Skip to content
September 14, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Canonical Launches the Enterprise Store for Air-Gapped Networks Canonical Enterprise Store architecture diagram showing software distribution in air-gapped enterprise environments
  • Linux

Canonical Launches the Enterprise Store for Air-Gapped Networks

Do Son July 23, 2026 0
Read More Read more about Canonical Launches the Enterprise Store for Air-Gapped Networks
New 10-Inch Raspberry Pi Touch Display 2 Costs $80 Raspberry Pi Touch Display 2 in the 10-inch size showing its 1200x1920 portrait panel connected to a Raspberry Pi 5
  • Technology

New 10-Inch Raspberry Pi Touch Display 2 Costs $80

Do Son July 23, 2026 0
Read More Read more about New 10-Inch Raspberry Pi Touch Display 2 Costs $80
Dolphin X Stealer Sold on a Cybercrime Forum Uses an AI Profiler to Rank Victims Trojanized streaming site causing Packagist themes iOS spyware infections
  • Cybercriminals

Dolphin X Stealer Sold on a Cybercrime Forum Uses an AI Profiler to Rank Victims

Do Son July 23, 2026 0
Read More Read more about Dolphin X Stealer Sold on a Cybercrime Forum Uses an AI Profiler to Rank Victims
Google’s Nuvem Subsea Cable Links US and Portugal Nuvem subsea cable route linking Myrtle Beach South Carolina to Sines Portugal via Bermuda and the Azores with 384 Tbps capacity
  • Technology

Google’s Nuvem Subsea Cable Links US and Portugal

Do Son July 23, 2026 0
Read More Read more about Google’s Nuvem Subsea Cable Links US and Portugal
Apple Patches Hide My Email Vulnerability at Last Hide My Email vulnerability in Apple iCloud+ exposing real email addresses behind randomly generated forwarding aliases
  • Vulnerability Report

Apple Patches Hide My Email Vulnerability at Last

Do Son July 23, 2026 0
Read More Read more about Apple Patches Hide My Email Vulnerability at Last
GitHub Overhauls Bug Bounty Program with New VIP Tier GitHub bug bounty program restructuring flowchart, VIP security researcher reward tiers
  • Technology

GitHub Overhauls Bug Bounty Program with New VIP Tier

Do Son July 23, 2026 0
Read More Read more about GitHub Overhauls Bug Bounty Program with New VIP Tier
GST Phishing Campaign Distributes Remcos RAT Malware DPRK IT Workers, APT38 Crypto Forfeiture
  • Malware

GST Phishing Campaign Distributes Remcos RAT Malware

Do Son July 23, 2026 0
Read More Read more about GST Phishing Campaign Distributes Remcos RAT Malware
Google Enhances iOS to Android Migration Tool Upgraded Google iOS to Android migration tool interface displaying eSIM data transfer options
  • Android

Google Enhances iOS to Android Migration Tool

Do Son July 23, 2026 0
Read More Read more about Google Enhances iOS to Android Migration Tool
HelloNet Campaign Abuses ViPNet Update System to Hit Russian Firms HelloNet campaign malware delivered through the ViPNet update system on a Russian workstation
  • Cybercriminals

HelloNet Campaign Abuses ViPNet Update System to Hit Russian Firms

Do Son July 23, 2026 0
Read More Read more about HelloNet Campaign Abuses ViPNet Update System to Hit Russian Firms
DoNot APT Targets Bangladesh Military With a Fake Officer Biography CRussian Market, "Fly" (Flyded) hange Healthcare Cyberattack - CVE-2024-50603 Exploit
  • Cybercriminals

DoNot APT Targets Bangladesh Military With a Fake Officer Biography

Do Son July 23, 2026 0
Read More Read more about DoNot APT Targets Bangladesh Military With a Fake Officer Biography
GitHub Actions Abuse Powers a Distributed cPanel and WHM Attack Campaign WhatsApp Worm, Brazilian Banking Trojan LAPSUS$ Alliance, Scattered Spider Ransomware, Cybercrime RedCurl APT group Russian Cyberespionage, ApolloShadow Malware
  • Cybercriminals

GitHub Actions Abuse Powers a Distributed cPanel and WHM Attack Campaign

Do Son July 23, 2026 0
Read More Read more about GitHub Actions Abuse Powers a Distributed cPanel and WHM Attack Campaign
ISC Patches 9 BIND 9 Vulnerabilities, Including a DNSSEC Cache Poisoning Flaw BIND vulnerability advisory chart listing nine DNSSEC flaws including CVE-2026-13321 cache poisoning fixed in BIND 9.20.26 and 9.21.24
  • Vulnerability Report

ISC Patches 9 BIND 9 Vulnerabilities, Including a DNSSEC Cache Poisoning Flaw

Do Son July 23, 2026 0
Read More Read more about ISC Patches 9 BIND 9 Vulnerabilities, Including a DNSSEC Cache Poisoning Flaw
600K Sites at Risk: Ninja Forms Stored XSS Flaw CVE-2026-65048 Hits CVSS 9.3 Ninja Forms vulnerability dashboard showing CVE-2026-65048 unauthenticated stored XSS with a CVSS 9.3 score across 600K WordPress sites
  • Vulnerability Report

600K Sites at Risk: Ninja Forms Stored XSS Flaw CVE-2026-65048 Hits CVSS 9.3

Do Son July 23, 2026 0
Read More Read more about 600K Sites at Risk: Ninja Forms Stored XSS Flaw CVE-2026-65048 Hits CVSS 9.3
RefluXFS CVE-2026-64600: XFS Root Privilege Escalation Hits 16.4M Systems RefluXFS CVE-2026-64600 XFS privilege escalation to root diagram showing a reflink direct-I/O race overwriting a protected file across 16.4 million Linux systems
  • Vulnerability Report

