Skip to content
September 24, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2024-56529: mailcow Patches Session Fixation Vulnerability in Web Panel CVE-2024-56529 - CVE-2025-25198
  • Vulnerability

CVE-2024-56529: mailcow Patches Session Fixation Vulnerability in Web Panel

Do Son February 1, 2025 0
Read More Read more about CVE-2024-56529: mailcow Patches Session Fixation Vulnerability in Web Panel
Fake Game Hacks on YouTube Target Kids with Malware Fake Game Hacks
  • Malware

Fake Game Hacks on YouTube Target Kids with Malware

Do Son February 1, 2025 0
Read More Read more about Fake Game Hacks on YouTube Target Kids with Malware
CVE-2025-24480 (CVSS 9.8): Rockwell Automation Addresses Critical Flaw in FactoryTalk View ME Rockwell Automation Warning OT Security Rockwell SQLi, Industrial Safety DoS Verve Asset Manager API OT Privilege Escalation Rockwell NAT Router, Critical Auth Bypass Rockwell ICS Privilege Escalation, MSI Repair Attack CVE-2025-7353 Critical vulnerability, industrial control systems Rockwell vulnerability, ICS security Rockwell Arena, Memory Abuse Rockwell Automation, RCE Vulnerability CVE-2025-24479 and CVE-2025-24480 - CVE-2025-0477
  • Vulnerability

CVE-2025-24480 (CVSS 9.8): Rockwell Automation Addresses Critical Flaw in FactoryTalk View ME

Do Son February 1, 2025 0
Read More Read more about CVE-2025-24480 (CVSS 9.8): Rockwell Automation Addresses Critical Flaw in FactoryTalk View ME
Best Cloud Mining Platform in 2025, Easily Earn $30,000 Daily CVE-2024-55563 - transaction-relay jamming attack
  • Technique

Best Cloud Mining Platform in 2025, Easily Earn $30,000 Daily

Do Son February 1, 2025 0
Read More Read more about Best Cloud Mining Platform in 2025, Easily Earn $30,000 Daily
CVE-2024-55417: One-Click RCE Vulnerability in Voyager Admin Panel, No Patch CVE-2024-55417
  • Vulnerability

CVE-2024-55417: One-Click RCE Vulnerability in Voyager Admin Panel, No Patch

Do Son January 31, 2025 0
Read More Read more about CVE-2024-55417: One-Click RCE Vulnerability in Voyager Admin Panel, No Patch
Cyber Espionage and Influence: Unmasking APT28’s Tactics Sources and related content APT28 report
  • Cyber Security

Cyber Espionage and Influence: Unmasking APT28’s Tactics Sources and related content

Do Son January 31, 2025 0
Read More Read more about Cyber Espionage and Influence: Unmasking APT28’s Tactics Sources and related content
CVE-2024-7695: Moxa Patches Critical Denial-of-Service Vulnerability in PT Switches Moxa Hard-Coded Credentials, Critical JWT Bypass CVE-2024-9137 and CVE-2024-9139 - CVE-2024-12297 CVE-2024-7695 CVE-2024-9404 CVE-2024-12297 CVE-2025-0415
  • Vulnerability

CVE-2024-7695: Moxa Patches Critical Denial-of-Service Vulnerability in PT Switches

Do Son January 31, 2025 0
Read More Read more about CVE-2024-7695: Moxa Patches Critical Denial-of-Service Vulnerability in PT Switches
CVE-2024-53704 – Authentication Bypass in SonicOS: PoC Published CVE-2024-53704 PoC exploit
  • Vulnerability

CVE-2024-53704 – Authentication Bypass in SonicOS: PoC Published

Do Son January 30, 2025 0
Read More Read more about CVE-2024-53704 – Authentication Bypass in SonicOS: PoC Published
D-Link Patches Critical Remote Code Execution Vulnerability in DSL-3788 Router CVE-2024-57376 - DSL-3788 Router Vulnerability
  • Vulnerability

D-Link Patches Critical Remote Code Execution Vulnerability in DSL-3788 Router

Do Son January 30, 2025 0
Read More Read more about D-Link Patches Critical Remote Code Execution Vulnerability in DSL-3788 Router
Google Play Protect: Safeguarding Billions of Users in 2024 Google Play Protect
  • Android
  • Technology

Google Play Protect: Safeguarding Billions of Users in 2024

Do Son January 30, 2025 0
Read More Read more about Google Play Protect: Safeguarding Billions of Users in 2024
Zero-Day Alert: Mirai Botnet Exploiting Unpatched Zyxel CPE Vulnerability (CVE-2024-40891) Weaver E-cology RCE CVE-2026-22679 CVE-2026-20127 Cisco SD-WAN Exploitation AI-Driven Cyberattack ARXON Malware React Server Components Vulnerability CVE-2025-55182 FortiWeb Auth Bypass, Unauthenticated Admin Takeover RayInitiator Bootkit, LINE VIPER CVE-2025-59689 Department of the Treasury cybersecurity - CVE-2025-0108 PoC CVE-2025-31103 Dior Data Breach SK Telecom data breach, long-term intrusion
  • Vulnerability

Zero-Day Alert: Mirai Botnet Exploiting Unpatched Zyxel CPE Vulnerability (CVE-2024-40891)

Do Son January 30, 2025 0
Read More Read more about Zero-Day Alert: Mirai Botnet Exploiting Unpatched Zyxel CPE Vulnerability (CVE-2024-40891)
CVE-2024-23953 and CVE-2024-29869: Apache Hive Patches Two Important Security Flaws CVE-2024-23953 and CVE-2024-29869
  • Vulnerability

