Skip to content
July 31, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Stack-Based Buffer Overflow in Squid Could Let Hackers Execute Arbitrary Code CVE-2024-25617 CVE-2025-59362 Squid Proxy ICP Vulnerability
  • Vulnerability

Stack-Based Buffer Overflow in Squid Could Let Hackers Execute Arbitrary Code

Do Son September 15, 2025 0
Read More Read more about Stack-Based Buffer Overflow in Squid Could Let Hackers Execute Arbitrary Code
Samsung Zero-Day Exploit CVE-2025-21043 Patched After Active Attacks on Android Devices Samsung zero-day Samsung Galaxy S25 Edge, Sales Performance Samsung Account, Inactive Accounts One UI 7 Samsung Update
  • Vulnerability Report

Samsung Zero-Day Exploit CVE-2025-21043 Patched After Active Attacks on Android Devices

Do Son September 15, 2025 0
Read More Read more about Samsung Zero-Day Exploit CVE-2025-21043 Patched After Active Attacks on Android Devices
Windows 11’s New “Speed Test” Feature: A Gimmick or a Genuine Upgrade? test
  • Windows

Windows 11’s New “Speed Test” Feature: A Gimmick or a Genuine Upgrade?

Do Son September 15, 2025 0
Read More Read more about Windows 11’s New “Speed Test” Feature: A Gimmick or a Genuine Upgrade?
PoC Available: FlowiseAI Flaw (CVE-2025-58434) Allows Full Account Takeover (CVSS 9.8) Flowise Sandbox Escape CVE-2026-46442 Flowise RCE Flowise Auth Bypass, Unauthenticated Registration Flowise RCE, WriteFileTool FlowiseAI, account takeover CVE-2025-58434
  • Vulnerability Report

PoC Available: FlowiseAI Flaw (CVE-2025-58434) Allows Full Account Takeover (CVSS 9.8)

Do Son September 15, 2025 0
Read More Read more about PoC Available: FlowiseAI Flaw (CVE-2025-58434) Allows Full Account Takeover (CVSS 9.8)
FBI Alert: Two Cybercriminal Groups Are Actively Compromising Salesforce TanStack Typosquatting npm Supply Chain Attack Axios Supply Chain Attack npm Poisoning eScan Supply Chain Attack Antivirus Compromise APT-36, NCERT WhatsApp Advisory FBI alert, Salesforce Salt Typhoon, APT group ConnectWise ScreenConnect hack Nation-state cyberattack FortiGate Leak - zkLend vulnerability - TRIPLESTRENGTH Threat Actor Group Dark Storm
  • Cyber Security

FBI Alert: Two Cybercriminal Groups Are Actively Compromising Salesforce

Do Son September 15, 2025 0
Read More Read more about FBI Alert: Two Cybercriminal Groups Are Actively Compromising Salesforce
AI Content War: Penske Media Sues Google Over AI Overviews AI Overviews opt out Google Gemini Pentagon contract Penske Media, AI Overviews
  • Technology

AI Content War: Penske Media Sues Google Over AI Overviews

Do Son September 15, 2025 0
Read More Read more about AI Content War: Penske Media Sues Google Over AI Overviews
VaultGemma: Google’s New AI Model Is the First with Differential Privacy VaultGemma, differential privacy
  • Technology

VaultGemma: Google’s New AI Model Is the First with Differential Privacy

Do Son September 15, 2025 0
Read More Read more about VaultGemma: Google’s New AI Model Is the First with Differential Privacy
Digiever NVR Flaws (CVE-2025-10264, CVE-2025-10265) Let Hackers Steal Credentials & Take Control Digiever NVR, critical vulnerabilities
  • Vulnerability Report

Digiever NVR Flaws (CVE-2025-10264, CVE-2025-10265) Let Hackers Steal Credentials & Take Control

Do Son September 15, 2025 0
Read More Read more about Digiever NVR Flaws (CVE-2025-10264, CVE-2025-10265) Let Hackers Steal Credentials & Take Control
Unveiling BaoLoader: How One Malware Family Abuses Trust for 7 Years BaoLoader, code-signing abuse
  • Cybercriminals

