Skip to content
October 11, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2023-4998: Critical GitLab Vulnerability Allows Attackers to Run Pipelines as Other Users CVE-2023-4998
  • Vulnerability

CVE-2023-4998: Critical GitLab Vulnerability Allows Attackers to Run Pipelines as Other Users

Do Son September 19, 2023 0
Read More Read more about CVE-2023-4998: Critical GitLab Vulnerability Allows Attackers to Run Pipelines as Other Users
CVE-2023-42442: JumpServer Session Replay Download Bug Without Authentication CVE-2023-42442
  • Vulnerability

CVE-2023-42442: JumpServer Session Replay Download Bug Without Authentication

Do Son September 19, 2023 0
Read More Read more about CVE-2023-42442: JumpServer Session Replay Download Bug Without Authentication
CVE-2023-41179: Critical 0-day Trend Micro Endpoint Security Vulnerability CVE-2023-41179
  • Vulnerability

CVE-2023-41179: Critical 0-day Trend Micro Endpoint Security Vulnerability

Do Son September 19, 2023 0
Read More Read more about CVE-2023-41179: Critical 0-day Trend Micro Endpoint Security Vulnerability
Microsoft AI researchers accidentally leaked up to 38TB of data: including secrets, private keys, passwords Microsoft AI data leak
  • Data Leak

Microsoft AI researchers accidentally leaked up to 38TB of data: including secrets, private keys, passwords

Do Son September 19, 2023 0
Read More Read more about Microsoft AI researchers accidentally leaked up to 38TB of data: including secrets, private keys, passwords
CVE-2023-36735: Microsoft Edge Flaw Let Attackers Execute Arbitrary Code Microsoft Edge Google account login interface and synchronization settings Browser Choice Alliance letter Microsoft Edge cleartext credentials memory dump Microsoft Edge auto-startup Microsoft Edge Collections sunset, export Edge Collections CSV Edge IE Mode Zero-Day, Chakra Exploit Windows Search, Microsoft Edge AI video translation, Edge browser Microsoft Editor, Edge Edge Developer tools Windows 10 ESU, Microsoft Edge Microsoft Edge, FCP Optimization CVE-2023-36735 Edge, AI Search
  • Vulnerability

CVE-2023-36735: Microsoft Edge Flaw Let Attackers Execute Arbitrary Code

Do Son September 18, 2023 0
Read More Read more about CVE-2023-36735: Microsoft Edge Flaw Let Attackers Execute Arbitrary Code
QNAP Rolls Out Critical Security Updates CVE-2023-23362
  • Vulnerability

QNAP Rolls Out Critical Security Updates

Do Son September 16, 2023 0
Read More Read more about QNAP Rolls Out Critical Security Updates
CVE-2023-39777: XSS Vulnerability in vBulletin, No Patch Available CVE-2023-39777
  • Vulnerability

CVE-2023-39777: XSS Vulnerability in vBulletin, No Patch Available

Do Son September 16, 2023 0
Read More Read more about CVE-2023-39777: XSS Vulnerability in vBulletin, No Patch Available
Exploring Surfshark VPN’s Netflix Reach Across 40+ Nations Netflix
  • Technique

Exploring Surfshark VPN’s Netflix Reach Across 40+ Nations

Do Son September 15, 2023 0
Read More Read more about Exploring Surfshark VPN’s Netflix Reach Across 40+ Nations
CVE-2023-41955: Privilege escalation in WordPress Elementor plugin affects 1M sites CVE-2023-41955
  • Technology

CVE-2023-41955: Privilege escalation in WordPress Elementor plugin affects 1M sites

Do Son September 15, 2023 0
Read More Read more about CVE-2023-41955: Privilege escalation in WordPress Elementor plugin affects 1M sites
Kaspersky reveals Free Download Manager backdoored, three-year supply chain attack on Linux devices Free Download Manager backdoored
  • Malware

Kaspersky reveals Free Download Manager backdoored, three-year supply chain attack on Linux devices

Do Son September 14, 2023 0
Read More Read more about Kaspersky reveals Free Download Manager backdoored, three-year supply chain attack on Linux devices
Researcher Discloses Windows Themes RCE Bug and PoC Exploit KB5083769 Update Windows 11 24H2 end of support File Explorer White Flash Windows 11 Dark Mode Bug Windows 11 SE, End of Support Windows Update, Automatic Upgrade CVE-2023-38146 Windows 10
  • Vulnerability

Researcher Discloses Windows Themes RCE Bug and PoC Exploit

Do Son September 14, 2023 0
Read More Read more about Researcher Discloses Windows Themes RCE Bug and PoC Exploit
Protecting Cloud Data Using DSPM tech-secu
  • Technique

Protecting Cloud Data Using DSPM

Do Son September 14, 2023 0
Read More Read more about Protecting Cloud Data Using DSPM
Craft CMS Fixes RCE (CVE-2023-41892) Flaw Rated 10 Out of 10 on Severity Scale Craft CMS Vulnerability CVE-2026-32267 CVE-2023-41892 Craft CMS CVE-2025-32432
  • Vulnerability

