Skip to content
September 24, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
SonicWall Firewalls Under Attack: CVE-2024-53704 Exploited in the Wild, PoC Released CVE-2024-53704 vulnerability
  • Vulnerability

SonicWall Firewalls Under Attack: CVE-2024-53704 Exploited in the Wild, PoC Released

Do Son February 17, 2025 0
Read More Read more about SonicWall Firewalls Under Attack: CVE-2024-53704 Exploited in the Wild, PoC Released
AMD Patches Multi Vulnerabilities in Embedded Processors AMD AM5 platform support AMD Embedded Processors Vulnerabilities
  • Vulnerability

AMD Patches Multi Vulnerabilities in Embedded Processors

Do Son February 17, 2025 0
Read More Read more about AMD Patches Multi Vulnerabilities in Embedded Processors
CVE-2024-12562: Critical s2Member Pro Flaw Leaves Millions of WordPress Sites Vulnerable CVE-2024-12562
  • Vulnerability

CVE-2024-12562: Critical s2Member Pro Flaw Leaves Millions of WordPress Sites Vulnerable

Do Son February 17, 2025 0
Read More Read more about CVE-2024-12562: Critical s2Member Pro Flaw Leaves Millions of WordPress Sites Vulnerable
Storm-2372: Russian-Linked Hackers Exploit Device Code Phishing in Global Campaign Storm-2372
  • Cyber Security

Storm-2372: Russian-Linked Hackers Exploit Device Code Phishing in Global Campaign

Do Son February 17, 2025 0
Read More Read more about Storm-2372: Russian-Linked Hackers Exploit Device Code Phishing in Global Campaign
CVE-2025-24865 (CVSS 10): Critical mySCADA myPRO Flaw Allow Full System Takeover CVE-2025-24865
  • Vulnerability

CVE-2025-24865 (CVSS 10): Critical mySCADA myPRO Flaw Allow Full System Takeover

Do Son February 17, 2025 0
Read More Read more about CVE-2025-24865 (CVSS 10): Critical mySCADA myPRO Flaw Allow Full System Takeover
Black-Hat SEO Poisoning Indian Government and Financial Websites link
  • Cyber Security

Black-Hat SEO Poisoning Indian Government and Financial Websites

Do Son February 17, 2025 0
Read More Read more about Black-Hat SEO Poisoning Indian Government and Financial Websites
XCSSET Malware Returns with Enhanced Capabilities to Target macOS Users macOS malware 2024 XCSSET
  • Malware

XCSSET Malware Returns with Enhanced Capabilities to Target macOS Users

Do Son February 17, 2025 0
Read More Read more about XCSSET Malware Returns with Enhanced Capabilities to Target macOS Users
Google Pays $10,633 for YouTube Security Vulnerabilities YouTube vulnerabilities
  • Data Leak

Google Pays $10,633 for YouTube Security Vulnerabilities

Do Son February 17, 2025 0
Read More Read more about Google Pays $10,633 for YouTube Security Vulnerabilities
Microsoft Patches Windows Server 2025 Startup Error—Update KB5051987 Recommended Windows Server 2025 Accidental Upgrade Windows Server 2008 final support 2026, Premium Assurance expiration Windows Server, update bug Windows Server PPTP Vulnerability KB5051987 Hotpatching
  • Windows

Microsoft Patches Windows Server 2025 Startup Error—Update KB5051987 Recommended

Do Son February 17, 2025 0
Read More Read more about Microsoft Patches Windows Server 2025 Startup Error—Update KB5051987 Recommended
xAI’s Grok 3 Debut: Musk Challenges OpenAI AI coding, grok-code-fast-1 xAI Grok 3 Grok 4, AI Model Baby Grok, xAI for Kids
  • Technology

xAI’s Grok 3 Debut: Musk Challenges OpenAI

Do Son February 16, 2025 0
Read More Read more about xAI’s Grok 3 Debut: Musk Challenges OpenAI
CVE-2022-31631 (CVSS 9.1): Critical PHP Flaw Exposes Websites to SQL Injection Attacks CVE-2024-4577 - CVE-2022-31631
  • Vulnerability

CVE-2022-31631 (CVSS 9.1): Critical PHP Flaw Exposes Websites to SQL Injection Attacks

Do Son February 16, 2025 0
Read More Read more about CVE-2022-31631 (CVSS 9.1): Critical PHP Flaw Exposes Websites to SQL Injection Attacks
Russian Hackers Exploit Microsoft Device Code Authentication in Targeted Attacks Against M365 Accounts Device Code Authentication phishing
  • Cyber Security

Russian Hackers Exploit Microsoft Device Code Authentication in Targeted Attacks Against M365 Accounts

Do Son February 16, 2025 0
Read More Read more about Russian Hackers Exploit Microsoft Device Code Authentication in Targeted Attacks Against M365 Accounts
Metasploit-Ready: CVE-2025-1094 SQLi in PostgreSQL Exposes Systems to Remote Attacks PostgreSQL Vulnerabilities CVE-2026-2006 PostgreSQL, security update CVE-2023-5869 - CVE-2025-1094
  • Vulnerability

Metasploit-Ready: CVE-2025-1094 SQLi in PostgreSQL Exposes Systems to Remote Attacks

