Skip to content
September 29, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Meta AI Chatbots Go Proactive: “Project Omni” to Initiate Conversations for Deeper Engagement Meta AI usage limits token minimization strategy, Meta AI budget caps, enterprise AI cost control Meta CEO Agent Mark Zuckerberg MobileLLM-R1, on-device AI Meta Midjourney Meta Pika Labs, AI Video Generation EU AI Regulation, Meta AI Stance Meta AI, PlayAI Acquisition Proactive Chatbots Meta AI, Photo Privacy
  • Technology

Meta AI Chatbots Go Proactive: “Project Omni” to Initiate Conversations for Deeper Engagement

Do Son July 5, 2025 0
Read More Read more about Meta AI Chatbots Go Proactive: “Project Omni” to Initiate Conversations for Deeper Engagement
Amazon Shuts Down Freevee: What’s Next for Free Streaming on Prime Video? AWS Middle East drone strikes AWS Frontier Agents Autonomous Software Engineering AWS AI Factories Data Sovereignty AI Agentic AI Nova Sonic AWS Google Cloud Interconnect AWS Free Tier, Cloud Credits Freevee, ad-supported streaming Amazon AI, North Carolina Investment CVE-2022-2385
  • Technology

Amazon Shuts Down Freevee: What’s Next for Free Streaming on Prime Video?

Do Son July 5, 2025 0
Read More Read more about Amazon Shuts Down Freevee: What’s Next for Free Streaming on Prime Video?
Apple Prioritizes Foldable iPhone: Pauses Foldable iPad Development Amid Production Challenges Apple Foldable, iPhone Fold WorkflowKit, CVE-2024-27821 Zero-Days
  • Technology

Apple Prioritizes Foldable iPhone: Pauses Foldable iPad Development Amid Production Challenges

Do Son July 5, 2025 0
Read More Read more about Apple Prioritizes Foldable iPhone: Pauses Foldable iPad Development Amid Production Challenges
Nintendo Locks Down Switch 2 USB-C Port: Breaking Third-Party Dock Compatibility with Proprietary Encryption Nintendo tariff lawsuit 2026 Nintendo Switch 2, MIG Tool Nintendo Switch 2, USB-C Restrictions Nintendo Switch 2, Vulnerability
  • Technology

Nintendo Locks Down Switch 2 USB-C Port: Breaking Third-Party Dock Compatibility with Proprietary Encryption

Do Son July 5, 2025 0
Read More Read more about Nintendo Locks Down Switch 2 USB-C Port: Breaking Third-Party Dock Compatibility with Proprietary Encryption
Apple’s Secret “ACDC” Project: Building Its Own Cloud & Renting Servers with Custom Chips AI Infrastructure macOS Security Clipboard Privacy
  • Technology

Apple’s Secret “ACDC” Project: Building Its Own Cloud & Renting Servers with Custom Chips

Do Son July 5, 2025 0
Read More Read more about Apple’s Secret “ACDC” Project: Building Its Own Cloud & Renting Servers with Custom Chips
HPE Completes $14B Juniper Networks Acquisition, Doubles Networking Business & Boosts AI Portfolio Juniper vLWC Vulnerability Default Password Exploit HPE, Juniper Networks CVE-2024-21611 & CVE-2024-21591 - CVE-2025-21589
  • Technology

HPE Completes $14B Juniper Networks Acquisition, Doubles Networking Business & Boosts AI Portfolio

Do Son July 5, 2025 0
Read More Read more about HPE Completes $14B Juniper Networks Acquisition, Doubles Networking Business & Boosts AI Portfolio
Samsung’s Tri-Fold “Galaxy G Fold” May Debut at Galaxy Unpacked 2025 Galaxy S26 Dimensions S26 Battery Upgrade Samsung Galaxy AI, AI Diversification Samsung Galaxy Z Flip7, Foldable Smartphone Samsung Foldable, Galaxy Z Fold7 Samsung Tri-Fold, Galaxy G Fold
  • Android

Samsung’s Tri-Fold “Galaxy G Fold” May Debut at Galaxy Unpacked 2025

Do Son July 5, 2025 0
Read More Read more about Samsung’s Tri-Fold “Galaxy G Fold” May Debut at Galaxy Unpacked 2025
CVE-2025-53367: DjVuLibre Vulnerability Opens Path to Linux Desktop Code Execution, PoC Available! DjVuLibre, Remote Code Execution
  • Vulnerability Report

CVE-2025-53367: DjVuLibre Vulnerability Opens Path to Linux Desktop Code Execution, PoC Available!

