Skip to content
July 31, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
FTC Probes Google, Amazon Over ‘Opaque’ Ad Practices FTC investigation, ad transparency
  • Technology

FTC Probes Google, Amazon Over ‘Opaque’ Ad Practices

Do Son September 14, 2025 0
Read More Read more about FTC Probes Google, Amazon Over ‘Opaque’ Ad Practices
Meet ZynorRAT: The New Cross-Platform Malware Controlled via Telegram ZynorRAT, Telegram malware
  • Malware

Meet ZynorRAT: The New Cross-Platform Malware Controlled via Telegram

Do Son September 13, 2025 0
Read More Read more about Meet ZynorRAT: The New Cross-Platform Malware Controlled via Telegram
OpenAI and Microsoft Solidify Partnership in New Restructuring Deal OpenAI restructuring, PBC OpenAI restructuring, Microsoft partnership
  • Technology

OpenAI and Microsoft Solidify Partnership in New Restructuring Deal

Do Son September 12, 2025 0
Read More Read more about OpenAI and Microsoft Solidify Partnership in New Restructuring Deal
The End of an Era: Microsoft Is Finally Killing VBScript Microsoft Developer Account Suspension Microsoft Web Activation Portal Driver Signing Account Suspension Windows 11 Smart App Control Windows 11 SE end of support, Microsoft education hardware pivot Microsoft Product Activation Portal 2025, Windows telephone activation discontinued Windows Update Naming, Microsoft Update Microsoft earnings, OpenAI valuation VBScript deprecation Microsoft Pakistan, Office Closure Microsoft job cuts Microsoft Own AI Models
  • Windows

The End of an Era: Microsoft Is Finally Killing VBScript

Do Son September 12, 2025 0
Read More Read more about The End of an Era: Microsoft Is Finally Killing VBScript
Firefox Finally Adds MKV Video Support After an 8-Year Wait Firefox built-in VPN Firefox VPN data limit, Firefox VPN countries, Mozilla VPN subscription Sanitizer API Firefox 148 Security Firefox WebRTC Vulnerability CVE-2025-14321 PoC Firefox VPN Feature, Browser-Only VPN Firefox Add-ons Rollback Firefox Encryption Firefox MKV support Firefox ESR, Windows 7
  • Technology

Firefox Finally Adds MKV Video Support After an 8-Year Wait

Do Son September 12, 2025 0
Read More Read more about Firefox Finally Adds MKV Video Support After an 8-Year Wait
Apple Issues New Spyware Alerts for French Officials and Journalists Apple Zero-Day CVE-2025-43529 WebKit Zero-Day, Targeted iOS Spyware Apple spyware alerts, zero-click attacks Apple, trademark lawsuit CVE-2024-54527 PoC exploit Apple, App Store
  • Malware

Apple Issues New Spyware Alerts for French Officials and Journalists

Do Son September 12, 2025 0
Read More Read more about Apple Issues New Spyware Alerts for French Officials and Journalists
FTC Launches Investigation into AI Chatbots and Their Effect on Kids Yoshua Bengio AI sycophancy, reverse deception AI feedback AI chatbots, FTC investigation AI-generated content Trump AI Policy, AI Deregulation Military AI, DoD Funding Stargate Project AI Art Restoration
  • Technology

FTC Launches Investigation into AI Chatbots and Their Effect on Kids

Do Son September 12, 2025 0
Read More Read more about FTC Launches Investigation into AI Chatbots and Their Effect on Kids
CVE-2025-10127 (CVSS 9.8): Critical Daikin Flaw Could Give Hackers Full System Access shell-quote command injection AI-Driven Vulnerabilities Q1 2026 Cyber Threats vm2 Sandbox Escape Node.js RCE upKeeper Privilege Escalation CVE-2026-2449 Pharos Controls Vulnerability Root Access Exploit Cybersecurity Vulnerability Roundup CVSS 10.0 Flaws Shadow Archives CVE-2026-0866 MS-Agent Prompt Injection CVE-2026-2256 basic-ftp Path Traversal CVE-2026-27699 telnetd Root Vulnerability CVE-1999-0073 Regression USR-W610 Vulnerabilities End-of-Life IoT Security IceWarp Security Update IceWarp Vulnerabilities Airleader Master Vulnerability CVE-2026-1358 ZLAN5143D Vulnerability CISA ICS Advisory Acronis Cyber Protect Vulnerability CVE-2025-30411 WAGO 852 Vulnerability OT Network Security SandboxJS Vulnerability Sandbox Escape (CVSS 10.0) Kubernetes Local Path Provisioner CVE-2025-62878 CISA Unresponsive Vendors Avation & RISS Vulnerabilities KiloView Vulnerability CVE-2026-1453 OpenClaw RCE vulnerability Johnson Controls Vulnerability CVE-2025-26385 SandboxJS Vulnerability CVE-2026-23830 ibaPDA Vulnerability CVE-2025-14988 Protobuf Vulnerability CVE-2026-0994 AVEVA Process Optimization Vulnerability CVE-2025-61937 ConnectWise PSA Vulnerability CVE-2026-0695 Aruba VIA Vulnerability CVE-2025-37186 aiohttp v3.13.3, Denial of Service (DoS) SmarterMail RCE, CVE-2025-52691 Airoha RACE, Headphone Jacking HPE OneView RCE CVE-2025-37164 FreePBX Auth Bypass, PBX Takeover ScreenConnect Config Flaw, Untrusted Extensions Ruby SAML Auth Bypass, XML Parser Differential Devolutions SQL Injection, Password Manager Flaw Vivotek Unauthenticated RCE, EOL IP Camera Flaw Lynx+ Critical Flaw, Unauthenticated Reset Firebox Default Credentials, CVE-2025-59396 Veeder-Root RCE, Critical ATG Flaw ArcGIS Server SQLi Watchdoc RCE, CVE-2025-58384 Delta DIALink Daikin Security Gateway, authentication bypass Frostbyte10, industrial controller security SunPower, vulnerability Ubiquiti UniFi Connect, EV Station Vulnerabilities Adobe Experience Manager, RCE Vulnerability UniFi Access, Command Injection LDAPNightmare - CVE-2025-1316
  • Vulnerability Report

