Skip to content
October 7, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2025-21589 (CVSS 9.8): Critical Authentication Bypass Flaw in Juniper Session Smart Routers Juniper vLWC Vulnerability Default Password Exploit HPE, Juniper Networks CVE-2024-21611 & CVE-2024-21591 - CVE-2025-21589
  • Vulnerability

CVE-2025-21589 (CVSS 9.8): Critical Authentication Bypass Flaw in Juniper Session Smart Routers

Do Son February 17, 2025 0
Read More Read more about CVE-2025-21589 (CVSS 9.8): Critical Authentication Bypass Flaw in Juniper Session Smart Routers
Earth Preta APT Group Evades Detection with Legitimate and Malicious Components Earth Preta APT Group
  • Cyber Security

Earth Preta APT Group Evades Detection with Legitimate and Malicious Components

Do Son February 17, 2025 0
Read More Read more about Earth Preta APT Group Evades Detection with Legitimate and Malicious Components
SonicWall Firewalls Under Attack: CVE-2024-53704 Exploited in the Wild, PoC Released CVE-2024-53704 vulnerability
  • Vulnerability

SonicWall Firewalls Under Attack: CVE-2024-53704 Exploited in the Wild, PoC Released

Do Son February 17, 2025 0
Read More Read more about SonicWall Firewalls Under Attack: CVE-2024-53704 Exploited in the Wild, PoC Released
AMD Patches Multi Vulnerabilities in Embedded Processors AMD AM5 platform support AMD Embedded Processors Vulnerabilities
  • Vulnerability

AMD Patches Multi Vulnerabilities in Embedded Processors

Do Son February 17, 2025 0
Read More Read more about AMD Patches Multi Vulnerabilities in Embedded Processors
CVE-2024-12562: Critical s2Member Pro Flaw Leaves Millions of WordPress Sites Vulnerable CVE-2024-12562
  • Vulnerability

CVE-2024-12562: Critical s2Member Pro Flaw Leaves Millions of WordPress Sites Vulnerable

Do Son February 17, 2025 0
Read More Read more about CVE-2024-12562: Critical s2Member Pro Flaw Leaves Millions of WordPress Sites Vulnerable
Storm-2372: Russian-Linked Hackers Exploit Device Code Phishing in Global Campaign Storm-2372
  • Cyber Security

Storm-2372: Russian-Linked Hackers Exploit Device Code Phishing in Global Campaign

Do Son February 17, 2025 0
Read More Read more about Storm-2372: Russian-Linked Hackers Exploit Device Code Phishing in Global Campaign
CVE-2025-24865 (CVSS 10): Critical mySCADA myPRO Flaw Allow Full System Takeover CVE-2025-24865
  • Vulnerability

CVE-2025-24865 (CVSS 10): Critical mySCADA myPRO Flaw Allow Full System Takeover

Do Son February 17, 2025 0
Read More Read more about CVE-2025-24865 (CVSS 10): Critical mySCADA myPRO Flaw Allow Full System Takeover
Black-Hat SEO Poisoning Indian Government and Financial Websites link
  • Cyber Security

Black-Hat SEO Poisoning Indian Government and Financial Websites

Do Son February 17, 2025 0
Read More Read more about Black-Hat SEO Poisoning Indian Government and Financial Websites
XCSSET Malware Returns with Enhanced Capabilities to Target macOS Users macOS malware 2024 XCSSET
  • Malware

XCSSET Malware Returns with Enhanced Capabilities to Target macOS Users

Do Son February 17, 2025 0
Read More Read more about XCSSET Malware Returns with Enhanced Capabilities to Target macOS Users
Google Pays $10,633 for YouTube Security Vulnerabilities YouTube vulnerabilities
  • Data Leak

Google Pays $10,633 for YouTube Security Vulnerabilities

Do Son February 17, 2025 0
Read More Read more about Google Pays $10,633 for YouTube Security Vulnerabilities
Microsoft Patches Windows Server 2025 Startup Error—Update KB5051987 Recommended Windows Server 2025 Accidental Upgrade Windows Server 2008 final support 2026, Premium Assurance expiration Windows Server, update bug Windows Server PPTP Vulnerability KB5051987 Hotpatching
  • Windows

Microsoft Patches Windows Server 2025 Startup Error—Update KB5051987 Recommended

Do Son February 17, 2025 0
Read More Read more about Microsoft Patches Windows Server 2025 Startup Error—Update KB5051987 Recommended
xAI’s Grok 3 Debut: Musk Challenges OpenAI AI coding, grok-code-fast-1 xAI Grok 3 Grok 4, AI Model Baby Grok, xAI for Kids
  • Technology

xAI’s Grok 3 Debut: Musk Challenges OpenAI

Do Son February 16, 2025 0
Read More Read more about xAI’s Grok 3 Debut: Musk Challenges OpenAI
CVE-2022-31631 (CVSS 9.1): Critical PHP Flaw Exposes Websites to SQL Injection Attacks CVE-2024-4577 - CVE-2022-31631
  • Vulnerability

CVE-2022-31631 (CVSS 9.1): Critical PHP Flaw Exposes Websites to SQL Injection Attacks