Do Son July 5, 2025 0
Read More Read more about CVE-2025-53367: DjVuLibre Vulnerability Opens Path to Linux Desktop Code Execution, PoC Available!
RondoDox: Sophisticated Botnet Exploits TBK DVRs & Four-Faith Routers for DDoS Attacks RondoDox Botnet, DDoS Extortion
  • Malware
  • Vulnerability Report

RondoDox: Sophisticated Botnet Exploits TBK DVRs & Four-Faith Routers for DDoS Attacks

Do Son July 5, 2025 0
Read More Read more about RondoDox: Sophisticated Botnet Exploits TBK DVRs & Four-Faith Routers for DDoS Attacks
Why Mobile Proxies Are a Must-Have Tool in 2025 CVE-2023-49606
  • Technique

Why Mobile Proxies Are a Must-Have Tool in 2025

Do Son July 4, 2025 0
Read More Read more about Why Mobile Proxies Are a Must-Have Tool in 2025
Next.js Flaw (CVE-2025-49826, CVSS 7.5): Cache Poisoning Leads to Denial-of-Service CVE-2024-56332 - CVE-2025-29927 Next.js, Cache Poisoning
  • Vulnerability Report

Next.js Flaw (CVE-2025-49826, CVSS 7.5): Cache Poisoning Leads to Denial-of-Service

Do Son July 4, 2025 0
Read More Read more about Next.js Flaw (CVE-2025-49826, CVSS 7.5): Cache Poisoning Leads to Denial-of-Service
Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited Microsoft Edge, Zero-Day Vulnerability
  • Vulnerability Report

Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited

Do Son July 4, 2025 0
Read More Read more about Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited
PHP Flaws: CVE-2025-1735 (SQLi/Crash) & CVE-2025-6491 (SOAP DoS) Threaten PHP Apps PHP Vulnerabilities, SQLi DoS CVE-2024-8932 & CVE-2024-8929
  • Vulnerability Report

PHP Flaws: CVE-2025-1735 (SQLi/Crash) & CVE-2025-6491 (SOAP DoS) Threaten PHP Apps

Do Son July 4, 2025 0
Read More Read more about PHP Flaws: CVE-2025-1735 (SQLi/Crash) & CVE-2025-6491 (SOAP DoS) Threaten PHP Apps
CIEE Data Breach Exposes 248K Brazilian Records: Medical Reports, CVs, & Videos Leaked from Google Cloud CIEE Data Breach, Cloud Misconfiguration
  • Data Leak

CIEE Data Breach Exposes 248K Brazilian Records: Medical Reports, CVs, & Videos Leaked from Google Cloud

Do Son July 4, 2025 0
Read More Read more about CIEE Data Breach Exposes 248K Brazilian Records: Medical Reports, CVs, & Videos Leaked from Google Cloud
Apache Under Attack: Critical RCE Flaws in Tomcat & Camel Spark Thousands of Exploit Attempts hackerbot-claw campaign Cisco RCE Exploit CVE-2026-20045 SonicWall VPN, Akira Ransomware Nobelium Apache Tomcat, Apache Camel
  • Vulnerability Report

Apache Under Attack: Critical RCE Flaws in Tomcat & Camel Spark Thousands of Exploit Attempts

Do Son July 4, 2025 0
Read More Read more about Apache Under Attack: Critical RCE Flaws in Tomcat & Camel Spark Thousands of Exploit Attempts
Critical HIKVISION applyCT Flaw (CVE-2025-34067, CVSS 10.0): Unauthenticated RCE Via Fastjson HIKVISION applyCT, Unauthenticated RCE
  • Vulnerability Report

Critical HIKVISION applyCT Flaw (CVE-2025-34067, CVSS 10.0): Unauthenticated RCE Via Fastjson

Do Son July 4, 2025 0
Read More Read more about Critical HIKVISION applyCT Flaw (CVE-2025-34067, CVSS 10.0): Unauthenticated RCE Via Fastjson
Stealthy WordPress Malware Uncovered: SEO Spam Plugin Mimics Your Domain to Evade Detection WordPress Malware, SEO Spam
  • Malware

Stealthy WordPress Malware Uncovered: SEO Spam Plugin Mimics Your Domain to Evade Detection

