Skip to content
September 14, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
TTF Trap Campaign Hides a Low-Detection Lua Loader Inside Fake TrueType Font Files FSB Center 16 targeting vulnerable routers across critical infrastructure via weak SNMP
  • Malware

TTF Trap Campaign Hides a Low-Detection Lua Loader Inside Fake TrueType Font Files

Do Son July 22, 2026 0
Read More Read more about TTF Trap Campaign Hides a Low-Detection Lua Loader Inside Fake TrueType Font Files
CVE-2026-60206 (CVSS 9.9): Takeover Flaw Hits Oracle WebLogic Server Oracle WebLogic Server vulnerability chart highlighting CVE-2026-60206 with a CVSS 9.9 score enabling unauthenticated server takeover
  • Vulnerability Report

CVE-2026-60206 (CVSS 9.9): Takeover Flaw Hits Oracle WebLogic Server

Do Son July 22, 2026 0
Read More Read more about CVE-2026-60206 (CVSS 9.9): Takeover Flaw Hits Oracle WebLogic Server
IRGC Claims Strike on AWS Bahrain Data Center AWS Bahrain data center region ME-South-1 marked unavailable after claimed Iranian cruise missile strike
  • Technology

IRGC Claims Strike on AWS Bahrain Data Center

Do Son July 22, 2026 0
Read More Read more about IRGC Claims Strike on AWS Bahrain Data Center
Daxin Malware Resurfaces in Taiwan Alongside New Stupig Backdoor North Korean hackers behind open-source supply chain attacks on axios, debug, and chalk NPM packages
  • Malware

Daxin Malware Resurfaces in Taiwan Alongside New Stupig Backdoor

Do Son July 22, 2026 0
Read More Read more about Daxin Malware Resurfaces in Taiwan Alongside New Stupig Backdoor
Firefox Native Containers Arrive in Version 153 Firefox native containers in Firefox 153 showing color-coded container tabs for work, banking and shopping
  • Technology

Firefox Native Containers Arrive in Version 153

Do Son July 22, 2026 0
Read More Read more about Firefox Native Containers Arrive in Version 153
Gafgyt Botnet Hijacks Langflow AI Servers for DDoS Attacks Gafgyt botnet Langflow DDoS attack infection chain diagram
  • Malware

Gafgyt Botnet Hijacks Langflow AI Servers for DDoS Attacks

Do Son July 22, 2026 0
Read More Read more about Gafgyt Botnet Hijacks Langflow AI Servers for DDoS Attacks
OkoBot Framework Uses 20+ Modules to Steal Cryptocurrency Wallet Seed Phrases OkoBot framework cryptocurrency wallet theft infection chain diagram
  • Malware

OkoBot Framework Uses 20+ Modules to Steal Cryptocurrency Wallet Seed Phrases

Do Son July 22, 2026 0
Read More Read more about OkoBot Framework Uses 20+ Modules to Steal Cryptocurrency Wallet Seed Phrases
AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore bsides-AI-startup-award-768x480_1784697958MrhztSKZNH
  • Press Release

AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore

cybernewswire July 22, 2026 0
Read More Read more about AccuKnox Wins Best AI Startup Award for Enterprise Agentic AI Security at BSides Bangalore
Anthropic AI Copyright Lawsuit Reaches Historic $1.5 Billion Resolution Anthropic AI copyright lawsuit litigation documents and digital library data visualization
  • Technology

Anthropic AI Copyright Lawsuit Reaches Historic $1.5 Billion Resolution

Do Son July 22, 2026 0
Read More Read more about Anthropic AI Copyright Lawsuit Reaches Historic $1.5 Billion Resolution
OpenAI Autonomous Agent Escapes Sandbox to Breach Hugging Face OpenAI agent escape network architecture diagram showing custom sandbox breakout and autonomous Hugging Face cyberattack path.
  • Vulnerability Report

OpenAI Autonomous Agent Escapes Sandbox to Breach Hugging Face

Do Son July 22, 2026 0
Read More Read more about OpenAI Autonomous Agent Escapes Sandbox to Breach Hugging Face
WSUS Sync Timeouts: Microsoft Issues a Cleanup Fix WSUS sync timeouts causing failed Windows Update scans on enterprise Windows Server update servers
  • Windows

WSUS Sync Timeouts: Microsoft Issues a Cleanup Fix

Do Son July 22, 2026 0
Read More Read more about WSUS Sync Timeouts: Microsoft Issues a Cleanup Fix
Google Chrome Update Patches 12 High-Severity Security Flaws Chrome security update patching 12 high-severity vulnerabilities in Chrome 150
  • Vulnerability Report

Google Chrome Update Patches 12 High-Severity Security Flaws

Do Son July 22, 2026 0
Read More Read more about Google Chrome Update Patches 12 High-Severity Security Flaws
Vitest Flaw Rated CVSS 9.4 Hits an npm Package With 65 Million Weekly Downloads Vitest vulnerability in Browser Mode bypassing the file-access permission gate (CVSS 9.4)
  • Vulnerability Report

