Skip to content
June 20, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
CVE-2025-64188 (CVSS 9.8): Critical “Soledad” Theme Flaw Lets Subscribers Take Over WordPress Sites CVE-2023-3460 WordPress Theme Critical Flaw
  • Vulnerability Report

CVE-2025-64188 (CVSS 9.8): Critical “Soledad” Theme Flaw Lets Subscribers Take Over WordPress Sites

Do Son December 12, 2025 0
A critical security vulnerability has been discovered in Soledad, one of the most popular general-purpose WordPress themes...
Read More Read more about CVE-2025-64188 (CVSS 9.8): Critical “Soledad” Theme Flaw Lets Subscribers Take Over WordPress Sites
DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding Agent Tesla Movie Lure, Subtitle File Infection
  • Malware

DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding

Do Son December 12, 2025 0
Cybersecurity researchers have uncovered a new, sophisticated malware campaign targeting movie pirates with a lure they can’t...
Read More Read more about DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding
GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes GOLD BLADE Canada, BYOVD EDR Killer
  • Malware

GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes

Do Son December 12, 2025 0
A notorious threat group has pivoted its focus to the Great White North, unleashing a sophisticated campaign...
Read More Read more about GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes
1inch Named Exclusive Swap Provider at Launch for Ledger Multisig 1inch_ase_study_Ledger_1765444649YfKehgLWGE
  • Press Release

1inch Named Exclusive Swap Provider at Launch for Ledger Multisig

cybernewswire December 11, 2025 0
Road Town, British Virgin Islands, 11th December 2025, CyberNewsWire
Read More Read more about 1inch Named Exclusive Swap Provider at Launch for Ledger Multisig
INE Highlights Enterprise Shift Toward Hands-On Training Amid Widening Skills Gaps Blog___December_2025___Enterprises_Tackle_Skills_G_1765308844mvXzfDKnPu
  • Press Release

INE Highlights Enterprise Shift Toward Hands-On Training Amid Widening Skills Gaps

cybernewswire December 11, 2025 0
Cary, North Carolina, USA, 11th December 2025, CyberNewsWire
Read More Read more about INE Highlights Enterprise Shift Toward Hands-On Training Amid Widening Skills Gaps
Urgent Patch: Notepad++ WinGUp Flaw Allowed Malware to Hijack Updates CVE-2023-40031 Notepad++ Update Hijacking, WinGUp Vulnerability
  • Vulnerability Report

Urgent Patch: Notepad++ WinGUp Flaw Allowed Malware to Hijack Updates

Do Son December 11, 2025 0
Security researchers recently uncovered a vulnerability in the open-source text and code editor Notepad++, allowing attackers in...
Read More Read more about Urgent Patch: Notepad++ WinGUp Flaw Allowed Malware to Hijack Updates
16-Year Battle Ends: Intel Loses Appeal, Must Pay €237 Million EU Fine Intel EU Antitrust Fine, Naked Restrictions Intel Layoff Data Theft Jinfeng Luo Intel leadership change Intel SoftBank Intel Foundry, Semiconductor Market Intel Arrow Lake Refresh, Copilot+ PC Intel GPU Performance, Security Mitigations Mitigation Downfall Vulnerability
  • Technology

16-Year Battle Ends: Intel Loses Appeal, Must Pay €237 Million EU Fine

Do Son December 11, 2025 0
In a case spanning sixteen years and regarded as one of the most protracted antitrust battles in...
Read More Read more about 16-Year Battle Ends: Intel Loses Appeal, Must Pay €237 Million EU Fine
Qualcomm Buys Ventana to Double Down on RISC-V and Custom Oryon CPU Qualcomm Samsung 2nm foundry deal, Snapdragon 8 Elite 2nm refresh Qualcomm Ventana Acquisition, RISC-V Strategy Qualcomm Autotalks, China Antitrust Qualcomm Antitrust, Which? Lawsuit Qualcomm GPU driver, CVE-2024-38399 Qualcomm's March 2025 Security Bulletin
  • Technology

Qualcomm Buys Ventana to Double Down on RISC-V and Custom Oryon CPU

Do Son December 11, 2025 0
To further consolidate its technological leadership in the computing domain, Qualcomm has announced its acquisition of Ventana...
Read More Read more about Qualcomm Buys Ventana to Double Down on RISC-V and Custom Oryon CPU
You’re In Control: Instagram Launches “Your Algorithm” Feature for Reels Instagram Your Algorithm, Reels Personalization
  • Technology

