Skip to content
October 10, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Unpatched Kubernetes Flaw Leaves Clusters Open to Exploitation: Researcher Unveils Command Injection Vulnerability Kubernetes_logo_without_workmark.svg
  • Vulnerability

Unpatched Kubernetes Flaw Leaves Clusters Open to Exploitation: Researcher Unveils Command Injection Vulnerability

Do Son August 15, 2024 0
Read More Read more about Unpatched Kubernetes Flaw Leaves Clusters Open to Exploitation: Researcher Unveils Command Injection Vulnerability
EastWind Campaign: New CloudSorcerer Attacks Target Russian Gov Using APT31 and APT27 Tactics APT31 & APT27 in EastWind campaign
  • Cyber Security
  • Malware

EastWind Campaign: New CloudSorcerer Attacks Target Russian Gov Using APT31 and APT27 Tactics

Do Son August 15, 2024 0
Read More Read more about EastWind Campaign: New CloudSorcerer Attacks Target Russian Gov Using APT31 and APT27 Tactics
CISA Warns of Active Exploitation in SolarWinds Web Help Desk Vulnerability CVE-2024-28986 exploitation SolarWinds Web Help Desk Linux Vulnerability CVE-2024-53197
  • Vulnerability

CISA Warns of Active Exploitation in SolarWinds Web Help Desk Vulnerability

Do Son August 15, 2024 0
Read More Read more about CISA Warns of Active Exploitation in SolarWinds Web Help Desk Vulnerability
CVE-2024-43360: SQLi Flaw Discovered in Popular Surveillance Software ZoneMinder zoneminder - CVE-2024-43360
  • Vulnerability

CVE-2024-43360: SQLi Flaw Discovered in Popular Surveillance Software ZoneMinder

Do Son August 15, 2024 0
Read More Read more about CVE-2024-43360: SQLi Flaw Discovered in Popular Surveillance Software ZoneMinder
Last Mile Reassembly Attacks Bypass Leading Secure Web Gateways Last Mile Reassembly Attacks
  • Vulnerability

Last Mile Reassembly Attacks Bypass Leading Secure Web Gateways

Do Son August 15, 2024 0
Read More Read more about Last Mile Reassembly Attacks Bypass Leading Secure Web Gateways
CVE-2024-33533 to 33536: Zimbra Users at Risk of XSS and LFI Attacks CVE-2024-33533, CVE-2024-33535, and CVE-2024-33536
  • Vulnerability

CVE-2024-33533 to 33536: Zimbra Users at Risk of XSS and LFI Attacks

Do Son August 15, 2024 0
Read More Read more about CVE-2024-33533 to 33536: Zimbra Users at Risk of XSS and LFI Attacks
Beyond Firewalls: NCSC Explores Cyber Deception’s Potential Active Cyber Defence 2.0
  • Technology

Beyond Firewalls: NCSC Explores Cyber Deception’s Potential

Do Son August 15, 2024 0
Read More Read more about Beyond Firewalls: NCSC Explores Cyber Deception’s Potential
Apple Breaks the Mold: iPhone NFC Opens to Third-Party Payments iPhone NFC chip
  • Technology

Apple Breaks the Mold: iPhone NFC Opens to Third-Party Payments

Do Son August 15, 2024 0
Read More Read more about Apple Breaks the Mold: iPhone NFC Opens to Third-Party Payments
Windows TCP/IP Vulnerability CVE-2024-38063: Researchers Hold Back Exploit Details Due to High Risk CVE-2024-38063 exploit
  • Vulnerability

Windows TCP/IP Vulnerability CVE-2024-38063: Researchers Hold Back Exploit Details Due to High Risk

Do Son August 14, 2024 0
Read More Read more about Windows TCP/IP Vulnerability CVE-2024-38063: Researchers Hold Back Exploit Details Due to High Risk
CVE-2024-42479 (CVSS 10) in Popular Python Package llama_cpp_python Exposes Millions to RCE llama
  • Vulnerability

