Skip to content
July 28, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping Apache NimBLE Vulnerabilities Bluetooth Spoofing
  • Vulnerability Report

Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping

Do Son January 9, 2026 0
Read More Read more about Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping
Critical Centreon Alert: 9.8 Severity Flaw Exposes IT Monitoring CVE-2024-55573 & CVE-2024-53923 Centreon AWIE Vulnerabilities CVE-2025-15029
  • Vulnerability

Critical Centreon Alert: 9.8 Severity Flaw Exposes IT Monitoring

Do Son January 9, 2026 0
Read More Read more about Critical Centreon Alert: 9.8 Severity Flaw Exposes IT Monitoring
Guloader Malware Rides Wave of Fake Performance Reports Layoff Phishing Scam Remcos RAT Malware Aruba Phishing, Phishing-as-a-Service PyPI, phishing CVE-2024-25608 PyPI Phishing, Credential Theft
  • Malware

Guloader Malware Rides Wave of Fake Performance Reports

Do Son January 9, 2026 0
Read More Read more about Guloader Malware Rides Wave of Fake Performance Reports
The 9.6 Crack in Java’s Foundation: Critical Undertow Flaw CVE-2025-12543 Undertow Vulnerability CVE-2025-12543 CVE-2025-0107: PoC Exploit Code Undersea Cable Security, China Tech Ban
  • Vulnerability Report

The 9.6 Crack in Java’s Foundation: Critical Undertow Flaw CVE-2025-12543

Do Son January 9, 2026 0
Read More Read more about The 9.6 Crack in Java’s Foundation: Critical Undertow Flaw CVE-2025-12543
NodeCordRAT: The Trojan Hiding in NPM to Steal Crypto via Discord NodeCordRAT NPM Supply Chain Attack
  • Malware

NodeCordRAT: The Trojan Hiding in NPM to Steal Crypto via Discord

Do Son January 9, 2026 0
Read More Read more about NodeCordRAT: The Trojan Hiding in NPM to Steal Crypto via Discord
Wide Open Firewall: Critical Foomuuri Flaws Let Local Users Take Control Foomuuri Vulnerability CVE-2025-67603 bypass WAF protections
  • Vulnerability Report

Wide Open Firewall: Critical Foomuuri Flaws Let Local Users Take Control

Do Son January 9, 2026 0
Read More Read more about Wide Open Firewall: Critical Foomuuri Flaws Let Local Users Take Control
BlueDelta Espionage: Russian Hackers Abuse Free Apps to Target Energy Sector BlueDelta Espionage Credential Harvesting
  • Cyber Security

BlueDelta Espionage: Russian Hackers Abuse Free Apps to Target Energy Sector

Do Son January 9, 2026 0
Read More Read more about BlueDelta Espionage: Russian Hackers Abuse Free Apps to Target Energy Sector
LockBit 5.0 Sustains Global Ransomware Dominance LockBit 5.0 Ransomware Ransomware-as-a-Service (RaaS)
  • Malware

LockBit 5.0 Sustains Global Ransomware Dominance

Do Son January 9, 2026 0
Read More Read more about LockBit 5.0 Sustains Global Ransomware Dominance
The Gemini Surge: Google Eclipses 20% Market Share as ChatGPT’s Grip Slips Gemini AI market share 2026, Nano Banana image synthesis
  • Technology

The Gemini Surge: Google Eclipses 20% Market Share as ChatGPT’s Grip Slips

Do Son January 8, 2026 0
Read More Read more about The Gemini Surge: Google Eclipses 20% Market Share as ChatGPT’s Grip Slips
The Great AI Rethink: Dell Ditches “AI-First” Hype as Consumers Stay Indifferent Microsoft Strategic Market Status investigation Dell CES 2026 AI PC marketing, Microsoft Copilot+ PC consumer apathy Microsoft AI Sales Quota Enterprise AI Demand Edge Copilot, AI browsing
  • Technology