Do Son July 4, 2025 0
Read More Read more about Stealthy WordPress Malware Uncovered: SEO Spam Plugin Mimics Your Domain to Evade Detection
SCATTERED SPIDER Infiltrates Airlines: Ransomware, vCenter Hijacks, and Voice Phishing Unleashed SCATTERED SPIDER, ransomware
  • Cybercriminals

SCATTERED SPIDER Infiltrates Airlines: Ransomware, vCenter Hijacks, and Voice Phishing Unleashed

Do Son July 4, 2025 0
Read More Read more about SCATTERED SPIDER Infiltrates Airlines: Ransomware, vCenter Hijacks, and Voice Phishing Unleashed
Anthropic MCP Server Flaws: Path Traversal & Symlink Attacks Allow RCE Anthropic MCP, RCE Vulnerability
  • Vulnerability Report

Anthropic MCP Server Flaws: Path Traversal & Symlink Attacks Allow RCE

Do Son July 4, 2025 0
Read More Read more about Anthropic MCP Server Flaws: Path Traversal & Symlink Attacks Allow RCE
Apache APISIX Flaw (CVE-2025-46647): Token Issuer Bypass in OpenID Connect Allows Cross-Issuer Access Apache APISIX, OpenID Connect Vulnerability
  • Vulnerability Report

Apache APISIX Flaw (CVE-2025-46647): Token Issuer Bypass in OpenID Connect Allows Cross-Issuer Access

Do Son July 4, 2025 0
Read More Read more about Apache APISIX Flaw (CVE-2025-46647): Token Issuer Bypass in OpenID Connect Allows Cross-Issuer Access
Exposed JDWP Debug Ports Under Attack: Cryptominers Infiltrating Java Apps in Hours Exploit Jupyter Notebooks
  • Malware

Exposed JDWP Debug Ports Under Attack: Cryptominers Infiltrating Java Apps in Hours

Do Son July 4, 2025 0
Read More Read more about Exposed JDWP Debug Ports Under Attack: Cryptominers Infiltrating Java Apps in Hours
Critical Lucee Flaw (CVE-2025-34074, CVSS 9.4): Authenticated RCE Via Scheduled Task Abuse, Metasploit Module Out Lucee, Remote Code Execution
  • Vulnerability Report

Critical Lucee Flaw (CVE-2025-34074, CVSS 9.4): Authenticated RCE Via Scheduled Task Abuse, Metasploit Module Out

Do Son July 4, 2025 0
Read More Read more about Critical Lucee Flaw (CVE-2025-34074, CVSS 9.4): Authenticated RCE Via Scheduled Task Abuse, Metasploit Module Out
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intel📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-88771
    Remote code execution due to improper input validation that can allow an unauthenticated attacker to execute arbitrary commands.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 23, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-101354CVSS 9.4
    A security flaw has been discovered in FAST FAC1203R 20200116_2.0.4. The affected element is the function _tWlanTask of...
    📅 Updated: Sep 29, 2026
  • CVE-2026-102361CVSS 9.3
    mall4j through 4.0 contains a missing authentication vulnerability in the PUT /user/updatePwd endpoint that allows unauthenticated attackers to...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101264CVSS 9.4
    A vulnerability was determined in Ziroom ZHOME A0101 1.0.1.0. Impacted is an unknown function of the file /api/ZRnetwork/set_passwd....
    📅 Updated: Sep 28, 2026
  • CVE-2026-13214CVSS 9.8
    The OCPP 1.6 client in subsys/net/lib/ocpp/ocpp_j.c contains a stack buffer overflow in parse_getconfig_msg(). When handling a GetConfiguration request...
    📅 Updated: Sep 28, 2026
  • CVE-2026-49845CVSS 9.8
    SQL injection in Hive Metastore direct SQL partition-name resolution in Apache Hive before 4.2.1 on all platforms allows...
    📅 Updated: Sep 28, 2026
  • CVE-2026-55976CVSS 9.1
    Server-Side Request Forgery (SSRF) in Avro SerDe schema resolution in Apache Hive before 4.2.1 allows an authenticated remote...
    📅 Updated: Sep 28, 2026
  • CVE-2026-90048CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates...
    📅 Updated: Sep 28, 2026
  • CVE-2026-90049CVSS 9.3
    In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in...
    📅 Updated: Sep 28, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.