Skip to content
September 14, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Fake AI Tools Malware Targets Developers Through GitHub Fake AI tools malware in a GitHub infostealer campaign targeting developers
  • Malware

Fake AI Tools Malware Targets Developers Through GitHub

Do Son August 11, 2026 0
Read More Read more about Fake AI Tools Malware Targets Developers Through GitHub
DOUBLECUP: New ClickFix Loader Drops CountLoader and DeviceManager RAT DOUBLECUP ClickFix Loader-as-a-Service infection chain deploying CountLoader and DeviceManager RAT
  • Malware

DOUBLECUP: New ClickFix Loader Drops CountLoader and DeviceManager RAT

Do Son August 11, 2026 0
Read More Read more about DOUBLECUP: New ClickFix Loader Drops CountLoader and DeviceManager RAT
Three Critical Wazuh Manager Flaws Disclosed With Public PoC Exploit Code Wazuh manager vulnerability advisory showing cluster protocol file write and root RCE with public PoC exploit code
  • Vulnerability Report

Three Critical Wazuh Manager Flaws Disclosed With Public PoC Exploit Code

Do Son August 11, 2026 0
Read More Read more about Three Critical Wazuh Manager Flaws Disclosed With Public PoC Exploit Code
CVE-2026-44945: Rancher Cross-Cluster Impersonation Flaw Enables Full Privilege Escalation, Rated CVSS 9.1 Rancher privilege escalation flaw CVE-2026-44945 via cross-cluster impersonation, rated CVSS 9.1
  • Vulnerability Report

CVE-2026-44945: Rancher Cross-Cluster Impersonation Flaw Enables Full Privilege Escalation, Rated CVSS 9.1

Do Son August 11, 2026 0
Read More Read more about CVE-2026-44945: Rancher Cross-Cluster Impersonation Flaw Enables Full Privilege Escalation, Rated CVSS 9.1
CVE-2026-10090: Red Hat ACM Privilege Escalation Flaw Grants Cluster-Admin, Rated CVSS 9.9 Red Hat ACM privilege escalation flaw CVE-2026-10090 granting cluster-admin, rated CVSS 9.9
  • Vulnerability Report

CVE-2026-10090: Red Hat ACM Privilege Escalation Flaw Grants Cluster-Admin, Rated CVSS 9.9

Do Son August 10, 2026 0
Read More Read more about CVE-2026-10090: Red Hat ACM Privilege Escalation Flaw Grants Cluster-Admin, Rated CVSS 9.9
CVE-2026-5423: Authentication Bypass Hits Neo4j GraphQL Subscriptions Neo4j GraphQL authentication bypass CVE-2026-5423 diagram showing forged JWT claims over a WebSocket subscription
  • Vulnerability Report

CVE-2026-5423: Authentication Bypass Hits Neo4j GraphQL Subscriptions

Do Son August 10, 2026 0
Read More Read more about CVE-2026-5423: Authentication Bypass Hits Neo4j GraphQL Subscriptions
CVE-2026-43074: Linux Kernel eventpoll Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed Linux kernel eventpoll flaw CVE-2026-43074 use-after-free giving a root shell, with public PoC exploit code
  • Vulnerability Report

CVE-2026-43074: Linux Kernel eventpoll Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed

Do Son August 10, 2026 0
Read More Read more about CVE-2026-43074: Linux Kernel eventpoll Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed
Interlock Ransomware Abuses Volatility3 for Credential Theft Interlock ransomware attack chain abusing Volatility3 memory forensics tool for credential theft
  • Malware

Interlock Ransomware Abuses Volatility3 for Credential Theft

Do Son August 10, 2026 0
Read More Read more about Interlock Ransomware Abuses Volatility3 for Credential Theft
Greatness PhaaS Platform Steals Microsoft 365 Tokens Past MFA Greatness PhaaS platform operator panel for the AiTM phishing kit targeting Microsoft 365
  • Cybercriminals

Greatness PhaaS Platform Steals Microsoft 365 Tokens Past MFA

Do Son August 10, 2026 0
Read More Read more about Greatness PhaaS Platform Steals Microsoft 365 Tokens Past MFA
Weekly CVE Report: 6 Actively Exploited Flaws and 1,877 New CVEs Weekly CVE report dashboard showing actively exploited vulnerabilities and new CVE counts for early August 2026
  • Weekly Recap

Weekly CVE Report: 6 Actively Exploited Flaws and 1,877 New CVEs

Do Son August 10, 2026 0
Read More Read more about Weekly CVE Report: 6 Actively Exploited Flaws and 1,877 New CVEs
CVE-2026-64564: SCTP Flaw Enables Container Escape Linux SCTP kernel use-after-free CVE-2026-64564 privilege escalation and container-to-host escape diagram
  • Vulnerability Report

CVE-2026-64564: SCTP Flaw Enables Container Escape

Do Son August 10, 2026 0
Read More Read more about CVE-2026-64564: SCTP Flaw Enables Container Escape
PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild JetBrains TeamCity CVE-2026-63077 unauthenticated remote code execution exploited in the wild with public PoC exploit code
  • Vulnerability Report

PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild

Do Son August 10, 2026 0
Read More Read more about PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild
BdThemes Supply Chain Attack Poisons Plugin API to Hijack WordPress Admins BdThemes supply chain attack diagram showing a poisoned WordPress plugin API feed injecting XSS into an admin dashboard
  • Malware

BdThemes Supply Chain Attack Poisons Plugin API to Hijack WordPress Admins

Do Son August 9, 2026 0
Read More Read more about BdThemes Supply Chain Attack Poisons Plugin API to Hijack WordPress Admins
Dopamine 3.0 Jailbreak Brings iOS 26 Support to A12 and A13 Devices Dopamine 3.0 iOS 26 jailbreak running on an iPhone with A12 and A13 chip support
  • Technology

Dopamine 3.0 Jailbreak Brings iOS 26 Support to A12 and A13 Devices

Do Son August 8, 2026 0
Read More Read more about Dopamine 3.0 Jailbreak Brings iOS 26 Support to A12 and A13 Devices
Google Wallet Introduces Digital Allowance for Minors Parent sending digital allowance via Google Wallet on an Android smartphone
  • Technology

Google Wallet Introduces Digital Allowance for Minors

Do Son August 8, 2026 0
Read More Read more about Google Wallet Introduces Digital Allowance for Minors
Metabase SQL Injection Zero-Day (CVSS 10) Exploited Metabase SQL injection zero-day vulnerability CVSS 10 exploited in the wild unauthenticated admin access advisory
  • Vulnerability Report

Metabase SQL Injection Zero-Day (CVSS 10) Exploited

Do Son August 8, 2026 0
Read More Read more about Metabase SQL Injection Zero-Day (CVSS 10) Exploited
Multiple ClamAV Flaws Let Remote Attackers Cause DoS ClamAV vulnerability multiple denial of service flaws in Cisco Secure Endpoint remote attacker crafted file scanning
  • Vulnerability Report

Multiple ClamAV Flaws Let Remote Attackers Cause DoS

Do Son August 8, 2026 0
Read More Read more about Multiple ClamAV Flaws Let Remote Attackers Cause DoS
Bugtraq Is Back: The Original Full Disclosure Mailing List Is Live Again bugtraq_1786121651ybnxeS3u0o
  • Press Release

Bugtraq Is Back: The Original Full Disclosure Mailing List Is Live Again

cybernewswire August 7, 2026 0
Read More Read more about Bugtraq Is Back: The Original Full Disclosure Mailing List Is Live Again
CryptoJS Randomness Vulnerability Drains Crypto Wallets CryptoJS randomness vulnerability Ill Bloom crypto wallet seed phrase attack draining funds across multiple chains
  • Vulnerability Report

CryptoJS Randomness Vulnerability Drains Crypto Wallets

Do Son August 7, 2026 0
Read More Read more about CryptoJS Randomness Vulnerability Drains Crypto Wallets
CVE-2026-5430: WSO2 Account Takeover Flaws Rated Up to CVSS 10 WSO2 account takeover flaws CVE-2026-5430 and CVE-2026-1728 rated up to CVSS 10
  • Vulnerability Report

CVE-2026-5430: WSO2 Account Takeover Flaws Rated Up to CVSS 10

Do Son August 7, 2026 0
Read More Read more about CVE-2026-5430: WSO2 Account Takeover Flaws Rated Up to CVSS 10
Tails 7.10.1 Fixes Critical Linux Kernel Vulnerability Tails 7.10.1 emergency release fixing Linux kernel CVE-2026-64560 and expat library vulnerability
  • Linux

Tails 7.10.1 Fixes Critical Linux Kernel Vulnerability

Do Son August 7, 2026 0
Read More Read more about Tails 7.10.1 Fixes Critical Linux Kernel Vulnerability
Google Ask Maps Update: AI Navigation Evolves Google Ask Maps update showcasing AI conversational navigation on a smartphone interface
  • Technology

Google Ask Maps Update: AI Navigation Evolves

Do Son August 7, 2026 0
Read More Read more about Google Ask Maps Update: AI Navigation Evolves
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-90608CVSS 9.9
    A flaw has been found in Totolink A3002MU Hh-B20211125.1046. The affected element...
  • CVE-2026-90607CVSS 9.9
    A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046. Impacted is the function...
  • CVE-2026-90606CVSS 9.9
    A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue...
  • CVE-2026-90605CVSS 9.9
    A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects...
  • CVE-2026-81648CVSS 10.0
    The CryptoPayment Gateway WordPress plugin from 1.2.1 to 1.2.2 does not apply...
  • CVE-2026-90558CVSS 9.8
    sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting...
  • CVE-2026-78159CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-85681CVSS 9.8
    The WP Component WordPress plugin through 2.2.4 does not have any capability...
  • CVE-2026-84171CVSS 9.8
    The WP images upload on piclect WordPress plugin through 1.0 does not...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.