Unveiling BaoLoader: How One Malware Family Abuses Trust for 7 Years

Do Son September 15, 2025 0
Read More Read more about Unveiling BaoLoader: How One Malware Family Abuses Trust for 7 Years
CVE-2025-9556 (CVSS 9.8):Critical Vulnerability in LangChainGo Puts LLM Apps at Risk Everon OCPP Vulnerability CVE-2026-26288 ASUSTOR ADM Vulnerability CVE-2026-24936 PrismX MX100 Vulnerability Hard-Coded Credentials Advantech Vulnerability CVE-2025-52694 Eaton UPS Companion, CVE-2025-59887 ASUS Router, Authentication Bypass ASUSTOR DLL Hijacking, Privilege Escalation OpenShift AI, Privilege Escalation GoAnywhere vulnerability CVE-2025-10035 LangChainGo, template injection DeepDiff, class pollution ToolShell Sunshine, CSRF Vulnerability KACE SMA, Critical Vulnerabilities Oracle Zero-Days - PDQ Deploy vulnerability
  • Vulnerability Report

CVE-2025-9556 (CVSS 9.8):Critical Vulnerability in LangChainGo Puts LLM Apps at Risk

Do Son September 15, 2025 0
Read More Read more about CVE-2025-9556 (CVSS 9.8):Critical Vulnerability in LangChainGo Puts LLM Apps at Risk
Phishing Wave Hits U.S. Energy Giants: Chevron, ConocoPhillips Targeted Layoff Phishing Scam Remcos RAT Malware Aruba Phishing, Phishing-as-a-Service PyPI, phishing CVE-2024-25608 PyPI Phishing, Credential Theft
  • Cybercriminals

Phishing Wave Hits U.S. Energy Giants: Chevron, ConocoPhillips Targeted

Do Son September 15, 2025 0
Read More Read more about Phishing Wave Hits U.S. Energy Giants: Chevron, ConocoPhillips Targeted
China-Aligned Hackers Unleash Upgraded Toneshell and New USB Worm China-aligned actor, Hive0154
  • Cyber Security
  • Malware

China-Aligned Hackers Unleash Upgraded Toneshell and New USB Worm

Do Son September 15, 2025 0
Read More Read more about China-Aligned Hackers Unleash Upgraded Toneshell and New USB Worm
VMScape (CVE-2025-40300): A New CPU Flaw Threatens Cloud Security VMScape, CPU vulnerability CVE-2025-40300
  • Vulnerability Report

VMScape (CVE-2025-40300): A New CPU Flaw Threatens Cloud Security

Do Son September 15, 2025 0
Read More Read more about VMScape (CVE-2025-40300): A New CPU Flaw Threatens Cloud Security
EvilAI Malware Campaign Exploits Trust in AI Tools to Infiltrate Global Industries EvilAI, malware campaign
  • Malware

EvilAI Malware Campaign Exploits Trust in AI Tools to Infiltrate Global Industries

Do Son September 15, 2025 0
Read More Read more about EvilAI Malware Campaign Exploits Trust in AI Tools to Infiltrate Global Industries
Apple’s N1 Chip Has a Major Wi-Fi 7 Limitation iOS 26.1, Liquid Glass iPhone Air teardown Apple Wi-Fi 7, N1 chip
  • Technology

Apple’s N1 Chip Has a Major Wi-Fi 7 Limitation

Do Son September 15, 2025 0
Read More Read more about Apple’s N1 Chip Has a Major Wi-Fi 7 Limitation
Apple Watch Series 11 Unveils FDA-Approved Hypertension Alerts Apple Watch, hypertension alerts
  • Technology

Apple Watch Series 11 Unveils FDA-Approved Hypertension Alerts

Do Son September 15, 2025 0
Read More Read more about Apple Watch Series 11 Unveils FDA-Approved Hypertension Alerts
CUPS Flaws Allow Linux Remote DoS (CVE-2025-58364) and Authentication Bypass (CVE-2025-58060) CUPS vulnerability, Linux printing
  • Vulnerability Report

CUPS Flaws Allow Linux Remote DoS (CVE-2025-58364) and Authentication Bypass (CVE-2025-58060)

