Skip to content
September 14, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Chrome Update Fixes 15 Flaws, Two Critical in WebGL, Dawn Chrome security update patching 15 vulnerabilities including critical WebGL and Dawn buffer overflow flaws
  • Vulnerability Report

Chrome Update Fixes 15 Flaws, Two Critical in WebGL, Dawn

Do Son August 19, 2026 0
Read More Read more about Chrome Update Fixes 15 Flaws, Two Critical in WebGL, Dawn
Armored Likho Still Toolkit Deploys Covert Spying Implants Armored Likho Still Toolkit architecture and Armored Likho Still Toolkit analysis flow
  • Cybercriminals

Armored Likho Still Toolkit Deploys Covert Spying Implants

Do Son August 19, 2026 0
Read More Read more about Armored Likho Still Toolkit Deploys Covert Spying Implants
YouTube View Count Metric Undergoes Major Overhaul YouTube view count metric interface showing immediate clicks registering as views
  • Technology

YouTube View Count Metric Undergoes Major Overhaul

Do Son August 18, 2026 0
Read More Read more about YouTube View Count Metric Undergoes Major Overhaul
macOS Tahoe 26.7 Code Reveals Unreleased Apple Devices macOS Tahoe 26.7 leaks exposing Apple hardware roadmap
  • Technology

macOS Tahoe 26.7 Code Reveals Unreleased Apple Devices

Do Son August 18, 2026 0
Read More Read more about macOS Tahoe 26.7 Code Reveals Unreleased Apple Devices
D-Link DWR-M961 Router Hit by Command Injection and Buffer Overflow Flaws D-Link router command injection CVE-2026-71958 buffer overflow
  • Vulnerability Report

D-Link DWR-M961 Router Hit by Command Injection and Buffer Overflow Flaws

Do Son August 18, 2026 0
Read More Read more about D-Link DWR-M961 Router Hit by Command Injection and Buffer Overflow Flaws
CVE-2026-68138: PoC Exploit Enables Linux Kernel Privilege Escalation CVE-2026-68138 Linux kernel privilege escalation qdisc rate-table race condition use-after-free proof-of-concept exploit to root
  • Vulnerability Report

CVE-2026-68138: PoC Exploit Enables Linux Kernel Privilege Escalation

Do Son August 18, 2026 0
Read More Read more about CVE-2026-68138: PoC Exploit Enables Linux Kernel Privilege Escalation
MongoDB Patches 32 Vulnerabilities, Including CVE-2026-19001 Arbitrary Code Execution Flaw (CVSS 9.5) MongoDB security vulnerabilities CVE-2026-19001 BI Connector ODBC Driver diagram
  • Vulnerability Report

MongoDB Patches 32 Vulnerabilities, Including CVE-2026-19001 Arbitrary Code Execution Flaw (CVSS 9.5)

Do Son August 18, 2026 0
Read More Read more about MongoDB Patches 32 Vulnerabilities, Including CVE-2026-19001 Arbitrary Code Execution Flaw (CVSS 9.5)
Kimi Work Silently Uploads Five Recent Agent Sessions With Feedback Reports Kimi Work privacy feedback tool agent session upload Moonshot AI desktop client
  • Data Leak

Kimi Work Silently Uploads Five Recent Agent Sessions With Feedback Reports

Do Son August 18, 2026 0
Read More Read more about Kimi Work Silently Uploads Five Recent Agent Sessions With Feedback Reports
CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1) Apache HttpClient TLS vulnerability CVE-2026-71290 MITM diagram
  • Vulnerability Report

CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)

Do Son August 18, 2026 0
Read More Read more about CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)
PoC Discloses for CVE-2026-64849: watchTowr Sees Attacks on MLflow SSRF MLflow vulnerability CVE-2026-64849 unauthenticated full-read SSRF webhook redirect bypass reaching cloud metadata
  • Vulnerability Report

PoC Discloses for CVE-2026-64849: watchTowr Sees Attacks on MLflow SSRF

Do Son August 18, 2026 0
Read More Read more about PoC Discloses for CVE-2026-64849: watchTowr Sees Attacks on MLflow SSRF
Microsoft Removes WMIC from Default Windows 11 Installs Windows 11 optional features interface showing the WMIC command-line utility
  • Windows

Microsoft Removes WMIC from Default Windows 11 Installs

Do Son August 18, 2026 0
Read More Read more about Microsoft Removes WMIC from Default Windows 11 Installs
NIST Asks for Help Putting People First in Cybersecurity NIST human-centered cybersecurity concept paper guidelines feedback human element people-first security
  • Cyber Security

NIST Asks for Help Putting People First in Cybersecurity

Do Son August 18, 2026 0
Read More Read more about NIST Asks for Help Putting People First in Cybersecurity
SpaceXAI Launches Cursor Origin Beta for AI-Driven Git Hosting Cursor Origin Git hosting interface demonstrating AI agent integration and high-volume commits
  • Technology