Craft CMS Fixes RCE (CVE-2023-41892) Flaw Rated 10 Out of 10 on Severity Scale

Do Son September 13, 2023 0
Read More Read more about Craft CMS Fixes RCE (CVE-2023-41892) Flaw Rated 10 Out of 10 on Severity Scale
Persistent Espionage Attacks on National Infrastructure Raising Alarm ShadowPad Trojan
  • Cyber Security
  • Malware

Persistent Espionage Attacks on National Infrastructure Raising Alarm

Do Son September 12, 2023 0
Read More Read more about Persistent Espionage Attacks on National Infrastructure Raising Alarm
MemDive’s Innovative AI Fights Evasive Malware with Dynamic Memory Extraction MemDive
  • Malware
  • Technology

MemDive’s Innovative AI Fights Evasive Malware with Dynamic Memory Extraction

Do Son September 12, 2023 0
Read More Read more about MemDive’s Innovative AI Fights Evasive Malware with Dynamic Memory Extraction
Zoom Customers Advised to Update Software to Fix Security Vulnerabilities Zoom Vulnerabilities
  • Vulnerability

Zoom Customers Advised to Update Software to Fix Security Vulnerabilities

Do Son September 12, 2023 0
Read More Read more about Zoom Customers Advised to Update Software to Fix Security Vulnerabilities
CVE-2023-4863: Mozilla products 0-day vulnerability exploited in the wild Mozilla vulnerability
  • Vulnerability

CVE-2023-4863: Mozilla products 0-day vulnerability exploited in the wild

Do Son September 12, 2023 0
Read More Read more about CVE-2023-4863: Mozilla products 0-day vulnerability exploited in the wild
Microsoft Patches 0-Day Vulnerabilities in September 2023 Patch CVE-2023-36802
  • Vulnerability

Microsoft Patches 0-Day Vulnerabilities in September 2023 Patch

Do Son September 12, 2023 0
Read More Read more about Microsoft Patches 0-Day Vulnerabilities in September 2023 Patch
Adobe Fixes Critical Zero-Day CVE-2023-26369 Vulnerability CVE-2023-26369
  • Vulnerability

Adobe Fixes Critical Zero-Day CVE-2023-26369 Vulnerability

Do Son September 12, 2023 0
Read More Read more about Adobe Fixes Critical Zero-Day CVE-2023-26369 Vulnerability
CVE-2023-35671: Android Flaw Could Let Attacker Make Unauthorized Payments CVE-2023-35671
  • Vulnerability

CVE-2023-35671: Android Flaw Could Let Attacker Make Unauthorized Payments

Do Son September 12, 2023 0
Read More Read more about CVE-2023-35671: Android Flaw Could Let Attacker Make Unauthorized Payments
Apple backports fix for actively exploited 0-day to older macOS and iPhone/iPad devices Apple 0-day
  • Vulnerability

Apple backports fix for actively exploited 0-day to older macOS and iPhone/iPad devices

Do Son September 11, 2023 0
Read More Read more about Apple backports fix for actively exploited 0-day to older macOS and iPhone/iPad devices
Safety Protocols Every Truck Driver Should Implement Img_2023_09_08_16_08_40
  • Technique

Safety Protocols Every Truck Driver Should Implement

Do Son September 11, 2023 0
Read More Read more about Safety Protocols Every Truck Driver Should Implement
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
πŸ“ˆ

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

πŸ›‘οΈ

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

πŸ™

GitHub Issues
Auto-create alert tickets without duplication.

πŸ“¬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

πŸ”€

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days β†’

🚨 Active Exploits in the Wild

  • CVE-2026-102255CVSS 10.0
    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2026-105133CVSS 6.9
    A vulnerability was detected in Ahsay AhsayCBS up to 10.3.2. This affects the function checkSysPwd of the file...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2023-22894CVSS 4.9
    Strapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2016-3081CVSS 8.1
    Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled,...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-3306CVSS 10.0
    The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-5477CVSS 7.5
    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2021-3199CVSS 9.8
    Directory traversal with remote code execution can occur in /upload in ONLYOFFICE Document Server before 5.6.3, when JWT...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-78533CVSS 9.8
    Unauthenticated PHP Object Injection in Qwery
    📅 Updated: Oct 10, 2026
  • CVE-2026-78535CVSS 9.8
    Unauthenticated PHP Object Injection in Photolia
    📅 Updated: Oct 10, 2026
  • CVE-2026-81797CVSS 9.8
    Unauthenticated PHP Object Injection in Buzz Stone | Magazine & Viral Blog WordPress Theme
    📅 Updated: Oct 10, 2026
  • CVE-2026-66567CVSS 9.8
    Unauthenticated PHP Object Injection in Anesta
    📅 Updated: Oct 10, 2026
  • CVE-2026-66568CVSS 9.8
    Unauthenticated PHP Object Injection in Original
    📅 Updated: Oct 10, 2026
  • CVE-2026-66569CVSS 9.8
    Unauthenticated PHP Object Injection in Kicker
    📅 Updated: Oct 10, 2026
  • CVE-2026-78529CVSS 9.8
    Unauthenticated PHP Object Injection in Alliance
    📅 Updated: Oct 10, 2026
  • CVE-2026-78531CVSS 9.8
    Unauthenticated PHP Object Injection in Jacqueline
    📅 Updated: Oct 10, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
Β© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.