Skip to content
October 6, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
MerkSpy Spyware Campaign Exploits Microsoft Office Flaw MerkSpy Spyware
  • Cyber Security
  • Malware
  • Vulnerability

MerkSpy Spyware Campaign Exploits Microsoft Office Flaw

Do Son June 28, 2024 0
Read More Read more about MerkSpy Spyware Campaign Exploits Microsoft Office Flaw
TeamViewer Confirms Cyberattack by Notorious APT Group TeamViewer Cyberattack
  • Vulnerability

TeamViewer Confirms Cyberattack by Notorious APT Group

Do Son June 27, 2024 0
Read More Read more about TeamViewer Confirms Cyberattack by Notorious APT Group
Critical Supply Chain Breach: Beware of Trojanized Notezilla, RecentX, Copywhiz Installers Trojanized Notezilla
  • Cyber Security
  • Malware

Critical Supply Chain Breach: Beware of Trojanized Notezilla, RecentX, Copywhiz Installers

Do Son June 27, 2024 0
Read More Read more about Critical Supply Chain Breach: Beware of Trojanized Notezilla, RecentX, Copywhiz Installers
CVE-2024-2973 (CVSS 10): Juniper Session Smart Router Authentication Bypass Vulnerability CVE-2024-2973
  • Vulnerability

CVE-2024-2973 (CVSS 10): Juniper Session Smart Router Authentication Bypass Vulnerability

Do Son June 27, 2024 0
Read More Read more about CVE-2024-2973 (CVSS 10): Juniper Session Smart Router Authentication Bypass Vulnerability
PoC Released for Unauthenticated RCE Vulnerability in TP-Link VIGI NVR4032H Network Video Recorder TP-Link VIGI NVR4032H Vulnerability
  • Vulnerability

PoC Released for Unauthenticated RCE Vulnerability in TP-Link VIGI NVR4032H Network Video Recorder

Do Son June 27, 2024 0
Read More Read more about PoC Released for Unauthenticated RCE Vulnerability in TP-Link VIGI NVR4032H Network Video Recorder
UAC-0184’s XWorm RAT Campaign Targets Ukraine with Python and DLL Sideloading UAC-0184
  • Cyber Security
  • Malware

UAC-0184’s XWorm RAT Campaign Targets Ukraine with Python and DLL Sideloading

Do Son June 27, 2024 0
Read More Read more about UAC-0184’s XWorm RAT Campaign Targets Ukraine with Python and DLL Sideloading
Avaya IP Office Users Urged to Patch Critical Flaws (CVE-2024-4196 & CVE-2024-4197) CVE-2024-4196 & CVE-2024-4197
  • Vulnerability

Avaya IP Office Users Urged to Patch Critical Flaws (CVE-2024-4196 & CVE-2024-4197)

Do Son June 27, 2024 0
Read More Read more about Avaya IP Office Users Urged to Patch Critical Flaws (CVE-2024-4196 & CVE-2024-4197)
Malicious npm Package Exposes AWS Users to Backdoor Malicious AWS npm package
  • Malware

Malicious npm Package Exposes AWS Users to Backdoor

Do Son June 27, 2024 0
Read More Read more about Malicious npm Package Exposes AWS Users to Backdoor
Critical Vulnerabilities Uncovered in Rockwell Automation’s ThinManager: Immediate Action Required CVE-2024-5988 and CVE-2024-5989 Rockwell Automation vulnerability CVE-2018-1285
  • Vulnerability

Critical Vulnerabilities Uncovered in Rockwell Automation’s ThinManager: Immediate Action Required

Do Son June 27, 2024 0
Read More Read more about Critical Vulnerabilities Uncovered in Rockwell Automation’s ThinManager: Immediate Action Required
DBatLoader: A Malware Distribution via CMD Files DBatLoader malware
  • Malware

DBatLoader: A Malware Distribution via CMD Files

Do Son June 27, 2024 0
Read More Read more about DBatLoader: A Malware Distribution via CMD Files
Canonical Unveils ‘Everything LTS’: 12-Year Security for Custom Docker Images Canonical new ‘Everything LTS
  • Linux

Canonical Unveils ‘Everything LTS’: 12-Year Security for Custom Docker Images

Do Son June 26, 2024 0
Read More Read more about Canonical Unveils ‘Everything LTS’: 12-Year Security for Custom Docker Images
GitLab Releases Critical Updates to Address Multiple Vulnerabilities GitLab Security Update CVE-2025-7659 CVE-2024-5655 GitLab Vulnerabilities, XSS & Data Exposure
  • Vulnerability

GitLab Releases Critical Updates to Address Multiple Vulnerabilities

Do Son June 26, 2024 0
Read More Read more about GitLab Releases Critical Updates to Address Multiple Vulnerabilities
CVE-2024-5276 (CVSS 9.8): Critical SQLi Flaw in Fortra FileCatalyst Workflow, PoC Available CVE-2024-5276 PoC
  • Vulnerability

CVE-2024-5276 (CVSS 9.8): Critical SQLi Flaw in Fortra FileCatalyst Workflow, PoC Available