SpaceXAI Launches Cursor Origin Beta for AI-Driven Git Hosting

Do Son August 18, 2026 0
Read More Read more about SpaceXAI Launches Cursor Origin Beta for AI-Driven Git Hosting
SafePal Data Breach Exposes Order Information of 39,798 Customers SafePal data breach order information exposed 39798 customers authorization flaw phishing risk crypto wallet
  • Data Leak

SafePal Data Breach Exposes Order Information of 39,798 Customers

Do Son August 18, 2026 0
Read More Read more about SafePal Data Breach Exposes Order Information of 39,798 Customers
North Carolina Confirms Apple Wallet Digital ID Support, More States Ahead Apple Wallet digital ID North Carolina driver's license mobile ID TSA airport
  • Technology

North Carolina Confirms Apple Wallet Digital ID Support, More States Ahead

Do Son August 18, 2026 0
Read More Read more about North Carolina Confirms Apple Wallet Digital ID Support, More States Ahead
GEEKOM Mini PC Driver Downloads Found Bundled With Backdoor Since 2024 GEEKOM driver backdoor malware mini PC AMD infected download page
  • Malware

GEEKOM Mini PC Driver Downloads Found Bundled With Backdoor Since 2024

Do Son August 18, 2026 0
Read More Read more about GEEKOM Mini PC Driver Downloads Found Bundled With Backdoor Since 2024
Kimsuky AI Operations Reveal New Cyber Tactics Kimsuky AI operations flow diagram by North Korea threat actor
  • Cybercriminals

Kimsuky AI Operations Reveal New Cyber Tactics

Do Son August 18, 2026 0
Read More Read more about Kimsuky AI Operations Reveal New Cyber Tactics
Windows 11 WinRE Gains Automatic Wi-Fi Reconnection for Cloud Rebuild Windows 11 WinRE automatic Wi-Fi network recovery Cloud Rebuild Quick Machine Recovery
  • Windows

Windows 11 WinRE Gains Automatic Wi-Fi Reconnection for Cloud Rebuild

Do Son August 18, 2026 0
Read More Read more about Windows 11 WinRE Gains Automatic Wi-Fi Reconnection for Cloud Rebuild
CVE-2026-75045: Unauthenticated Attacker Could Download YouTrack Database Backups CVE-2026-75045 JetBrains YouTrack vulnerability unauthenticated attacker download database backups shared draft signature
  • Vulnerability Report

CVE-2026-75045: Unauthenticated Attacker Could Download YouTrack Database Backups

Do Son August 18, 2026 0
Read More Read more about CVE-2026-75045: Unauthenticated Attacker Could Download YouTrack Database Backups
Abyssos Modular RAT: Zscaler ThreatLabz Analysis A diagram showing the Abyssos modular RAT infection chain and C2 communication
  • Malware

Abyssos Modular RAT: Zscaler ThreatLabz Analysis

Do Son August 18, 2026 0
Read More Read more about Abyssos Modular RAT: Zscaler ThreatLabz Analysis
Aeternum Blockchain Botnet Hides C2 Commands in Polygon Smart Contracts Aeternum blockchain botnet Polygon smart contracts C2 diagram
  • Malware

Aeternum Blockchain Botnet Hides C2 Commands in Polygon Smart Contracts

Do Son August 18, 2026 0
Read More Read more about Aeternum Blockchain Botnet Hides C2 Commands in Polygon Smart Contracts
GeoServer Unauthenticated SQL Injection (CVSS 9.8) Exploited in the Wild, PoC Public GeoServer unauthenticated SQL injection jsonArrayContains vulnerability CVSS 9.8 exploited in the wild proof-of-concept RCE
  • Vulnerability Report

GeoServer Unauthenticated SQL Injection (CVSS 9.8) Exploited in the Wild, PoC Public

Do Son August 18, 2026 0
Read More Read more about GeoServer Unauthenticated SQL Injection (CVSS 9.8) Exploited in the Wild, PoC Public
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-90606CVSS 9.9
    A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue...
  • CVE-2026-90605CVSS 9.9
    A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects...
  • CVE-2026-81648CVSS 10.0
    The CryptoPayment Gateway WordPress plugin from 1.2.1 to 1.2.2 does not apply...
  • CVE-2026-90558CVSS 9.8
    sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting...
  • CVE-2026-78159CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-85681CVSS 9.8
    The WP Component WordPress plugin through 2.2.4 does not have any capability...
  • CVE-2026-84171CVSS 9.8
    The WP images upload on piclect WordPress plugin through 1.0 does not...
  • CVE-2026-82845CVSS 9.9
    The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values...
  • CVE-2026-81402CVSS 9.8
    The DS Ad Rotator WordPress plugin through 0.8 does not perform any...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.