Skip to content
October 7, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2024-1538: Critical WordPress Plugin Flaw Exposes Over 1 Million Sites – Patch Immediately! CVE-2024-1538
  • Vulnerability

CVE-2024-1538: Critical WordPress Plugin Flaw Exposes Over 1 Million Sites – Patch Immediately!

Do Son March 25, 2024 0
Read More Read more about CVE-2024-1538: Critical WordPress Plugin Flaw Exposes Over 1 Million Sites – Patch Immediately!
Cybercriminals Turn Cheap Raspberry Pi into Powerful Fraud and Espionage Tool GEOBOX
  • Cyber Security

Cybercriminals Turn Cheap Raspberry Pi into Powerful Fraud and Espionage Tool

Do Son March 25, 2024 0
Read More Read more about Cybercriminals Turn Cheap Raspberry Pi into Powerful Fraud and Espionage Tool
CVE-2024-20767: Critical Adobe ColdFusion Flaw Exposes Sensitive Files, PoC Published CVE-2024-20767
  • Vulnerability

CVE-2024-20767: Critical Adobe ColdFusion Flaw Exposes Sensitive Files, PoC Published

Do Son March 25, 2024 0
Read More Read more about CVE-2024-20767: Critical Adobe ColdFusion Flaw Exposes Sensitive Files, PoC Published
Python Developers Targeted in Massive Supply Chain Attack; Over 170,000 Users Affected Python Supply Chain Attack
  • Cyber Security
  • Malware

Python Developers Targeted in Massive Supply Chain Attack; Over 170,000 Users Affected

Do Son March 25, 2024 0
Read More Read more about Python Developers Targeted in Massive Supply Chain Attack; Over 170,000 Users Affected
CVE-2024-29937: Critical NFS Vulnerability Exposes BSD Systems to Remote Code Execution CVE-2024-29937
  • Vulnerability

CVE-2024-29937: Critical NFS Vulnerability Exposes BSD Systems to Remote Code Execution

Do Son March 25, 2024 0
Read More Read more about CVE-2024-29937: Critical NFS Vulnerability Exposes BSD Systems to Remote Code Execution
“GoFetch” Attack Unlocks Encrypted Data, Putting Apple and Intel Users at Risk GoFetch attack
  • Vulnerability

“GoFetch” Attack Unlocks Encrypted Data, Putting Apple and Intel Users at Risk

Do Son March 25, 2024 0
Read More Read more about “GoFetch” Attack Unlocks Encrypted Data, Putting Apple and Intel Users at Risk
OpenVPN Patches Serious Vulnerabilities in Windows Installations OpenVPN vulnerabilities
  • Vulnerability

OpenVPN Patches Serious Vulnerabilities in Windows Installations

Do Son March 24, 2024 0
Read More Read more about OpenVPN Patches Serious Vulnerabilities in Windows Installations
Hackers Target System Admins with Fake PuTTY Website, Deploy Rhadamanthys Stealer Rhadamanthys Stealer
  • Malware

Hackers Target System Admins with Fake PuTTY Website, Deploy Rhadamanthys Stealer

Do Son March 24, 2024 0
Read More Read more about Hackers Target System Admins with Fake PuTTY Website, Deploy Rhadamanthys Stealer
CVE-2024-23755: ClickUp Desktop App Vulnerability Patched, Users Urged To Update CVE-2024-23755
  • Vulnerability

CVE-2024-23755: ClickUp Desktop App Vulnerability Patched, Users Urged To Update

Do Son March 24, 2024 0
Read More Read more about CVE-2024-23755: ClickUp Desktop App Vulnerability Patched, Users Urged To Update
APT29 Strikes German Politics with WINELOADER Malware Assault APT29 malware
  • Cyber Security
  • Malware

APT29 Strikes German Politics with WINELOADER Malware Assault

Do Son March 24, 2024 0
Read More Read more about APT29 Strikes German Politics with WINELOADER Malware Assault
StrelaStealer Malware Returns in 2024 with Stealthier Campaign Targeting EU and US Companies StrelaStealer Malware
  • Cyber Security
  • Malware

StrelaStealer Malware Returns in 2024 with Stealthier Campaign Targeting EU and US Companies

Do Son March 24, 2024 0
Read More Read more about StrelaStealer Malware Returns in 2024 with Stealthier Campaign Targeting EU and US Companies
CVE-2024-29190: SSRF Vulnerability Found in Popular Mobile App Testing Tool, MobSF CVE-2024-29190
  • Vulnerability

CVE-2024-29190: SSRF Vulnerability Found in Popular Mobile App Testing Tool, MobSF

Do Son March 24, 2024 0
Read More Read more about CVE-2024-29190: SSRF Vulnerability Found in Popular Mobile App Testing Tool, MobSF
Warning: Russia Deploys New ‘AcidPour’ Wiper Malware in Ukraine Autumn Dragon Espionage, DLL Sideloading Moldova disinformation AcidPour Wiper Malware
  • Cyber Security
  • Malware

Warning: Russia Deploys New ‘AcidPour’ Wiper Malware in Ukraine

Do Son March 24, 2024 0
Read More Read more about Warning: Russia Deploys New ‘AcidPour’ Wiper Malware in Ukraine
CVE-2024-30156 Flaw in Popular Varnish Cache Software Could Cripple Websites CVE-2024-30156 Varnish, HTTP request smuggling
  • Vulnerability