CVE-2024-23953 and CVE-2024-29869: Apache Hive Patches Two Important Security Flaws

Do Son January 30, 2025 0
Read More Read more about CVE-2024-23953 and CVE-2024-29869: Apache Hive Patches Two Important Security Flaws
Phorpiex Botnet Now Deploying LockBit Ransomware in Automated Attacks Phorpiex botnet Attack
  • Malware

Phorpiex Botnet Now Deploying LockBit Ransomware in Automated Attacks

Do Son January 30, 2025 0
Read More Read more about Phorpiex Botnet Now Deploying LockBit Ransomware in Automated Attacks
ISC Patches Two Vulnerabilities – CVE-2024-11187 and CVE-2024-12705 Kea DHCPv4 DoS, Hostname Validation CVE-2024-11187 and CVE-2024-12705
  • Vulnerability

ISC Patches Two Vulnerabilities – CVE-2024-11187 and CVE-2024-12705

Do Son January 30, 2025 0
Read More Read more about ISC Patches Two Vulnerabilities – CVE-2024-11187 and CVE-2024-12705
Phishing Alert: Cybercriminals Deploy SapphireRAT via Legal Notices SapphireRAT
  • Malware

Phishing Alert: Cybercriminals Deploy SapphireRAT via Legal Notices

Do Son January 30, 2025 0
Read More Read more about Phishing Alert: Cybercriminals Deploy SapphireRAT via Legal Notices
VMware Aria Operations Flaws Expose Credentials, Enable Privilege Escalation CVE-2025-22217 - CVE-2025-22218 Broadcom, VMware Licensing
  • Vulnerability

VMware Aria Operations Flaws Expose Credentials, Enable Privilege Escalation

Do Son January 30, 2025 0
Read More Read more about VMware Aria Operations Flaws Expose Credentials, Enable Privilege Escalation
Europol Smashing Cybercrime Hubs: Cracked & Nulled Taken Down Nulled Taken Down
  • Cyber Security

Europol Smashing Cybercrime Hubs: Cracked & Nulled Taken Down

Do Son January 30, 2025 0
Read More Read more about Europol Smashing Cybercrime Hubs: Cracked & Nulled Taken Down
China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed ScatterBrain - POISONPLUG.SHADOW
  • Malware

China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed

Do Son January 30, 2025 0
Read More Read more about China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed
FAQs About Game Server Hosting and Security Answered network-2402637_1280
  • Technique

FAQs About Game Server Hosting and Security Answered

Do Son January 30, 2025 0
Read More Read more about FAQs About Game Server Hosting and Security Answered
Aquabotv3: The Mirai-Based Botnet Exploiting CVE-2024-41710 for DDoS Attacks CVE-2025-23093 & CVE-2025-23094
  • Malware
  • Vulnerability

Aquabotv3: The Mirai-Based Botnet Exploiting CVE-2024-41710 for DDoS Attacks

Do Son January 30, 2025 0
Read More Read more about Aquabotv3: The Mirai-Based Botnet Exploiting CVE-2024-41710 for DDoS Attacks
DeepSeek’s Exposed Database Leaks Sensitive User Information DeepSeek database Leak
  • Data Leak

DeepSeek’s Exposed Database Leaks Sensitive User Information

Do Son January 30, 2025 0
Read More Read more about DeepSeek’s Exposed Database Leaks Sensitive User Information
DeepSeek R1: China’s Advanced AI Model Raises Security Concerns DeepSeek R1 Vulnerability
  • Vulnerability

DeepSeek R1: China’s Advanced AI Model Raises Security Concerns

Do Son January 30, 2025 0
Read More Read more about DeepSeek R1: China’s Advanced AI Model Raises Security Concerns
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-85102CVSS 9.8
    Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93616CVSS 9.8
    A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93952CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-32996CVSS 7.3
    A vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation.
    Admin intel📅 Updated: Sep 22, 2026
  • CVE-2026-7273CVSS 8.8
    A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a...
    CISA KEV📅 Added to KEV: Sep 21, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    📅 Updated: Sep 24, 2026
  • CVE-2026-78225CVSS 9.0
    A hardcoded cryptographic server key vulnerability exists in the deployer-ng Update Controller component of Wärtsilä FOS-Onboard.
    📅 Updated: Sep 24, 2026
  • CVE-2026-81855CVSS 9.1
    A hardcoded cryptographic client authentication key vulnerability exists in the robot testing framework component of Wärtsilä FOS-Onboard.
    📅 Updated: Sep 24, 2026
  • CVE-2026-54617CVSS 9.8
    GravitLauncher is an open-source Minecraft launcher based on sashok724's v3. Prior to 5.7.12, an unauthenticated remote actor can...
    📅 Updated: Sep 24, 2026
  • CVE-2025-59953CVSS 9.8
    LMDeploy is a toolkit for compressing, deploying, and serving large language models. Starting in version 0.9.1 and prior...
    📅 Updated: Sep 24, 2026
  • CVE-2026-54752CVSS 9.6
    NetBox Device Type Library is a collection of community-sourced device type definitions for import into NetBox. The validation...
    📅 Updated: Sep 24, 2026
  • CVE-2026-54626CVSS 9.8
    SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles....
    📅 Updated: Sep 24, 2026
  • CVE-2026-45140CVSS 9.8
    Chamilo LMS is an open-source learning management system. Prior to 2.0.1, Chamilo LMS allows an unauthenticated remote attacker...
    📅 Updated: Sep 24, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.