Do Son February 16, 2025 0
Read More Read more about CVE-2022-31631 (CVSS 9.1): Critical PHP Flaw Exposes Websites to SQL Injection Attacks
Russian Hackers Exploit Microsoft Device Code Authentication in Targeted Attacks Against M365 Accounts Device Code Authentication phishing
  • Cyber Security

Russian Hackers Exploit Microsoft Device Code Authentication in Targeted Attacks Against M365 Accounts

Do Son February 16, 2025 0
Read More Read more about Russian Hackers Exploit Microsoft Device Code Authentication in Targeted Attacks Against M365 Accounts
Metasploit-Ready: CVE-2025-1094 SQLi in PostgreSQL Exposes Systems to Remote Attacks PostgreSQL Vulnerabilities CVE-2026-2006 PostgreSQL, security update CVE-2023-5869 - CVE-2025-1094
  • Vulnerability

Metasploit-Ready: CVE-2025-1094 SQLi in PostgreSQL Exposes Systems to Remote Attacks

Do Son February 16, 2025 0
Read More Read more about Metasploit-Ready: CVE-2025-1094 SQLi in PostgreSQL Exposes Systems to Remote Attacks
Astaroth Phishing Kit Bypasses 2FA, Steals Accounts Astaroth Phishing Kit
  • Cyber Security

Astaroth Phishing Kit Bypasses 2FA, Steals Accounts

Do Son February 16, 2025 0
Read More Read more about Astaroth Phishing Kit Bypasses 2FA, Steals Accounts
SPAWNCHIMERA: New Malware Exploits Ivanti Zero-Day Flaw (CVE-2025-0282) SPAWNCHIMERA malware
  • Malware
  • Vulnerability

SPAWNCHIMERA: New Malware Exploits Ivanti Zero-Day Flaw (CVE-2025-0282)

Do Son February 16, 2025 0
Read More Read more about SPAWNCHIMERA: New Malware Exploits Ivanti Zero-Day Flaw (CVE-2025-0282)
North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage North Korea’s IT Worker Scam
  • Cyber Security

North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage

Do Son February 16, 2025 0
Read More Read more about North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage
AMD Patches High-Severity SMM Callout Flaw (CVE-2024-21924) in EPYC and Ryzen Threadripper Processors CVE-2022-23829 - CVE-2024-21924
  • Vulnerability

AMD Patches High-Severity SMM Callout Flaw (CVE-2024-21924) in EPYC and Ryzen Threadripper Processors

Do Son February 16, 2025 0
Read More Read more about AMD Patches High-Severity SMM Callout Flaw (CVE-2024-21924) in EPYC and Ryzen Threadripper Processors
Buffer Overflows Vulnerabilities: CISA & FBI Issue Urgent Warning Buffer Overflows Vulnerabilities
  • Vulnerability

Buffer Overflows Vulnerabilities: CISA & FBI Issue Urgent Warning

Do Son February 16, 2025 0
Read More Read more about Buffer Overflows Vulnerabilities: CISA & FBI Issue Urgent Warning
Mailcow Patches Password Reset Poisoning Vulnerability (CVE-2025-25198) CVE-2024-56529 - CVE-2025-25198
  • Vulnerability

Mailcow Patches Password Reset Poisoning Vulnerability (CVE-2025-25198)

Do Son February 16, 2025 0
Read More Read more about Mailcow Patches Password Reset Poisoning Vulnerability (CVE-2025-25198)
FINALDRAFT Malware Exploits Outlook Drafts for Covert Communication FINALDRAFT Malware
  • Malware

FINALDRAFT Malware Exploits Outlook Drafts for Covert Communication

Do Son February 16, 2025 0
Read More Read more about FINALDRAFT Malware Exploits Outlook Drafts for Covert Communication
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-105135CVSS 10.0
    A vulnerability has been found in InternLM MindSearch 0.1.0. This issue affects the function ExecutionAction.run of the file...
    📅 Updated: Oct 6, 2026
  • CVE-2026-106501CVSS 9.6
    Backstage is an open framework for building developer portals. Prior to 3.3.1, 3.4.1, 4.0.3 and 4.1.0, the @backstage/plugin-scaffolder-backend...
    📅 Updated: Oct 6, 2026
  • CVE-2026-55330CVSS 9.8
    In BluetoothCccHandlerCallbackImpl of bluetooth_ccc.cc, there is a possible use-after-free due to a logic error in the code. This...
    📅 Updated: Oct 6, 2026
  • CVE-2026-106417CVSS 9.6
    Integer overflow in Media in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to potentially execute arbitrary...
    📅 Updated: Oct 6, 2026
  • CVE-2026-106375CVSS 9.6
    Incomplete cleanup in Dawn in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to potentially execute arbitrary...
    📅 Updated: Oct 6, 2026
  • CVE-2026-106401CVSS 9.6
    Out of bounds write in Media in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to potentially...
    📅 Updated: Oct 6, 2026
  • CVE-2026-106372CVSS 9.6
    Incorrect authorization in UI in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to potentially execute arbitrary...
    📅 Updated: Oct 6, 2026
  • CVE-2026-106323CVSS 9.6
    Missing authorization in Chrome for iOS in Google Chrome on on iOS prior to 155.0.8059.39 allowed a remote...
    📅 Updated: Oct 6, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.