CVE-2025-10127 (CVSS 9.8): Critical Daikin Flaw Could Give Hackers Full System Access

Do Son September 12, 2025 0
Read More Read more about CVE-2025-10127 (CVSS 9.8): Critical Daikin Flaw Could Give Hackers Full System Access
CVE-2025-58754: Axios Vulnerability Puts Node.js Processes at Risk of DoS Attacks Axios proxy vulnerabilities prototype pollution gadget Axios Vulnerability Cloud Hijacking Axios npm supply chain attack Axios Vulnerability Node.js DoS CVE-2025-58754 CVE-2025-27152 Axios Vulnerability, Form-Data Flaw
  • Vulnerability Report

CVE-2025-58754: Axios Vulnerability Puts Node.js Processes at Risk of DoS Attacks

Do Son September 12, 2025 0
Read More Read more about CVE-2025-58754: Axios Vulnerability Puts Node.js Processes at Risk of DoS Attacks
CISA Urges Immediate Patching: Critical Dassault Systèmes Flaw (CVE-2025-5086) Actively Exploited Known Exploited Vulnerabilities CISA KEV
  • Vulnerability Report

CISA Urges Immediate Patching: Critical Dassault Systèmes Flaw (CVE-2025-5086) Actively Exploited

Do Son September 12, 2025 0
Read More Read more about CISA Urges Immediate Patching: Critical Dassault Systèmes Flaw (CVE-2025-5086) Actively Exploited
Unveiling VoidProxy: The Phishing-as-a-Service That Bypasses MFA VoidProxy Phishing
  • Cybercriminals

Unveiling VoidProxy: The Phishing-as-a-Service That Bypasses MFA

Do Son September 12, 2025 0
Read More Read more about Unveiling VoidProxy: The Phishing-as-a-Service That Bypasses MFA
PyInstaller Flaw : Are Your Python Apps Vulnerable to Hijacking? PyInstaller, security CVE-2025-59042
  • Vulnerability Report

PyInstaller Flaw : Are Your Python Apps Vulnerable to Hijacking?

Do Son September 12, 2025 0
Read More Read more about PyInstaller Flaw : Are Your Python Apps Vulnerable to Hijacking?
EggStreme: New Fileless Malware from a Chinese APT Targets Philippine Military Kali365 phishing platform EmEditor Supply Chain Attack, WALSHAM INVESTMENTS LIMITED EggStreme, fileless malware North Korea Cybercrime, Remote IT Job Fraud RedDelta APT
  • Cyber Security
  • Malware

EggStreme: New Fileless Malware from a Chinese APT Targets Philippine Military

Do Son September 12, 2025 0
Read More Read more about EggStreme: New Fileless Malware from a Chinese APT Targets Philippine Military
BlackNevas Ransomware: A Persistent Global Threat With Impossible-to-Decrypt Payloads INC Ransom Pacific Cyber Threats OysterLoader Malware Rhysida Ransomware Black Basta Ransomware BYOVD Technique Velociraptor Abuse, Storm-2603 Ransomware Crypto24, Ransomware Ransomware Payments, UK Legislation ZACROS data breach
  • Malware

BlackNevas Ransomware: A Persistent Global Threat With Impossible-to-Decrypt Payloads

Do Son September 12, 2025 0
Read More Read more about BlackNevas Ransomware: A Persistent Global Threat With Impossible-to-Decrypt Payloads
ToneShell Backdoor Evolves With Anti-Analysis Tricks, Continues Targeting Myanmar ToneShell, Mustang Panda
  • Cyber Security
  • Malware

