Skip to content
September 13, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Ebyte NE2-D11 Gateway Hit by 11 Vulnerabilities, No Patch Yet Ebyte NE2-D11 vulnerabilities in industrial gateway web interface, CISA ICS advisory authentication bypass CVE-2026-73125
  • Vulnerability Report

Ebyte NE2-D11 Gateway Hit by 11 Vulnerabilities, No Patch Yet

Do Son August 26, 2026 0
Read More Read more about Ebyte NE2-D11 Gateway Hit by 11 Vulnerabilities, No Patch Yet
PoC Released for Redis RCE Use-After-Free Flaw Redis RCE use-after-free vulnerability public proof-of-concept exploit code disclosed
  • Vulnerability Report

PoC Released for Redis RCE Use-After-Free Flaw

Do Son August 26, 2026 0
Read More Read more about PoC Released for Redis RCE Use-After-Free Flaw
Unpatched Kaltura Server Flaws Enable Code Execution Diagram explaining the Kaltura server flaws involving CVE-2026-19912 and CVE-2026-19913
  • Vulnerability Report

Unpatched Kaltura Server Flaws Enable Code Execution

Do Son August 25, 2026 0
Read More Read more about Unpatched Kaltura Server Flaws Enable Code Execution
OpenSSL Security Update Patches 9 Denial-of-Service Flaws OpenSSL security update advisory patching nine denial-of-service vulnerabilities including QUIC double free CVE-2026-18798
  • Vulnerability Report

OpenSSL Security Update Patches 9 Denial-of-Service Flaws

Do Son August 25, 2026 0
Read More Read more about OpenSSL Security Update Patches 9 Denial-of-Service Flaws
TranslatePress Flaw (CVE-2026-19632) Exposes 400,000 WordPress Sites to Account Takeover TranslatePress account takeover vulnerability warning for WordPress admins, password reset link disclosure CVE-2026-19632
  • Vulnerability Report

TranslatePress Flaw (CVE-2026-19632) Exposes 400,000 WordPress Sites to Account Takeover

Do Son August 25, 2026 0
Read More Read more about TranslatePress Flaw (CVE-2026-19632) Exposes 400,000 WordPress Sites to Account Takeover
CVE-2026-63520: SharePoint RCE Chain Probed in the Wild, PoC Public SharePoint RCE vulnerability PoC diagram showing CVE-2026-63520 exploitation
  • Vulnerability Report

CVE-2026-63520: SharePoint RCE Chain Probed in the Wild, PoC Public

Do Son August 25, 2026 0
Read More Read more about CVE-2026-63520: SharePoint RCE Chain Probed in the Wild, PoC Public
BTR.sys Driver Abuse Turns Defender Into an EDR/AV Bypass Diagram of BTR.sys driver abuse showing the signed Defender remediation driver used as an EDR/AV bypass kernel primitive
  • Vulnerability Report

BTR.sys Driver Abuse Turns Defender Into an EDR/AV Bypass

Do Son August 25, 2026 0
Read More Read more about BTR.sys Driver Abuse Turns Defender Into an EDR/AV Bypass
Public PoC for CVE-2026-52923 Allows Attackers to Escalate to Root Privilege Linux kernel flaw CVE-2026-52923 root privilege escalation diagram
  • Vulnerability Report

Public PoC for CVE-2026-52923 Allows Attackers to Escalate to Root Privilege

Do Son August 25, 2026 0
Read More Read more about Public PoC for CVE-2026-52923 Allows Attackers to Escalate to Root Privilege
Millions of iOS Users Face New Crypto Theft Threat, warns ADEX coruna-kit-composition
  • Technique

Millions of iOS Users Face New Crypto Theft Threat, warns ADEX

Do Son August 25, 2026 0
Read More Read more about Millions of iOS Users Face New Crypto Theft Threat, warns ADEX
CVE-2026-77136: TYPO3 Powermail RCE Flaw Exploited in the Wild TYPO3 Powermail RCE flaw CVE-2026-77136
  • Vulnerability Report

CVE-2026-77136: TYPO3 Powermail RCE Flaw Exploited in the Wild

Do Son August 25, 2026 0
Read More Read more about CVE-2026-77136: TYPO3 Powermail RCE Flaw Exploited in the Wild
OpenAI Disrupts Russian Influence Campaign Promoting Fake Think Tank OpenAI disrupts a covert Russian influence campaign promoting the fake International Burke Institute
  • Cyber Security

OpenAI Disrupts Russian Influence Campaign Promoting Fake Think Tank

Do Son August 25, 2026 0
Read More Read more about OpenAI Disrupts Russian Influence Campaign Promoting Fake Think Tank
Weidmueller Router Flaw CVE-2026-63586 With CVSS 9.8 Allows Attackers To Execute Arbitrary Commands With Root Privileges A diagram showing the Weidmueller router flaw CVE-2026-63586 exploitation process.
  • Vulnerability Report