CVE-2024-42479 (CVSS 10) in Popular Python Package llama_cpp_python Exposes Millions to RCE

Do Son August 14, 2024 0
Read More Read more about CVE-2024-42479 (CVSS 10) in Popular Python Package llama_cpp_python Exposes Millions to RCE
Bypassing Windows Hello: Shwmae Tool Debuts at DEF CON 32 bypassing Windows Hello
  • Vulnerability

Bypassing Windows Hello: Shwmae Tool Debuts at DEF CON 32

Do Son August 14, 2024 0
Read More Read more about Bypassing Windows Hello: Shwmae Tool Debuts at DEF CON 32
Palo Alto Networks Issues Security Advisories, Urges Updates Amidst 34 Vulnerabilities PAN-OS IKEv2 Buffer Overflow CVE-2026-0263 Palo Alto Cortex XDR Privilege Escalation Palo Alto Networks Vulnerability CVE-2026-0229 PAN-OS Vulnerability CVE-2026-0227 CVE-2024-5914 - Palo Alto Networks - CVE-2025-0108 & CVE-2025-0110
  • Vulnerability

Palo Alto Networks Issues Security Advisories, Urges Updates Amidst 34 Vulnerabilities

Do Son August 14, 2024 0
Read More Read more about Palo Alto Networks Issues Security Advisories, Urges Updates Amidst 34 Vulnerabilities
Adobe Issues Critical Security Updates for Commerce and Magento Platforms PolyShell Magento RCE Magento PolyShell REST API RCE CosmicSting (CVE-2024-34102) Magento Security Updates
  • Vulnerability

Adobe Issues Critical Security Updates for Commerce and Magento Platforms

Do Son August 14, 2024 0
Read More Read more about Adobe Issues Critical Security Updates for Commerce and Magento Platforms
RansomEXX Group Exploits Jenkins Vulnerability (CVE-2024-23897) in Major Indian Banking Attack fig4Ransom_Note
  • Cyber Security
  • Vulnerability

RansomEXX Group Exploits Jenkins Vulnerability (CVE-2024-23897) in Major Indian Banking Attack

Do Son August 14, 2024 0
Read More Read more about RansomEXX Group Exploits Jenkins Vulnerability (CVE-2024-23897) in Major Indian Banking Attack
CISA Warns Critical Vulnerabilities in Vonets WiFi Bridge Devices, No Patch Available Vonets WiFi Bridge Inaba Denki Sangyo Wi-Fi vulnerability
  • Vulnerability

CISA Warns Critical Vulnerabilities in Vonets WiFi Bridge Devices, No Patch Available

Do Son August 14, 2024 0
Read More Read more about CISA Warns Critical Vulnerabilities in Vonets WiFi Bridge Devices, No Patch Available
GitHub’s August Nightmare: Multiple Disruptions Lead to Global Outage GitHub Copilot Pro trial suspension GitHub Actions Platform Fee, Self-Hosted Runner Tax 2026 GitHub Apple ID, Privacy Login GitHub Microsoft Github disruptions CVE-2025-30066 GitHub Outage, Service Disruption
  • Technology

GitHub’s August Nightmare: Multiple Disruptions Lead to Global Outage

Do Son August 14, 2024 0
Read More Read more about GitHub’s August Nightmare: Multiple Disruptions Lead to Global Outage
CVE-2024-36877 in MSI Motherboards Opens Door to Code Execution Attacks, PoC Published CVE-2024-36877 - msi bios update
  • Vulnerability

CVE-2024-36877 in MSI Motherboards Opens Door to Code Execution Attacks, PoC Published

Do Son August 14, 2024 0
Read More Read more about CVE-2024-36877 in MSI Motherboards Opens Door to Code Execution Attacks, PoC Published
Mad Liberator Ransomware Group Exploits Anydesk to Steal Data in Stealthy Attacks Mad Liberator ransomware group
  • Cyber Security
  • Malware