Do Son September 15, 2025 0
Read More Read more about CUPS Flaws Allow Linux Remote DoS (CVE-2025-58364) and Authentication Bypass (CVE-2025-58060)
Windows 11’s New Full-Screen Prompts for Microsoft 365 Windows 11, subscription reminders
  • Windows

Windows 11’s New Full-Screen Prompts for Microsoft 365

Do Son September 15, 2025 0
Read More Read more about Windows 11’s New Full-Screen Prompts for Microsoft 365
Microsoft Drops Developer Fees to Revitalize Its App Store Microsoft Store developer fees
  • Technology

Microsoft Drops Developer Fees to Revitalize Its App Store

Do Son September 14, 2025 0
Read More Read more about Microsoft Drops Developer Fees to Revitalize Its App Store
Unlocking Real-Time Translation: Microsoft Edge’s AI Breakthrough Microsoft Edge Google account login interface and synchronization settings Browser Choice Alliance letter Microsoft Edge cleartext credentials memory dump Microsoft Edge auto-startup Microsoft Edge Collections sunset, export Edge Collections CSV Edge IE Mode Zero-Day, Chakra Exploit Windows Search, Microsoft Edge AI video translation, Edge browser Microsoft Editor, Edge Edge Developer tools Windows 10 ESU, Microsoft Edge Microsoft Edge, FCP Optimization CVE-2023-36735 Edge, AI Search
  • Technology

Unlocking Real-Time Translation: Microsoft Edge’s AI Breakthrough

Do Son September 14, 2025 0
Read More Read more about Unlocking Real-Time Translation: Microsoft Edge’s AI Breakthrough
Microsoft Avoids EU Antitrust Fine with Teams Deal Teams Workplace Check-in Microsoft 365 privacy, employee tracking tools, Teams location sharing Microsoft Teams EU antitrust, Teams Wi-Fi tracking, employee privacy
  • Technology

Microsoft Avoids EU Antitrust Fine with Teams Deal

Do Son September 14, 2025 0
Read More Read more about Microsoft Avoids EU Antitrust Fine with Teams Deal
Corsair Settles $5.5M Lawsuit Over Misleading Memory Speeds Corsair settlement, deceptive advertising
  • Technology

Corsair Settles $5.5M Lawsuit Over Misleading Memory Speeds

Do Son September 14, 2025 0
Read More Read more about Corsair Settles $5.5M Lawsuit Over Misleading Memory Speeds
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-18072CVSS 9.8
    The Advanced Responsive Video Embedder for Rumble, Odysee, YouTube, Vimeo, Kick … plugin for WordPress is vulnerable to...
    Admin intel📅 Updated: Jul 29, 2026
  • CVE-2026-20316CVSS 5.3
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    CISA KEV📅 Added to KEV: Jul 29, 2026
  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Jul 27, 2026📅 Updated: Jul 27, 2026
  • CVE-2025-68686CVSS 5.9
    An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1,...
    CISA KEV📅 Added to KEV: Jul 27, 2026
  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-54725CVSS 9.6
    vault-secrets-webhook is a Kubernetes mutating webhook that makes direct secret injection into...
  • CVE-2026-67822CVSS 9.8
    Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset...
  • CVE-2026-52855CVSS 9.9
    Wings is the server control plane for Pterodactyl, a free, open-source game...
  • CVE-2026-17566CVSS 9.9
    pgAdmin 4's Import/Export Data tool builds a psql \copy (...) command line...
  • CVE-2026-17351CVSS 9.0
    The fix for CVE-2026-12045 in pgAdmin 4 9.16 required the LLM-supplied query...
  • CVE-2026-17349CVSS 9.6
    /misc/workspace/adhoc_connect_server, part of the Workspaces feature introduced in pgAdmin 4 9.0, when...
  • CVE-2026-17561CVSS 9.8
    Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software,...
  • CVE-2026-14919CVSS 9.8
    The ShopMonitor.io WordPress plugin before 1.2.0 does not properly restrict its email-rerouting...
  • CVE-2026-14483CVSS 9.8
    The Realtyna Organic IDX plugin + WPL Real Estate plugin for WordPress...
  • CVE-2026-63223CVSS 9.8
    CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, the is_image...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.