You’re In Control: Instagram Launches “Your Algorithm” Feature for Reels

Do Son December 11, 2025 0
Instagram has announced the launch of a new feature called “Your Algorithm,” marking the first time users...
Read More Read more about You’re In Control: Instagram Launches “Your Algorithm” Feature for Reels
EU’s Green Mandate: Parliament Pledges 90% Emissions Cut by 2040 Apple Google EU alliance DMA European Commission Breach Trivy Supply Chain Attack Europa.eu Breach EU Cloud Infrastructure EU Cyber Sanctions State-Sponsored Hacking EU 2040 Emissions Target, Europe Climate Leadership AWS Azure DMA Cloud Gatekeeper DSA violation, illegal content Apple DMA Delay, iPhone Mirroring EU EU Age Verification, Google Play Integrity Corning Antitrust, EU Competition Apple EU Digital Markets Act App Store commission European Union cyberattacks - InvestAI EU Targets Musk’s X Digital Markets Act, EU fines
  • Technology

EU’s Green Mandate: Parliament Pledges 90% Emissions Cut by 2040

Do Son December 11, 2025 0
To confront the escalating challenge of climate change, the European Parliament has announced—via an official press release—that...
Read More Read more about EU’s Green Mandate: Parliament Pledges 90% Emissions Cut by 2040
Apache Struts 2 DoS Flaw (CVE-2025-66675) Risks Server Crash via File Leak in Multipart Request Processing CVE-2024-53677 Apache Struts 2 DoS, File Leak Vulnerability
  • Vulnerability Report

Apache Struts 2 DoS Flaw (CVE-2025-66675) Risks Server Crash via File Leak in Multipart Request Processing

Do Son December 11, 2025 0
A significant denial-of-service (DoS) vulnerability has been discovered in Apache Struts 2, the widely used open-source framework...
Read More Read more about Apache Struts 2 DoS Flaw (CVE-2025-66675) Risks Server Crash via File Leak in Multipart Request Processing
High-Severity Zoom Rooms Flaw Risks Privilege Escalation via Downgrade Protection Bypass Zoom Rooms LPE, Downgrade Protection Bypass Zoom High-Risk Flaws Zoom security updates
  • Vulnerability Report

High-Severity Zoom Rooms Flaw Risks Privilege Escalation via Downgrade Protection Bypass

Do Son December 11, 2025 0
Zoom Video Communications has released a critical security update for its Zoom Rooms software, addressing vulnerabilities that...
Read More Read more about High-Severity Zoom Rooms Flaw Risks Privilege Escalation via Downgrade Protection Bypass
Emergency Chrome Update: Google Patches New Zero-Day Under Active Attack Chrome security update exploit in the wild Chrome Zero-Day CVE-2026-3909 Chrome Zero-Day PoC CVE-2026-2441 Chrome Zero-Day CVE-2026-2441 Chrome Zero-Day, Active Exploitation CVE-2025-10585 Chrome vulnerability, zero-day exploit CVE-2025-6558 Chrome Zero-Day, V8 Vulnerability Chrome Zero-Day, Security Update
  • Vulnerability Report

Emergency Chrome Update: Google Patches New Zero-Day Under Active Attack

Do Son December 11, 2025 0
Google has pushed an urgent security update to the Stable Channel for Desktop, racing to patch a...
Read More Read more about Emergency Chrome Update: Google Patches New Zero-Day Under Active Attack
High-Severity Jenkins Flaws Risk Unauthenticated DoS via HTTP CLI and XSS Via Coverage Reports Jenkins security advisory 2026, CVE-2026-53435, CVE-2026-53436 Jenkins Plugin RCE CI/CD Security Advisory Jenkins Vulnerability CVE-2026-33001 Jenkins CLI DoS, Coverage Plugin XSS Jenkins SAML Hijacking, Plaintext Secrets CVE-2023-43495 - Jenkins Vulnerability
  • Vulnerability Report

High-Severity Jenkins Flaws Risk Unauthenticated DoS via HTTP CLI and XSS Via Coverage Reports

Do Son December 11, 2025 0
The maintainers of Jenkins, the world’s leading open-source automation server, have issued a critical security advisory addressing...
Read More Read more about High-Severity Jenkins Flaws Risk Unauthenticated DoS via HTTP CLI and XSS Via Coverage Reports
Gogs Zero-Day (CVE-2025-8110) Risks RCE for 700+ Servers via Symlink Path Traversal Bypass Gogs Zero-Day RCE, Symlink Path Traversal
  • Vulnerability Report