Weidmueller Router Flaw CVE-2026-63586 With CVSS 9.8 Allows Attackers To Execute Arbitrary Commands With Root Privileges

Do Son August 25, 2026 0
Read More Read more about Weidmueller Router Flaw CVE-2026-63586 With CVSS 9.8 Allows Attackers To Execute Arbitrary Commands With Root Privileges
Clop Deploys Custom Web Shell in PTC Windchill Extortion Attacks Clop web shell exploiting PTC Windchill CVE-2026-12569 to steal credentials and engineering data
  • Malware

Clop Deploys Custom Web Shell in PTC Windchill Extortion Attacks

Do Son August 25, 2026 0
Read More Read more about Clop Deploys Custom Web Shell in PTC Windchill Extortion Attacks
Core Werewolf Deploys New CoreRAT Malware Against Russian Targets CoreRAT malware decoy PDF used in Core Werewolf phishing attack on Russian defense targets
  • Cybercriminals

Core Werewolf Deploys New CoreRAT Malware Against Russian Targets

Do Son August 25, 2026 0
Read More Read more about Core Werewolf Deploys New CoreRAT Malware Against Russian Targets
Balonx Sistema: Mexican PhaaS Adds AI Vishing and RAT Balonx Sistema PhaaS platform diagram showing real-time phishing, Android RAT, and AI vishing targeting Mexican banks
  • Cybercriminals

Balonx Sistema: Mexican PhaaS Adds AI Vishing and RAT

Do Son August 25, 2026 0
Read More Read more about Balonx Sistema: Mexican PhaaS Adds AI Vishing and RAT
Windows 11 Bug Deletes NVIDIA Drivers ASUS ROG laptop keyboard with Windows 11 NVIDIA driver error on screen
  • Windows

Windows 11 Bug Deletes NVIDIA Drivers

Do Son August 25, 2026 0
Read More Read more about Windows 11 Bug Deletes NVIDIA Drivers
Fake AI PoCs Flood Exploit Repositories in 2026 Fake AI PoCs and malicious code found in GitHub exploit repositories.
  • Vulnerability Report

Fake AI PoCs Flood Exploit Repositories in 2026

Do Son August 25, 2026 0
Read More Read more about Fake AI PoCs Flood Exploit Repositories in 2026
Exposed Git Repositories Leak Critical Cloud Secrets 28000 exposed Git repositories leak credentials and cloud keys
  • Data Leak

Exposed Git Repositories Leak Critical Cloud Secrets

Do Son August 25, 2026 0
Read More Read more about Exposed Git Repositories Leak Critical Cloud Secrets
Uber Fined $966 Million for Automated Driver Terminations Dutch Data Protection Authority building and the Uber logo representing the massive GDPR fine
  • Technology

Uber Fined $966 Million for Automated Driver Terminations

Do Son August 25, 2026 0
Read More Read more about Uber Fined $966 Million for Automated Driver Terminations
YouTube Premium Prices Rise Across Europe and Singapore Starting September 23 YouTube Premium price increase Europe Singapore subscription cost 2026
  • Technology

YouTube Premium Prices Rise Across Europe and Singapore Starting September 23

Do Son August 25, 2026 0
Read More Read more about YouTube Premium Prices Rise Across Europe and Singapore Starting September 23
Microsoft Forces Bing Search Using New Standalone App Microsoft forces Bing search settings application attempting to modify Chrome settings
  • Windows

Microsoft Forces Bing Search Using New Standalone App

Do Son August 25, 2026 0
Read More Read more about Microsoft Forces Bing Search Using New Standalone App
CVE-2026-9254: Unauthenticated OS Command Injection Hits TP-Link Archer TP-Link Archer unauthenticated OS command injection vulnerability CVE-2026-9254
  • Vulnerability Report

CVE-2026-9254: Unauthenticated OS Command Injection Hits TP-Link Archer

Do Son August 25, 2026 0
Read More Read more about CVE-2026-9254: Unauthenticated OS Command Injection Hits TP-Link Archer
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-90558CVSS 9.8
    sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting...
  • CVE-2026-78159CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-85681CVSS 9.8
    The WP Component WordPress plugin through 2.2.4 does not have any capability...
  • CVE-2026-84171CVSS 9.8
    The WP images upload on piclect WordPress plugin through 1.0 does not...
  • CVE-2026-82845CVSS 9.9
    The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values...
  • CVE-2026-81402CVSS 9.8
    The DS Ad Rotator WordPress plugin through 0.8 does not perform any...
  • CVE-2026-77006CVSS 9.6
    The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied...
  • CVE-2026-77005CVSS 9.6
    The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a...
  • CVE-2026-75800CVSS 9.8
    The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.