Mad Liberator Ransomware Group Exploits Anydesk to Steal Data in Stealthy Attacks

Do Son August 14, 2024 0
Read More Read more about Mad Liberator Ransomware Group Exploits Anydesk to Steal Data in Stealthy Attacks
CVE-2024-39091: Critical Vulnerability in MIPC Camera Framework Puts Millions at Risk CVE-2024-39091 - MIPC camera framework
  • Vulnerability

CVE-2024-39091: Critical Vulnerability in MIPC Camera Framework Puts Millions at Risk

Do Son August 14, 2024 0
Read More Read more about CVE-2024-39091: Critical Vulnerability in MIPC Camera Framework Puts Millions at Risk
Unlocking Online Privacy: A Deep Dive into Proxies CVE-2023-49606
  • Technique

Unlocking Online Privacy: A Deep Dive into Proxies

Do Son August 14, 2024 0
Read More Read more about Unlocking Online Privacy: A Deep Dive into Proxies
Web-Check: The Ultimate Toolkit for Website Analysis and Security Assessment Website Analysis
  • Open Source Tool

Web-Check: The Ultimate Toolkit for Website Analysis and Security Assessment

Do Son August 14, 2024 0
Read More Read more about Web-Check: The Ultimate Toolkit for Website Analysis and Security Assessment
ArtiPACKED: A New GitHub Actions Vulnerability Exposes Critical Credentials ArtiPACKED - GitHub Actions Vulnerability
  • Vulnerability

ArtiPACKED: A New GitHub Actions Vulnerability Exposes Critical Credentials

Do Son August 14, 2024 0
Read More Read more about ArtiPACKED: A New GitHub Actions Vulnerability Exposes Critical Credentials
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
πŸ“ˆ

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

πŸ›‘οΈ

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

πŸ™

GitHub Issues
Auto-create alert tickets without duplication.

πŸ“¬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

πŸ”€

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days β†’

🚨 Active Exploits in the Wild

  • CVE-2026-102255CVSS 10.0
    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2026-105133CVSS 6.9
    A vulnerability was detected in Ahsay AhsayCBS up to 10.3.2. This affects the function checkSysPwd of the file...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2023-22894CVSS 4.9
    Strapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2016-3081CVSS 8.1
    Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled,...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-3306CVSS 10.0
    The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-5477CVSS 7.5
    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2021-3199CVSS 9.8
    Directory traversal with remote code execution can occur in /upload in ONLYOFFICE Document Server before 5.6.3, when JWT...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-108551CVSS 9.3
    openapi-typescript-codegen through 0.31.0 contains a code injection vulnerability that allows attackers controlling an OpenAPI document to inject JavaScript...
    📅 Updated: Oct 10, 2026
  • CVE-2026-108549CVSS 9.2
    cc-connect through 1.5.0 contains a missing authentication vulnerability in the MAX platform adapter webhook mode in platform/max/max.go that...
    📅 Updated: Oct 10, 2026
  • CVE-2026-84272CVSS 9.8
    IBM Guardium Data Protection 12.1 and 12.2.2 are vulnerable to missing authentication in the edge-controller component. An unauthenticated...
    📅 Updated: Oct 10, 2026
  • CVE-2026-19491CVSS 9.1
    IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-78401CVSS 9.8
    IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-14991CVSS 9.8
    IBM DataPower Gateway 10.5.0.0 through 10.5.0.22, 10.6.1 through 10.6.6, 10.6.0.0 through 10.6.0.10, and 11.0.0.0 through 11.0.0.2 is vulnerable...
    📅 Updated: Oct 10, 2026
  • CVE-2026-16916CVSS 9.1
    IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93945CVSS 9.8
    Deserialization of Untrusted Data vulnerability in Axiomthemes Balance balance allows Object Injection.This issue affects Balance: from n/a through...
    📅 Updated: Oct 10, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
Β© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.