Gogs Zero-Day (CVE-2025-8110) Risks RCE for 700+ Servers via Symlink Path Traversal Bypass

Do Son December 11, 2025 0
A routine malware investigation has spiraled into the discovery of a widespread “smash-and-grab” campaign targeting the developer...
Read More Read more about Gogs Zero-Day (CVE-2025-8110) Risks RCE for 700+ Servers via Symlink Path Traversal Bypass
High-Severity GitLab XSS Flaw (CVE-2025-12716) Risks Session Hijack via Malicious Wiki Pages CVE-2024-9164 - CVE-2025-0376 GitLab Wiki XSS, Session Hijack Flaw
  • Vulnerability Report

High-Severity GitLab XSS Flaw (CVE-2025-12716) Risks Session Hijack via Malicious Wiki Pages

Do Son December 11, 2025 0
In a critical mid-week security sprint, GitLab has rolled out a series of important updates for its...
Read More Read more about High-Severity GitLab XSS Flaw (CVE-2025-12716) Risks Session Hijack via Malicious Wiki Pages
Facebook Gets New Look, But Instagram Secretly Uses AI for SEO Bait Meta Instagram AI SEO, Facebook App Redesign
  • Technology

Facebook Gets New Look, But Instagram Secretly Uses AI for SEO Bait

Do Son December 11, 2025 0
Meta has recently implemented two starkly contrasting changes across its major social platforms. Facebook is receiving a...
Read More Read more about Facebook Gets New Look, But Instagram Secretly Uses AI for SEO Bait
SpaceX IPO: Targeting a $1.5 Trillion Valuation to Fund Space Data Centers Anthropic SpaceX partnership SpaceX IPO 1.75 trillion 2026 Tech IPO wave, SpaceX OpenAI Anthropic valuation SpaceX IPO 2026, $800 Billion Valuation SpaceX $1.5 Trillion IPO, Starship Starlink
  • Technology

SpaceX IPO: Targeting a $1.5 Trillion Valuation to Fund Space Data Centers

Do Son December 11, 2025 0
Insiders reveal that SpaceX is now advancing an extraordinarily ambitious initial public offering (IPO), with plans to...
Read More Read more about SpaceX IPO: Targeting a $1.5 Trillion Valuation to Fund Space Data Centers
China’s WARP PANDA APT Deploys BRICKSTORM Backdoor to Hijack VMware vCenter/ESXi and Azure Cloud BRICKSTORM DoH Backdoor
  • Cyber Security
  • Malware

China’s WARP PANDA APT Deploys BRICKSTORM Backdoor to Hijack VMware vCenter/ESXi and Azure Cloud

Do Son December 11, 2025 0
A sophisticated cyber-espionage campaign has been uncovered deep within the virtualization layers of major U.S. organizations. Throughout...
Read More Read more about China’s WARP PANDA APT Deploys BRICKSTORM Backdoor to Hijack VMware vCenter/ESXi and Azure Cloud
Unpatched TOTOLINK AX1800 Router Flaw Allows Unauthenticated Telnet & Root RCE TOTOLINK EX200 Vulnerability CVE-2025-65606 TOTOLINK Auth Bypass, Unauthenticated Telnet
  • Vulnerability Report

Unpatched TOTOLINK AX1800 Router Flaw Allows Unauthenticated Telnet & Root RCE

Do Son December 11, 2025 0
A critical security vulnerability has been uncovered in the popular TOTOLINK AX1800 wireless router, a device widely...
Read More Read more about Unpatched TOTOLINK AX1800 Router Flaw Allows Unauthenticated Telnet & Root RCE
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-11551CVSS 9.8
    The Branda plugin for WordPress is vulnerable to privilege escalation via account...
  • CVE-2026-56081CVSS 9.1
    Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker...
  • CVE-2026-56073CVSS 9.4
    Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that...
  • CVE-2026-55447CVSS 9.6
    ### Summary All components based on `BaseFileComponent` are vulnerable to the following...
  • CVE-2026-48584CVSS 9.9
    Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to...
  • CVE-2026-48582CVSS 9.6
    Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
  • CVE-2026-45480CVSS 10.0
    Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate...
  • CVE-2026-55255CVSS 9.9
    ## Summary Insecure Direct Object Reference (IDOR) vulnerability in `/api/v1/responses` endpoint allows...
  • CVE-2026-54782CVSS 10.0
    ### Impact Full impersonation of any principal the trusted STS could have...
  • CVE-2026-48773CVSS 9.8
    ProxySQL is a proxy for MySQL and its forks, as well as...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.