Vitest Flaw Rated CVSS 9.4 Hits an npm Package With 65 Million Weekly Downloads

Do Son July 22, 2026 0
Read More Read more about Vitest Flaw Rated CVSS 9.4 Hits an npm Package With 65 Million Weekly Downloads
How to Manage ESRS Metrics for Secure, Audit-Ready CSRD Reporting ste6
  • Technique

How to Manage ESRS Metrics for Secure, Audit-Ready CSRD Reporting

Do Son July 22, 2026 0
Read More Read more about How to Manage ESRS Metrics for Secure, Audit-Ready CSRD Reporting
How to Edit and Improve Photos with AI Tools 1
  • Technique

How to Edit and Improve Photos with AI Tools

Do Son July 22, 2026 0
Read More Read more about How to Edit and Improve Photos with AI Tools
SolarWinds Patches 15 Critical Serv-U Vulnerabilities Enabling Root Access SolarWinds Serv-U vulnerabilities enabling privilege escalation and remote code execution as root
  • Vulnerability Report

SolarWinds Patches 15 Critical Serv-U Vulnerabilities Enabling Root Access

Do Son July 21, 2026 0
Read More Read more about SolarWinds Patches 15 Critical Serv-U Vulnerabilities Enabling Root Access
snap-confine Flaw CVE-2026-8933 Lets Any User Get Root on Ubuntu CVE-2026-8933 is a snap-confine privilege escalation flaw. It gives any user root on default Ubuntu Desktop 26.04, 25.10, and 24.04. Update snapd now. #snapconfine #CVE20268933 #Ubuntu #PrivilegeEscalation #LPE #Linux #Qualys
  • Vulnerability Report

snap-confine Flaw CVE-2026-8933 Lets Any User Get Root on Ubuntu

Do Son July 21, 2026 0
Read More Read more about snap-confine Flaw CVE-2026-8933 Lets Any User Get Root on Ubuntu
CISA Adds Four Exploited Vulnerabilities to Its KEV Catalog CISA KEV catalog adding four known exploited vulnerabilities including WordPress and Langflow RCE
  • Vulnerability Report

CISA Adds Four Exploited Vulnerabilities to Its KEV Catalog

Do Son July 21, 2026 0
Read More Read more about CISA Adds Four Exploited Vulnerabilities to Its KEV Catalog
TELEPUZ Malware Spreads Through ClickFix and VIDAR Attacks TELEPUZ malware infection chain from a ClickFix attack through VIDAR to modular payload delivery
  • Malware

TELEPUZ Malware Spreads Through ClickFix and VIDAR Attacks

Do Son July 21, 2026 0
Read More Read more about TELEPUZ Malware Spreads Through ClickFix and VIDAR Attacks
ASUS Patches Router and PC Software Flaws, Including a CVSS 9.5 Command Execution Bug ASUS security advisories router firmware vulnerability CVE-2026-13385 command execution
  • Vulnerability Report

ASUS Patches Router and PC Software Flaws, Including a CVSS 9.5 Command Execution Bug

Do Son July 21, 2026 0
Read More Read more about ASUS Patches Router and PC Software Flaws, Including a CVSS 9.5 Command Execution Bug
Public PoC Released for CVE-2026-42980 Windows Privilege Escalation Flaw CVE-2026-42980 Windows privilege escalation flaw in kernel WMI granting SYSTEM access
  • Vulnerability Report

Public PoC Released for CVE-2026-42980 Windows Privilege Escalation Flaw

Do Son July 21, 2026 0
Read More Read more about Public PoC Released for CVE-2026-42980 Windows Privilege Escalation Flaw
Three SQL Injection Flaws Patched in Apache Fineract Core Banking Platform Apache Fineract SQL injection vulnerability affecting Office, Client, and report APIs
  • Vulnerability Report

Three SQL Injection Flaws Patched in Apache Fineract Core Banking Platform

Do Son July 21, 2026 0
Read More Read more about Three SQL Injection Flaws Patched in Apache Fineract Core Banking Platform
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-57131CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to 4.6.58, praisonai.jobs.server.create_app mounts praisonai.jobs.router.create_router...
  • CVE-2026-57124CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to 4.6.59, the default UI...
  • CVE-2026-57127CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to 4.6.58, recipe serve installs...
  • CVE-2026-57123CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, ToolsMCPServer.run_sse and...
  • CVE-2026-57125CVSS 9.8
    PraisonAI is a multi-agent teams system. Prior to praisonai 4.6.59 and praisonaiagents...
  • CVE-2026-90937CVSS 9.9
    froxlor versions before 2.2.5 fail to validate newline characters in subdomain redirect...
  • CVE-2026-90919CVSS 9.8
    LightLLM through 1.2.0 contains a remote code execution vulnerability in the Config...
  • CVE-2026-90898CVSS 9.8
    Bifrost registers MCP clients through its management API. A stdio client is...
  • CVE-2026-90703CVSS 9.1
    A vulnerability has been found in D-Link DWR-M921 1.1.52. The affected element...
  • CVE-2026-90702CVSS 9.1
    A flaw has been found in D-Link DWR-M921 1.1.52. Impacted is the...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.