Do Son June 26, 2024 0
Read More Read more about CVE-2024-5276 (CVSS 9.8): Critical SQLi Flaw in Fortra FileCatalyst Workflow, PoC Available
Beyond Crypto: 8220 Gang Expands Arsenal with k4spreader k4spreader & 8220 Mining Gang
  • Cyber Security
  • Malware

Beyond Crypto: 8220 Gang Expands Arsenal with k4spreader

Do Son June 26, 2024 0
Read More Read more about Beyond Crypto: 8220 Gang Expands Arsenal with k4spreader
CISA Issues Warning on Actively Exploited Flaws in GeoServer, Linux Kernel, and Roundcube Webmail Linux Kernel exploitation
  • Vulnerability

CISA Issues Warning on Actively Exploited Flaws in GeoServer, Linux Kernel, and Roundcube Webmail

Do Son June 26, 2024 0
Read More Read more about CISA Issues Warning on Actively Exploited Flaws in GeoServer, Linux Kernel, and Roundcube Webmail
CVE-2024-38373: FreeRTOS-Plus-TCP Flaw Exposes Millions of IoT Devices to Critical Risk CVE-2024-38373
  • Vulnerability

CVE-2024-38373: FreeRTOS-Plus-TCP Flaw Exposes Millions of IoT Devices to Critical Risk

Do Son June 26, 2024 0
Read More Read more about CVE-2024-38373: FreeRTOS-Plus-TCP Flaw Exposes Millions of IoT Devices to Critical Risk
Critical Vulnerabilities in Progress WhatsUp Gold Demand Immediate Action Kemp LoadMaster flaws command injection remote execution Kemp LoadMaster Vulnerability WAF Bypass Technique Progress WhatsUp Gold Vulnerabilities
  • Vulnerability

Critical Vulnerabilities in Progress WhatsUp Gold Demand Immediate Action

Do Son June 26, 2024 0
Read More Read more about Critical Vulnerabilities in Progress WhatsUp Gold Demand Immediate Action
SpyMax – A New Android RAT Targeting Telegram Users SpyMax
  • Malware

SpyMax – A New Android RAT Targeting Telegram Users

Do Son June 26, 2024 0
Read More Read more about SpyMax – A New Android RAT Targeting Telegram Users
PoC Exploit Published for Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088) CVE-2024-30088 PoC exploit
  • Vulnerability

PoC Exploit Published for Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088)

Do Son June 25, 2024 0
Read More Read more about PoC Exploit Published for Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088)
CVE-2024-5806: MOVEit Transfer Vulnerability Under Active Exploit, PoC Published CVE-2024-5806 PoC exploit
  • Vulnerability

CVE-2024-5806: MOVEit Transfer Vulnerability Under Active Exploit, PoC Published

Do Son June 25, 2024 0
Read More Read more about CVE-2024-5806: MOVEit Transfer Vulnerability Under Active Exploit, PoC Published
Cybercriminals Target Singaporeans: Digital IDs Flood Dark Web Singapore Dark Web
  • Data Leak

Cybercriminals Target Singaporeans: Digital IDs Flood Dark Web

Do Son June 25, 2024 0
Read More Read more about Cybercriminals Target Singaporeans: Digital IDs Flood Dark Web
CVE-2024-5805: Critical SFTP Authentication Bypass Vulnerability in MOVEit Gateway CVE-2024-5805
  • Vulnerability

CVE-2024-5805: Critical SFTP Authentication Bypass Vulnerability in MOVEit Gateway

Do Son June 25, 2024 0
Read More Read more about CVE-2024-5805: Critical SFTP Authentication Bypass Vulnerability in MOVEit Gateway
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-105778CVSS 9.4
    A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unknown functionality of...
    📅 Updated: Oct 6, 2026
  • CVE-2026-94293CVSS 9.3
    An unauthenticated remote attacker can modify Asset Administration Shell submodel data via PATCH requests and can read all...
    📅 Updated: Oct 6, 2026
  • CVE-2026-56662CVSS 9.6
    GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that...
    📅 Updated: Oct 6, 2026
  • CVE-2026-51922CVSS 9.8
    agentscope v1.0.20 contains code injection in execute_shell_command (src/agentscope/tool/_coding/_shell.py). Depending on the exposed entry, an attacker can trigger attacker-controlled...
    📅 Updated: Oct 6, 2026
  • CVE-2026-51915CVSS 9.8
    TransformerOptimus SuperAGI v0.0.14 is vulnerable to Incorrect Access Control in the tool controller. In affected source snapshots, get_tool...
    📅 Updated: Oct 6, 2026
  • CVE-2026-51898CVSS 9.8
    sinaptik-ai pandas-ai 3.0.0 is vulnerable to Code Injection in CodeExecutor.execute.
    📅 Updated: Oct 6, 2026
  • CVE-2026-51906CVSS 9.1
    In TaskingAI v0.3.0 in the DALL-E 3 image generation tool save_url_image function, a path traversal vulnerability allows attackers...
    📅 Updated: Oct 6, 2026
  • CVE-2026-96659CVSS 9.1
    A flaw was found in Foreman. This vulnerability allows an authenticated user with low-level Viewer permissions to cause...
    📅 Updated: Oct 6, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.