800CVSS 9.8
    The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.