The Great AI Rethink: Dell Ditches “AI-First” Hype as Consumers Stay Indifferent

Do Son January 8, 2026 0
Read More Read more about The Great AI Rethink: Dell Ditches “AI-First” Hype as Consumers Stay Indifferent
The End of the Unified Inbox: Gmail Kills POP3 Fetching and Gmailify in 2026 Gmail Mobile E2EE Gmail POP3 support end 2026, Gmailify deprecated January 2026 Gmail spam filter, political bias
  • Technology

The End of the Unified Inbox: Gmail Kills POP3 Fetching and Gmailify in 2026

Do Son January 8, 2026 0
Read More Read more about The End of the Unified Inbox: Gmail Kills POP3 Fetching and Gmailify in 2026
Android Behind Closed Doors: Google Ends Quarterly AOSP Code Drops in 2026 Android CLI Android Security Zero-Interaction DoS CVE-2026-21385 Android Security Update UK CMA Apple Google regulation Google Aluminum OS Android 16 leak, ALOS Android ChromeOS merger Android sideloading certification 2026, Google developer verification APK Android AOSP biannual release, AOSP source code latency 2026 Android Zero-Day, Critical DoS Flaw Android Universal Clipboard Cross-Device Sync Gemini Nano Block, Unlocked Bootloader Android, Calling Cards Android Security Bulletin, RCE Vulnerability Android Linux GUI, Debian VM Android System Services, Google Transparency Android 16, Pixel Update
  • Android

Android Behind Closed Doors: Google Ends Quarterly AOSP Code Drops in 2026

Do Son January 8, 2026 0
Read More Read more about Android Behind Closed Doors: Google Ends Quarterly AOSP Code Drops in 2026
The Logitech Fix: How to Restore Your Broken Mac Mouse Settings (Jan 2026) Logitech macOS certificate fix, Logi Options+ G HUB manual update Logi Options+ macOS certificate error, Logitech mouse settings not working 2026
  • Technology

The Logitech Fix: How to Restore Your Broken Mac Mouse Settings (Jan 2026)

Do Son January 8, 2026 0
Read More Read more about The Logitech Fix: How to Restore Your Broken Mac Mouse Settings (Jan 2026)
The Ubiquitous Brain: Arm Unveils the Era of Physical AI and AI-Defined Platforms Arm Physical AI 2026, AI-Defined Platforms CVE-2022-46891 Arm SME2, Mobile AI Performance
  • Technology

The Ubiquitous Brain: Arm Unveils the Era of Physical AI and AI-Defined Platforms

Do Son January 8, 2026 0
Read More Read more about The Ubiquitous Brain: Arm Unveils the Era of Physical AI and AI-Defined Platforms
Agentic Evolution: Lenovo Unveils “Qira” and AI Cloud Gigafactories at CES 2026 CVE-2022-40283 Lenovo Qira AI agent, Lenovo NVIDIA AI Cloud Gigafactory
  • Technology

Agentic Evolution: Lenovo Unveils “Qira” and AI Cloud Gigafactories at CES 2026

Do Son January 8, 2026 0
Read More Read more about Agentic Evolution: Lenovo Unveils “Qira” and AI Cloud Gigafactories at CES 2026
CISA KEV Alert: HPE’s Maximum CVSS Score Flaw and a Zombie PowerPoint Bug CISA active exploit catalog known exploited vulnerabilities ActiveMQ RCE CVE-2026-34197 CISA KEV Catalog Actively Exploited Vulnerabilities CISA KEV Catalog CVE-2025-37164 GeoServer XXE, CISA KEV FortiWeb SQLi, CISA KEV Critical Vulnerabilities CVE-2024-20953
  • Vulnerability Report

CISA KEV Alert: HPE’s Maximum CVSS Score Flaw and a Zombie PowerPoint Bug

Do Son January 8, 2026 0
Read More Read more about CISA KEV Alert: HPE’s Maximum CVSS Score Flaw and a Zombie PowerPoint Bug
Public Exploit Released: Critical n8n Flaw CVE-2026-21858 Exposes 100k Servers n8n Vulnerability CVE-2026-21858
  • Vulnerability Report