RefluXFS CVE-2026-64600: XFS Root Privilege Escalation Hits 16.4M Systems

Do Son July 22, 2026 0
Read More Read more about RefluXFS CVE-2026-64600: XFS Root Privilege Escalation Hits 16.4M Systems
Check Point SmartConsole Auth Bypass CVE-2026-16232 Exploited in the Wild Check Point SmartConsole authentication bypass CVE-2026-16232 exploited in the wild against internet-exposed Management servers
  • Vulnerability Report

Check Point SmartConsole Auth Bypass CVE-2026-16232 Exploited in the Wild

Do Son July 22, 2026 0
Read More Read more about Check Point SmartConsole Auth Bypass CVE-2026-16232 Exploited in the Wild
Exim Directory Traversal Flaw Enables Privilege Escalation, Fixed in 4.99.5 Exim vulnerability diagram showing a directory traversal that escapes the spool area and leads to local privilege escalation
  • Vulnerability Report

Exim Directory Traversal Flaw Enables Privilege Escalation, Fixed in 4.99.5

Do Son July 22, 2026 0
Read More Read more about Exim Directory Traversal Flaw Enables Privilege Escalation, Fixed in 4.99.5
Public PoC Exploit Exposes CVE-2026-44421 FreeRDP Heap Buffer Overflow to Remote Code Execution FreeRDP heap buffer overflow vulnerability CVE-2026-44421 CVE-2026-44422 CVE-2026-40033 diagram
  • Vulnerability Report

Public PoC Exploit Exposes CVE-2026-44421 FreeRDP Heap Buffer Overflow to Remote Code Execution

Do Son July 22, 2026 0
Read More Read more about Public PoC Exploit Exposes CVE-2026-44421 FreeRDP Heap Buffer Overflow to Remote Code Execution
Spirals Ransomware Encrypts a South Asian IT Network in Under 24 Hours Spirals ransomware double extortion attack chain from IIS web shell to network encryption
  • Malware

Spirals Ransomware Encrypts a South Asian IT Network in Under 24 Hours

Do Son July 22, 2026 0
Read More Read more about Spirals Ransomware Encrypts a South Asian IT Network in Under 24 Hours
Starland RAT Campaign by Russian-Speaking Actor UAT-11795 Targets Crypto Users in the US and Europe Kali365 phishing platform EmEditor Supply Chain Attack, WALSHAM INVESTMENTS LIMITED EggStreme, fileless malware North Korea Cybercrime, Remote IT Job Fraud RedDelta APT
  • Cybercriminals

Starland RAT Campaign by Russian-Speaking Actor UAT-11795 Targets Crypto Users in the US and Europe

Do Son July 22, 2026 0
Read More Read more about Starland RAT Campaign by Russian-Speaking Actor UAT-11795 Targets Crypto Users in the US and Europe
Public PoC Exploit Released for fastjson 1.2.83 Remote Code Execution Flaw fastjson RCE vulnerability in versions 1.2.68 to 1.2.83 with public PoC exploit code
  • Vulnerability Report

Public PoC Exploit Released for fastjson 1.2.83 Remote Code Execution Flaw

Do Son July 22, 2026 0
Read More Read more about Public PoC Exploit Released for fastjson 1.2.83 Remote Code Execution Flaw
FreePBX Vulnerabilities Enable Unauthenticated RCE and Administrator Takeover FreePBX vulnerabilities enabling unauthenticated RCE and administrator takeover in UCP and missedcall
  • Vulnerability Report

FreePBX Vulnerabilities Enable Unauthenticated RCE and Administrator Takeover

Do Son July 22, 2026 0
Read More Read more about FreePBX Vulnerabilities Enable Unauthenticated RCE and Administrator Takeover
AppViewX Arms Enterprise CLM Teams for Post-Quantum Migration and AI Adoption in Latest Product Release PR_AppViewX_Arms_Enterprise_CLM_Teams_for_Post-Qua_1784554988mVnZWmnLOX
  • Press Release

AppViewX Arms Enterprise CLM Teams for Post-Quantum Migration and AI Adoption in Latest Product Release

cybernewswire July 22, 2026 0
Read More Read more about AppViewX Arms Enterprise CLM Teams for Post-Quantum Migration and AI Adoption in Latest Product Release
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-57131CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to 4.6.58, praisonai.jobs.server.create_app mounts praisonai.jobs.router.create_router...
  • CVE-2026-57124CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to 4.6.59, the default UI...
  • CVE-2026-57127CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to 4.6.58, recipe serve installs...
  • CVE-2026-57123CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, ToolsMCPServer.run_sse and...
  • CVE-2026-57125CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to praisonai 4.6.59 and praisonaiagents...
  • CVE-2026-90937CVSS 9.9
    froxlor versions before 2.2.5 fail to validate newline characters in subdomain redirect...
  • CVE-2026-90919CVSS 9.8
    LightLLM through 1.2.0 contains a remote code execution vulnerability in the Config...
  • CVE-2026-90898CVSS 9.8
    Bifrost registers MCP clients through its management API. A stdio client is...
  • CVE-2026-90703CVSS 9.1
    A vulnerability has been found in D-Link DWR-M921 1.1.52. The affected element...
  • CVE-2026-90702CVSS 9.1
    A flaw has been found in D-Link DWR-M921 1.1.52. Impacted is the...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.