ToneShell Backdoor Evolves With Anti-Analysis Tricks, Continues Targeting Myanmar

Do Son September 12, 2025 0
Read More Read more about ToneShell Backdoor Evolves With Anti-Analysis Tricks, Continues Targeting Myanmar
kkRAT: A New Malware Blends Crypto Hijacking with Legitimate RMM Tools kkRAT
  • Malware

kkRAT: A New Malware Blends Crypto Hijacking with Legitimate RMM Tools

Do Son September 12, 2025 0
Read More Read more about kkRAT: A New Malware Blends Crypto Hijacking with Legitimate RMM Tools
Angular SSR Flaw (CVE-2025-59052) Exposes User Data: What Developers Need to Know Angular hostname hijacking vulnerability Angular SSRF Origin Hijacking Angular XSS Vulnerability CVE-2026-32635 Angular i18n XSS CVE-2026-27970 Angular SSR SSRF CVE-2026-27739 Angular Vulnerability CVE-2026-22610 CVE-2025-59052 Angular security Angular XSS Bypass, SVG Injection
  • Vulnerability Report

Angular SSR Flaw (CVE-2025-59052) Exposes User Data: What Developers Need to Know

Do Son September 11, 2025 0
Read More Read more about Angular SSR Flaw (CVE-2025-59052) Exposes User Data: What Developers Need to Know
Community Notes: Meta Invites All Users to Test New Fact-Checking System Meta Community Notes
  • Technology

Community Notes: Meta Invites All Users to Test New Fact-Checking System

Do Son September 11, 2025 0
Read More Read more about Community Notes: Meta Invites All Users to Test New Fact-Checking System
PlayStation Launches Family App for Mobile Parental Controls PlayStation Parental Controls
  • Technology

PlayStation Launches Family App for Mobile Parental Controls

Do Son September 11, 2025 0
Read More Read more about PlayStation Launches Family App for Mobile Parental Controls
1.5 billion packets per second DDoS attack detected with FastNetMon FastNetMon_detects_a_record-scale_DDoS_attack_15B__17574197861FjWINd5Zk
  • Press Release

1.5 billion packets per second DDoS attack detected with FastNetMon

cybernewswire September 11, 2025 0
Read More Read more about 1.5 billion packets per second DDoS attack detected with FastNetMon
A New Era for Developers: Microsoft Waives App Publishing Fees Microsoft Store, app publishing
  • Technology

A New Era for Developers: Microsoft Waives App Publishing Fees

Do Son September 11, 2025 0
Read More Read more about A New Era for Developers: Microsoft Waives App Publishing Fees
Microsoft Copilot to Be Powered by Two AIs: OpenAI and Now Anthropic Microsoft Copilot, Anthropic CVE-2024-38063 on-premises server products
  • Technology

Microsoft Copilot to Be Powered by Two AIs: OpenAI and Now Anthropic

Do Son September 11, 2025 0
Read More Read more about Microsoft Copilot to Be Powered by Two AIs: OpenAI and Now Anthropic
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-18072CVSS 9.8
    The Advanced Responsive Video Embedder for Rumble, Odysee, YouTube, Vimeo, Kick … plugin for WordPress is vulnerable to...
    Admin intel📅 Updated: Jul 29, 2026
  • CVE-2026-20316CVSS 5.3
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    CISA KEV📅 Added to KEV: Jul 29, 2026
  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Jul 27, 2026📅 Updated: Jul 27, 2026
  • CVE-2025-68686CVSS 5.9
    An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1,...
    CISA KEV📅 Added to KEV: Jul 27, 2026
  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-68771CVSS 9.8
    ComfyUI v0.23.0 contains an unsafe deserialization vulnerability in the LoadTrainingDataset node that...
  • CVE-2026-68770CVSS 9.8
    sentence-transformers contains a security control bypass vulnerability that allows attackers to achieve...
  • CVE-2026-54725CVSS 9.6
    vault-secrets-webhook is a Kubernetes mutating webhook that makes direct secret injection into...
  • CVE-2026-67822CVSS 9.8
    Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset...
  • CVE-2026-52855CVSS 9.9
    Wings is the server control plane for Pterodactyl, a free, open-source game...
  • CVE-2026-17566CVSS 9.9
    pgAdmin 4's Import/Export Data tool builds a psql \copy (...) command line...
  • CVE-2026-17351CVSS 9.0
    The fix for CVE-2026-12045 in pgAdmin 4 9.16 required the LLM-supplied query...
  • CVE-2026-17349CVSS 9.6
    /misc/workspace/adhoc_connect_server, part of the Workspaces feature introduced in pgAdmin 4 9.0, when...
  • CVE-2026-17561CVSS 9.8
    Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software,...
  • CVE-2026-14919CVSS 9.8
    The ShopMonitor.io WordPress plugin before 1.2.0 does not properly restrict its email-rerouting...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.