Skip to content
September 14, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Fake Zoom Installer Drops Overlord RAT on macOS Fake Zoom installer delivering Overlord RAT on macOS via a .NET downloader
  • Malware

Fake Zoom Installer Drops Overlord RAT on macOS

Do Son August 13, 2026 0
Read More Read more about Fake Zoom Installer Drops Overlord RAT on macOS
MariaDB Low-Privilege Remote Code Execution Chain: Full Details and PoC Exploit Code Publicly Disclosed MariaDB remote code execution low-privilege RCE exploit chain with public proof-of-concept code
  • Vulnerability Report

MariaDB Low-Privilege Remote Code Execution Chain: Full Details and PoC Exploit Code Publicly Disclosed

Do Son August 13, 2026 0
Read More Read more about MariaDB Low-Privilege Remote Code Execution Chain: Full Details and PoC Exploit Code Publicly Disclosed
GitLab Patch Release Fixes 13 Flaws, Including High-Severity XSS Bugs GitLab patch release fixing 13 security flaws including high-severity XSS and CVE-2026-15217 on a dashboard
  • Vulnerability Report

GitLab Patch Release Fixes 13 Flaws, Including High-Severity XSS Bugs

Do Son August 12, 2026 0
Read More Read more about GitLab Patch Release Fixes 13 Flaws, Including High-Severity XSS Bugs
CVE-2026-67261: Dell VSI RCE Flaw Scores CVSS 9.8 Dell Virtual Storage Integrator unauthenticated remote code execution CVE-2026-67261 CVSS 9.8 critical vulnerability
  • Vulnerability Report

CVE-2026-67261: Dell VSI RCE Flaw Scores CVSS 9.8

Do Son August 12, 2026 0
Read More Read more about CVE-2026-67261: Dell VSI RCE Flaw Scores CVSS 9.8
CVE-2026-71319: Nuxt DevTools Flaw With 7.3 Million Monthly Downloads Allows Arbitrary Command Execution, CVSS 9.6 Nuxt DevTools vulnerability CVE-2026-71319 enabling arbitrary command execution, rated CVSS 9.6
  • Vulnerability Report

CVE-2026-71319: Nuxt DevTools Flaw With 7.3 Million Monthly Downloads Allows Arbitrary Command Execution, CVSS 9.6

Do Son August 12, 2026 0
Read More Read more about CVE-2026-71319: Nuxt DevTools Flaw With 7.3 Million Monthly Downloads Allows Arbitrary Command Execution, CVSS 9.6
CVE-2026-61515: Unauthenticated Command Injection in Puwell IP Cameras, PoC Exploit Code Publicly Disclosed Puwell IP Camera vulnerabilities CVE-2026-61514 and CVE-2026-61515 with public proof-of-concept exploit code
  • Vulnerability Report

CVE-2026-61515: Unauthenticated Command Injection in Puwell IP Cameras, PoC Exploit Code Publicly Disclosed

Do Son August 12, 2026 0
Read More Read more about CVE-2026-61515: Unauthenticated Command Injection in Puwell IP Cameras, PoC Exploit Code Publicly Disclosed
CVE-2026-58115: CVSS 10 Node-RED RCE Hits SIMATIC IoT2050 CVE-2026-58115 SIMATIC IoT2050 Node-RED remote code execution flaw with a CVSS 10 severity score
  • Vulnerability Report

CVE-2026-58115: CVSS 10 Node-RED RCE Hits SIMATIC IoT2050

Do Son August 12, 2026 0
Read More Read more about CVE-2026-58115: CVSS 10 Node-RED RCE Hits SIMATIC IoT2050
macOS ClickFix Campaign Hides Its Lure Behind a Fingerprinting Gate Spirals ransomware double extortion attack chain from IIS web shell to network encryption
  • Malware

macOS ClickFix Campaign Hides Its Lure Behind a Fingerprinting Gate

Do Son August 12, 2026 0
Read More Read more about macOS ClickFix Campaign Hides Its Lure Behind a Fingerprinting Gate
UNC6671 Vishing Extortion Rebrands Across 5 Brands UNC6671 vishing extortion group using AiTM credential phishing across five extortion brands
  • Cybercriminals

UNC6671 Vishing Extortion Rebrands Across 5 Brands

Do Son August 12, 2026 0
Read More Read more about UNC6671 Vishing Extortion Rebrands Across 5 Brands
CVE-2026-55040 PoC Released for SharePoint Authentication Bypass CVE-2026-55040 SharePoint authentication bypass PoC forging a JWT token shown in a Rapid7 exploit terminal
  • Vulnerability Report

CVE-2026-55040 PoC Released for SharePoint Authentication Bypass

Do Son August 12, 2026 0
Read More Read more about CVE-2026-55040 PoC Released for SharePoint Authentication Bypass
CVE-2026-50656 PoC Published: Defender Privilege Escalation Bypass ShieldBreak PoC exploit code for CVE-2026-50656 Windows Defender privilege escalation displayed on screen
  • Vulnerability Report

CVE-2026-50656 PoC Published: Defender Privilege Escalation Bypass

Do Son August 12, 2026 0
Read More Read more about CVE-2026-50656 PoC Published: Defender Privilege Escalation Bypass
Chrome Update Fixes 5 Use-After-Free Security Bugs Chrome security update patching use-after-free flaws CVE-2026-19556 and CVE-2026-19560 on a browser screen
  • Vulnerability Report

