Skip to content
October 11, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Canonical Unveils ‘Everything LTS’: 12-Year Security for Custom Docker Images Canonical new ‘Everything LTS
  • Linux

Canonical Unveils ‘Everything LTS’: 12-Year Security for Custom Docker Images

Do Son June 26, 2024 0
Read More Read more about Canonical Unveils ‘Everything LTS’: 12-Year Security for Custom Docker Images
GitLab Releases Critical Updates to Address Multiple Vulnerabilities GitLab Security Update CVE-2025-7659 CVE-2024-5655 GitLab Vulnerabilities, XSS & Data Exposure
  • Vulnerability

GitLab Releases Critical Updates to Address Multiple Vulnerabilities

Do Son June 26, 2024 0
Read More Read more about GitLab Releases Critical Updates to Address Multiple Vulnerabilities
CVE-2024-5276 (CVSS 9.8): Critical SQLi Flaw in Fortra FileCatalyst Workflow, PoC Available CVE-2024-5276 PoC
  • Vulnerability

CVE-2024-5276 (CVSS 9.8): Critical SQLi Flaw in Fortra FileCatalyst Workflow, PoC Available

Do Son June 26, 2024 0
Read More Read more about CVE-2024-5276 (CVSS 9.8): Critical SQLi Flaw in Fortra FileCatalyst Workflow, PoC Available
Beyond Crypto: 8220 Gang Expands Arsenal with k4spreader k4spreader & 8220 Mining Gang
  • Cyber Security
  • Malware

Beyond Crypto: 8220 Gang Expands Arsenal with k4spreader

Do Son June 26, 2024 0
Read More Read more about Beyond Crypto: 8220 Gang Expands Arsenal with k4spreader
CISA Issues Warning on Actively Exploited Flaws in GeoServer, Linux Kernel, and Roundcube Webmail Linux Kernel exploitation
  • Vulnerability

CISA Issues Warning on Actively Exploited Flaws in GeoServer, Linux Kernel, and Roundcube Webmail

Do Son June 26, 2024 0
Read More Read more about CISA Issues Warning on Actively Exploited Flaws in GeoServer, Linux Kernel, and Roundcube Webmail
CVE-2024-38373: FreeRTOS-Plus-TCP Flaw Exposes Millions of IoT Devices to Critical Risk CVE-2024-38373
  • Vulnerability

CVE-2024-38373: FreeRTOS-Plus-TCP Flaw Exposes Millions of IoT Devices to Critical Risk

Do Son June 26, 2024 0
Read More Read more about CVE-2024-38373: FreeRTOS-Plus-TCP Flaw Exposes Millions of IoT Devices to Critical Risk
Critical Vulnerabilities in Progress WhatsUp Gold Demand Immediate Action Kemp LoadMaster flaws command injection remote execution Kemp LoadMaster Vulnerability WAF Bypass Technique Progress WhatsUp Gold Vulnerabilities
  • Vulnerability

Critical Vulnerabilities in Progress WhatsUp Gold Demand Immediate Action

Do Son June 26, 2024 0
Read More Read more about Critical Vulnerabilities in Progress WhatsUp Gold Demand Immediate Action
SpyMax – A New Android RAT Targeting Telegram Users SpyMax
  • Malware

SpyMax – A New Android RAT Targeting Telegram Users

Do Son June 26, 2024 0
Read More Read more about SpyMax – A New Android RAT Targeting Telegram Users
PoC Exploit Published for Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088) CVE-2024-30088 PoC exploit
  • Vulnerability

PoC Exploit Published for Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088)

Do Son June 25, 2024 0
Read More Read more about PoC Exploit Published for Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088)
CVE-2024-5806: MOVEit Transfer Vulnerability Under Active Exploit, PoC Published CVE-2024-5806 PoC exploit
  • Vulnerability

CVE-2024-5806: MOVEit Transfer Vulnerability Under Active Exploit, PoC Published

Do Son June 25, 2024 0
Read More Read more about CVE-2024-5806: MOVEit Transfer Vulnerability Under Active Exploit, PoC Published
Cybercriminals Target Singaporeans: Digital IDs Flood Dark Web Singapore Dark Web
  • Data Leak

Cybercriminals Target Singaporeans: Digital IDs Flood Dark Web

Do Son June 25, 2024 0
Read More Read more about Cybercriminals Target Singaporeans: Digital IDs Flood Dark Web
CVE-2024-5805: Critical SFTP Authentication Bypass Vulnerability in MOVEit Gateway CVE-2024-5805
  • Vulnerability

CVE-2024-5805: Critical SFTP Authentication Bypass Vulnerability in MOVEit Gateway

Do Son June 25, 2024 0
Read More Read more about CVE-2024-5805: Critical SFTP Authentication Bypass Vulnerability in MOVEit Gateway
SEOPress Plugin Alert: CVE-2024-5488 Flaw Exposes 300K Sites CVE-2024-5488
  • Vulnerability

SEOPress Plugin Alert: CVE-2024-5488 Flaw Exposes 300K Sites

Do Son June 25, 2024 0
Read More Read more about SEOPress Plugin Alert: CVE-2024-5488 Flaw Exposes 300K Sites
Beware of Word: Remcos RAT Lurks in Malicious Documents Remcos RAT campaign
  • Cyber Security
  • Malware