Do Son February 16, 2025 0
Read More Read more about Metasploit-Ready: CVE-2025-1094 SQLi in PostgreSQL Exposes Systems to Remote Attacks
Astaroth Phishing Kit Bypasses 2FA, Steals Accounts Astaroth Phishing Kit
  • Cyber Security

Astaroth Phishing Kit Bypasses 2FA, Steals Accounts

Do Son February 16, 2025 0
Read More Read more about Astaroth Phishing Kit Bypasses 2FA, Steals Accounts
SPAWNCHIMERA: New Malware Exploits Ivanti Zero-Day Flaw (CVE-2025-0282) SPAWNCHIMERA malware
  • Malware
  • Vulnerability

SPAWNCHIMERA: New Malware Exploits Ivanti Zero-Day Flaw (CVE-2025-0282)

Do Son February 16, 2025 0
Read More Read more about SPAWNCHIMERA: New Malware Exploits Ivanti Zero-Day Flaw (CVE-2025-0282)
North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage North Korea’s IT Worker Scam
  • Cyber Security

North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage

Do Son February 16, 2025 0
Read More Read more about North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage
AMD Patches High-Severity SMM Callout Flaw (CVE-2024-21924) in EPYC and Ryzen Threadripper Processors CVE-2022-23829 - CVE-2024-21924
  • Vulnerability

AMD Patches High-Severity SMM Callout Flaw (CVE-2024-21924) in EPYC and Ryzen Threadripper Processors

Do Son February 16, 2025 0
Read More Read more about AMD Patches High-Severity SMM Callout Flaw (CVE-2024-21924) in EPYC and Ryzen Threadripper Processors
Buffer Overflows Vulnerabilities: CISA & FBI Issue Urgent Warning Buffer Overflows Vulnerabilities
  • Vulnerability

Buffer Overflows Vulnerabilities: CISA & FBI Issue Urgent Warning

Do Son February 16, 2025 0
Read More Read more about Buffer Overflows Vulnerabilities: CISA & FBI Issue Urgent Warning
Mailcow Patches Password Reset Poisoning Vulnerability (CVE-2025-25198) CVE-2024-56529 - CVE-2025-25198
  • Vulnerability

Mailcow Patches Password Reset Poisoning Vulnerability (CVE-2025-25198)

Do Son February 16, 2025 0
Read More Read more about Mailcow Patches Password Reset Poisoning Vulnerability (CVE-2025-25198)
FINALDRAFT Malware Exploits Outlook Drafts for Covert Communication FINALDRAFT Malware
  • Malware

FINALDRAFT Malware Exploits Outlook Drafts for Covert Communication

Do Son February 16, 2025 0
Read More Read more about FINALDRAFT Malware Exploits Outlook Drafts for Covert Communication
CVE-2024-1709 and CVE-2023-48788: Exploits Fueling Russia’s BadPilot Campaign Seashell Blizzard - BadPilot campaign
  • Cyber Security
  • Vulnerability

CVE-2024-1709 and CVE-2023-48788: Exploits Fueling Russia’s BadPilot Campaign

Do Son February 16, 2025 0
Read More Read more about CVE-2024-1709 and CVE-2023-48788: Exploits Fueling Russia’s BadPilot Campaign
Fake ‘Adobe Drive X’ App Sneaks Through Microsoft Login to Steal Credentials Adobe Drive X
  • Cyber Security

Fake ‘Adobe Drive X’ App Sneaks Through Microsoft Login to Steal Credentials

Do Son February 16, 2025 0
Read More Read more about Fake ‘Adobe Drive X’ App Sneaks Through Microsoft Login to Steal Credentials
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-85102CVSS 9.8
    Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93616CVSS 9.8
    A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93952CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-32996CVSS 7.3
    A vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation.
    Admin intel📅 Updated: Sep 22, 2026
  • CVE-2026-7273CVSS 8.8
    A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a...
    CISA KEV📅 Added to KEV: Sep 21, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-19072CVSS 9.9
    Velociraptor stores the compiled VQL in the hunt object internally to avoid having to recompile the artifacts for...
    📅 Updated: Sep 24, 2026
  • CVE-2026-94097CVSS 10.0
    A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affects an unknown part of the file /www/cgi-bin/network_tools of...
    📅 Updated: Sep 24, 2026
  • CVE-2026-94003CVSS 10.0
    A vulnerability has been found in Comfast CF-N1-S 2.6.0.1. Impacted is the function get_css_path_from_uri of the file /cgi-bin/mbox-config...
    📅 Updated: Sep 24, 2026
  • CVE-2026-12227CVSS 9.8
    The Visual Composer Website Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up...
    📅 Updated: Sep 24, 2026
  • CVE-2026-78312CVSS 9.1
    Path Traversal in DIAEnergie. This issue affects DIAEnergie: before 1.11.00.022.
    📅 Updated: Sep 24, 2026
  • CVE-2026-78308CVSS 9.8
    Improper Authentication vulnerability in DIAEnergie allows Authentication Bypass. This issue affects DIAEnergie: before 1.11.00.022.
    📅 Updated: Sep 24, 2026
  • CVE-2026-84502CVSS 9.9
    A flaw was found in Red Hat Ansible Automation Platform's automation- controller. The Project scm_url field is not...
    📅 Updated: Sep 24, 2026
  • CVE-2026-84719CVSS 9.9
    A flaw was found in the Ansible Automation Platform automation-controller. When a WorkflowJobTemplate is copied, the deep-copy permission...
    📅 Updated: Sep 24, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.