Chrome Update Fixes 5 Use-After-Free Security Bugs

Do Son August 12, 2026 0
Read More Read more about Chrome Update Fixes 5 Use-After-Free Security Bugs
Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks Lazarus zero-day exploit code on a screen showing Operation Dream Job fake job offer lure
  • Cybercriminals

Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks

Do Son August 12, 2026 0
Read More Read more about Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks
Microsoft August 2026 Patch Tuesday Fixes WinSock Zero-Day Exploited in the Wild Microsoft August 2026 Patch Tuesday zero-day CVE-2026-68820 WinSock afd.sys exploited in the wild security update
  • Vulnerability Report

Microsoft August 2026 Patch Tuesday Fixes WinSock Zero-Day Exploited in the Wild

Do Son August 12, 2026 0
Read More Read more about Microsoft August 2026 Patch Tuesday Fixes WinSock Zero-Day Exploited in the Wild
Zoom Patches Four Security Flaws, Including Two Remote Code Execution Bugs Zoom security vulnerability advisory showing four CVEs and two remote code execution flaws in the annotator function
  • Vulnerability Report

Zoom Patches Four Security Flaws, Including Two Remote Code Execution Bugs

Do Son August 12, 2026 0
Read More Read more about Zoom Patches Four Security Flaws, Including Two Remote Code Execution Bugs
CVE-2026-64560: Linux Kernel CPU Timer Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed Linux kernel CPU timer flaw CVE-2026-64560 use-after-free giving a root shell, with public PoC exploit code
  • Vulnerability Report

CVE-2026-64560: Linux Kernel CPU Timer Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed

Do Son August 12, 2026 0
Read More Read more about CVE-2026-64560: Linux Kernel CPU Timer Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed
CVE-2026-66147: Unauthenticated Remote Code Execution Flaws Hit SonicWall GMS SonicWall GMS vulnerability CVE-2026-66147 unauthenticated remote code execution advisory dashboard warning
  • Vulnerability Report

CVE-2026-66147: Unauthenticated Remote Code Execution Flaws Hit SonicWall GMS

Do Son August 12, 2026 0
Read More Read more about CVE-2026-66147: Unauthenticated Remote Code Execution Flaws Hit SonicWall GMS
Cisco ASA and FTD VPN Flaw CVE-2026-20349 Exploited in the Wild Cisco ASA and FTD VPN vulnerability CVE-2026-20349 exploited in the wild causing a firewall denial of service reload
  • Vulnerability Report

Cisco ASA and FTD VPN Flaw CVE-2026-20349 Exploited in the Wild

Do Son August 12, 2026 0
Read More Read more about Cisco ASA and FTD VPN Flaw CVE-2026-20349 Exploited in the Wild
MarkLogic Server Security Bulletin Patches 10 Vulnerabilities, With CVSS Scores Up to 9.9 MarkLogic Server vulnerabilities including CVE-2026-7329 and CVE-2026-9192 rated up to CVSS 9.9
  • Vulnerability Report

MarkLogic Server Security Bulletin Patches 10 Vulnerabilities, With CVSS Scores Up to 9.9

Do Son August 11, 2026 0
Read More Read more about MarkLogic Server Security Bulletin Patches 10 Vulnerabilities, With CVSS Scores Up to 9.9
CVE-2026-27912: PoC Released for SYSTEM Privilege Flaw Windows Kerberos ResetNightmare CVE-2026-27912 elevation of privilege flaw with public proof-of-concept exploit code
  • Vulnerability Report

CVE-2026-27912: PoC Released for SYSTEM Privilege Flaw

Do Son August 11, 2026 0
Read More Read more about CVE-2026-27912: PoC Released for SYSTEM Privilege Flaw
CVE-2026-58231 (CVSS 10.0) and Code Injection RCE Flaws Top SAP August 2026 Patch Day SAP security patch day critical security vulnerabilities SAP SQL Injection April 2026 Patch Day SAP Security, Critical Vulnerabilities Security Patch Day CVE-2025-42944
  • Vulnerability Report

CVE-2026-58231 (CVSS 10.0) and Code Injection RCE Flaws Top SAP August 2026 Patch Day

Do Son August 11, 2026 0
Read More Read more about CVE-2026-58231 (CVSS 10.0) and Code Injection RCE Flaws Top SAP August 2026 Patch Day
Windows PnP Attack Chain Turns a USB Plug Into SYSTEM: Details and PoC Now Public Windows PnP attack chain diagram showing a USB plug and play exploit escalating to NT AUTHORITY SYSTEM privilege escalation
  • Vulnerability Report

Windows PnP Attack Chain Turns a USB Plug Into SYSTEM: Details and PoC Now Public

Do Son August 11, 2026 0
Read More Read more about Windows PnP Attack Chain Turns a USB Plug Into SYSTEM: Details and PoC Now Public
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-90608CVSS 9.9
    A flaw has been found in Totolink A3002MU Hh-B20211125.1046. The affected element...
  • CVE-2026-90607CVSS 9.9
    A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046. Impacted is the function...
  • CVE-2026-90606CVSS 9.9
    A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue...
  • CVE-2026-90605CVSS 9.9
    A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects...
  • CVE-2026-81648CVSS 10.0
    The CryptoPayment Gateway WordPress plugin from 1.2.1 to 1.2.2 does not apply...
  • CVE-2026-90558CVSS 9.8
    sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting...
  • CVE-2026-78159CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-85681CVSS 9.8
    The WP Component WordPress plugin through 2.2.4 does not have any capability...
  • CVE-2026-84171CVSS 9.8
    The WP images upload on piclect WordPress plugin through 1.0 does not...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.