CVE-2024-30156 Flaw in Popular Varnish Cache Software Could Cripple Websites

Do Son March 24, 2024 0
Read More Read more about CVE-2024-30156 Flaw in Popular Varnish Cache Software Could Cripple Websites
Dealing with Drone Swarms: The Need for Evolving Defenses CVE-2024-23113
  • Technique

Dealing with Drone Swarms: The Need for Evolving Defenses

Do Son March 24, 2024 0
Read More Read more about Dealing with Drone Swarms: The Need for Evolving Defenses
China-Backed Hackers Escalate Cyber Campaigns, Targeting Operational Technology Operational Technology cyberattacks
  • Cyber Security

China-Backed Hackers Escalate Cyber Campaigns, Targeting Operational Technology

Do Son March 23, 2024 0
Read More Read more about China-Backed Hackers Escalate Cyber Campaigns, Targeting Operational Technology
Firefox Patches Critical Zero-Day Vulnerabilities Exposed in Pwn2Own 2024 CVE-2024-29943
  • Vulnerability

Firefox Patches Critical Zero-Day Vulnerabilities Exposed in Pwn2Own 2024

Do Son March 22, 2024 0
Read More Read more about Firefox Patches Critical Zero-Day Vulnerabilities Exposed in Pwn2Own 2024
Chinese State-Linked Hackers Target Critical Systems; Exploit F5 and ScreenConnect Flaws UNC5174
  • Cyber Security
  • Malware
  • Vulnerability

Chinese State-Linked Hackers Target Critical Systems; Exploit F5 and ScreenConnect Flaws

Do Son March 22, 2024 0
Read More Read more about Chinese State-Linked Hackers Target Critical Systems; Exploit F5 and ScreenConnect Flaws
Windows Privilege Escalation Flaw (CVE-2023-36424): Exploit Code Released, Patch Urgently Needed CVE-2023-36424
  • Vulnerability

Windows Privilege Escalation Flaw (CVE-2023-36424): Exploit Code Released, Patch Urgently Needed

Do Son March 21, 2024 0
Read More Read more about Windows Privilege Escalation Flaw (CVE-2023-36424): Exploit Code Released, Patch Urgently Needed
State-backed Curious Serpens Hackers Evolve with FalseFont Backdoor Soldier Hacker, Telecom Extortion Curious Serpens
  • Cyber Security
  • Malware

State-backed Curious Serpens Hackers Evolve with FalseFont Backdoor

Do Son March 21, 2024 0
Read More Read more about State-backed Curious Serpens Hackers Evolve with FalseFont Backdoor
CVE-2024-27438: Apache Doris Remote Command Execution Vulnerability CVE-2024-27438
  • Vulnerability

CVE-2024-27438: Apache Doris Remote Command Execution Vulnerability

Do Son March 21, 2024 0
Read More Read more about CVE-2024-27438: Apache Doris Remote Command Execution Vulnerability
Sysrv Botnet Returns: Google Subdomain Used to Spread Cryptomining Malware Sysrv botnet
  • Malware

Sysrv Botnet Returns: Google Subdomain Used to Spread Cryptomining Malware

Do Son March 21, 2024 0
Read More Read more about Sysrv Botnet Returns: Google Subdomain Used to Spread Cryptomining Malware
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
πŸ“ˆ

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

πŸ›‘οΈ

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

πŸ™

GitHub Issues
Auto-create alert tickets without duplication.

πŸ“¬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

πŸ”€

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days β†’

🚨 Active Exploits in the Wild

  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-93836CVSS 7.2
    The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \'qty\'...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-21589CVSS 9.3
    This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-61500CVSS 9.3
    Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the non-cryptographic Math.random() generator and discloses outputs...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-59346CVSS 9.3
    VMware Workstation and Fusion contain an integer-overflow vulnerability. A malicious actor with local administrative privileges on a virtual...
    📅 Updated: Oct 7, 2026
  • CVE-2025-52691CVSS 10.0
    Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload arbitrary files to any location on...
    CISA KEV📅 Added to KEV: Jan 26, 2026📅 Updated: Oct 7, 2026
  • CVE-2025-57460CVSS 9.8
    File upload vulnerability in machsol machpanel 8.0.32 allows attacker to gain a webshell.
    📅 Updated: Oct 7, 2026
  • CVE-2025-68897CVSS 9.9
    Improper Control of Generation of Code ('Code Injection') vulnerability in Mohammad I. Okfie IF AS Shortcode if-as-shortcode allows...
    📅 Updated: Oct 7, 2026
  • CVE-2025-68562CVSS 9.9
    Unrestricted Upload of File with Dangerous Type vulnerability in RomanCode MapSVG allows Upload a Web Shell to a...
    📅 Updated: Oct 7, 2026
  • CVE-2025-69234CVSS 9.1
    Whale browser before 4.35.351.12 allows an attacker to escape the iframe sandbox in a sidebar environment.
    📅 Updated: Oct 7, 2026
  • CVE-2025-15102CVSS 9.1
    DVP-12SE11T - Password Protection Bypass
    📅 Updated: Oct 7, 2026
  • CVE-2025-15359CVSS 9.1
    DVP-12SE11T - Out-of-bound memory write Vulnerability
    📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
Β© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.