Public Exploit Released: Critical n8n Flaw CVE-2026-21858 Exposes 100k Servers

Do Son January 8, 2026 0
Read More Read more about Public Exploit Released: Critical n8n Flaw CVE-2026-21858 Exposes 100k Servers
“VM Isolation is Not Absolute”: Researchers Unmask Sophisticated ESXi “Maestro” Exploit GUARDIANWALL MailSuite Exploit CVE-2026-32661 FileZen Vulnerability CVE-2026-25108 Ivanti EPMM Vulnerability Dormant Backdoor Fortinet Authentication Bypass CVE-2026-24858 VMware vCenter Server Flaw CVE-2025-21590
  • Malware
  • Vulnerability Report

“VM Isolation is Not Absolute”: Researchers Unmask Sophisticated ESXi “Maestro” Exploit

Do Son January 8, 2026 0
Read More Read more about “VM Isolation is Not Absolute”: Researchers Unmask Sophisticated ESXi “Maestro” Exploit
GoBruteforcer Returns: How AI Code Snippets Fueled a 50,000-Server Botnet Seedworm Espionage Campaign 2026 ChromElevator Stealer DLL Sideloading SIM Swapping Crypto Theft Lazarus Comebacker, Aerospace Espionage Delete PlugX Malware
  • Malware

GoBruteforcer Returns: How AI Code Snippets Fueled a 50,000-Server Botnet

Do Son January 8, 2026 0
Read More Read more about GoBruteforcer Returns: How AI Code Snippets Fueled a 50,000-Server Botnet
CVE-2025-67859: Critical Auth Bypass Discovered in Popular Linux Battery Utility TLP Vulnerability CVE-2025-67859 Linux Kernel 6.9 Linux Kernel, End-of-Life
  • Vulnerability Report

CVE-2025-67859: Critical Auth Bypass Discovered in Popular Linux Battery Utility

Do Son January 8, 2026 0
Read More Read more about CVE-2025-67859: Critical Auth Bypass Discovered in Popular Linux Battery Utility
CrazyHunter: The “Ruthless” Ransomware Stalking Healthcare CrazyHunter Ransomware Healthcare Cyberattacks
  • Malware

CrazyHunter: The “Ruthless” Ransomware Stalking Healthcare

Do Son January 8, 2026 0
Read More Read more about CrazyHunter: The “Ruthless” Ransomware Stalking Healthcare
GitLab Patch: High-Severity XSS & AI Flaws Expose User Data GitLab AI Gateway Vulnerability CVE-2026-1868 CVE-2025-0314 GitLab Security Update CVE-2025-9222
  • Vulnerability Report

GitLab Patch: High-Severity XSS & AI Flaws Expose User Data

Do Son January 8, 2026 0
Read More Read more about GitLab Patch: High-Severity XSS & AI Flaws Expose User Data
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Jul 27, 2026📅 Updated: Jul 27, 2026
  • CVE-2025-68686CVSS 5.9
    An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1,...
    CISA KEV📅 Added to KEV: Jul 27, 2026
  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-0770CVSS 9.8
    Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
    CISA KEV📅 Added to KEV: Jul 21, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-11756CVSS 10.0
    A Deserialization of Untrusted Data vulnerability affecting Station Launcher App in 3DEXPERIENCE...
  • CVE-2026-15014CVSS 9.8
    The SMS Alert – SMS & OTP for WooCommerce, Order Notifications &...
  • CVE-2026-55579CVSS 9.8
    Pheditor is a single-file editor and file manager written in PHP. From...
  • CVE-2026-48030CVSS 9.9
    Pheditor is a single-file editor and file manager written in PHP. From...
  • CVE-2026-63077CVSS 9.8
    In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible...
  • CVE-2026-17191CVSS 9.1
    An input validation vulnerability exists in an API component of the orchestrator....
  • CVE-2026-51303CVSS 9.8
    A use-after-free (UAF) vulnerability was discovered in the core parsing component of...
  • CVE-2025-50455CVSS 9.1
    SQL injection vulnerability exists in the order_by parameter of the /customers/search endpoint...
  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may...
  • CVE-2026-66395CVSS 9.6
    SiYuan desktop before v3.7.2 contains a reflected cross-site scripting vulnerability in the...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.