Beware of Word: Remcos RAT Lurks in Malicious Documents

Do Son June 25, 2024 0
Read More Read more about Beware of Word: Remcos RAT Lurks in Malicious Documents
StrelaStealer Malware Intensifies Attacks on European Email Users, Avoiding Russia StrelaStealer malware attacks - Phishing Scheme
  • Cyber Security
  • Malware

StrelaStealer Malware Intensifies Attacks on European Email Users, Avoiding Russia

Do Son June 25, 2024 0
Read More Read more about StrelaStealer Malware Intensifies Attacks on European Email Users, Avoiding Russia
WordPress Issues Urgent Security Update to Patch Multiple Vulnerabilities WordPress vulnerabilities TheGem, WordPress Vulnerability
  • Vulnerability

WordPress Issues Urgent Security Update to Patch Multiple Vulnerabilities

Do Son June 25, 2024 0
Read More Read more about WordPress Issues Urgent Security Update to Patch Multiple Vulnerabilities
Researcher Unveils PoC for Windows Bluetooth Service RCE Vulnerability CVE-2023-24871 PoC
  • Vulnerability

Researcher Unveils PoC for Windows Bluetooth Service RCE Vulnerability

Do Son June 24, 2024 0
Read More Read more about Researcher Unveils PoC for Windows Bluetooth Service RCE Vulnerability
Breaking News: Widespread WordPress Plugin Compromise in Active Supply Chain Attack WordPress Supply Chain Attack
  • Cyber Security
  • Vulnerability

Breaking News: Widespread WordPress Plugin Compromise in Active Supply Chain Attack

Do Son June 24, 2024 0
Read More Read more about Breaking News: Widespread WordPress Plugin Compromise in Active Supply Chain Attack
Wyze Cam v3 Urgent Update: Critical Vulnerability Grants Hackers Full Control CVE-2024-6246
  • Vulnerability

Wyze Cam v3 Urgent Update: Critical Vulnerability Grants Hackers Full Control

Do Son June 24, 2024 0
Read More Read more about Wyze Cam v3 Urgent Update: Critical Vulnerability Grants Hackers Full Control
New North Korean Backdoor ‘Niki’ Targets Aerospace and Defense Sectors Niki backdoor
  • Cyber Security
  • Malware

New North Korean Backdoor ‘Niki’ Targets Aerospace and Defense Sectors

Do Son June 24, 2024 0
Read More Read more about New North Korean Backdoor ‘Niki’ Targets Aerospace and Defense Sectors
CVE-2024-29868 in Popular IoT Toolbox StreamPipes Opens Door to Account Takeovers CVE-2024-29868 Apache StreamPipes, CVE-2025-47411
  • Vulnerability

CVE-2024-29868 in Popular IoT Toolbox StreamPipes Opens Door to Account Takeovers

Do Son June 24, 2024 0
Read More Read more about CVE-2024-29868 in Popular IoT Toolbox StreamPipes Opens Door to Account Takeovers
Bludit CMS Faces Critical Security Vulnerabilities: RCE and More, No Patch Available Bludit Vulnerability
  • Vulnerability

Bludit CMS Faces Critical Security Vulnerabilities: RCE and More, No Patch Available

Do Son June 24, 2024 0
Read More Read more about Bludit CMS Faces Critical Security Vulnerabilities: RCE and More, No Patch Available
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-102255CVSS 10.0
    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2026-105133CVSS 6.9
    A vulnerability was detected in Ahsay AhsayCBS up to 10.3.2. This affects the function checkSysPwd of the file...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2023-22894CVSS 4.9
    Strapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2016-3081CVSS 8.1
    Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled,...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-3306CVSS 10.0
    The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-5477CVSS 7.5
    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2021-3199CVSS 9.8
    Directory traversal with remote code execution can occur in /upload in ONLYOFFICE Document Server before 5.6.3, when JWT...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-97670CVSS 9.1
    The Avada (Fusion) Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and...
    📅 Updated: Oct 11, 2026
  • CVE-2026-94589CVSS 9.8
    The Extensions For CF7 (Contact form 7 Database, Conditional Fields and Redirection) plugin for WordPress is vulnerable to...
    📅 Updated: Oct 11, 2026
  • CVE-2026-107645CVSS 9.1
    The Blocksy Companion plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 2.1.58...
    📅 Updated: Oct 11, 2026
  • CVE-2026-104803CVSS 9.8
    The WPCOM Member plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including,...
    📅 Updated: Oct 11, 2026
  • CVE-2026-104801CVSS 9.1
    The PPOM – Product Addons & Custom Fields for WooCommerce plugin for WordPress is vulnerable to arbitrary file...
    📅 Updated: Oct 11, 2026
  • CVE-2026-104732CVSS 9.8
    The Advanced IP Blocker plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and...
    📅 Updated: Oct 11, 2026
  • CVE-2026-103889CVSS 9.8
    The 3D Product configurator for WooCommerce plugin for WordPress is vulnerable to Remote Code Execution in all versions...
    📅 Updated: Oct 11, 2026
  • CVE-2026-102628CVSS 9.2
    The Cadmos LTI application hosted at cadmos.eummena.io had Laravel debug mode enabled (APP_DEBUG=true, APP_ENV=local) in a publicly accessible...
    📅 Updated: Oct 11, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.