Skip to content
July 25, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Inside BlueNoroff’s “Self-Reinforcing” Deepfake Meeting Trap BlueNoroff Deepfakes Crypto Deepfake Phishing
  • Cybercriminals

Inside BlueNoroff’s “Self-Reinforcing” Deepfake Meeting Trap

Do Son April 28, 2026 0
Read More Read more about Inside BlueNoroff’s “Self-Reinforcing” Deepfake Meeting Trap
The .gov Illusion: Inside the 16,800-Domain “Operation Trust Trap” Campaign Operation Trust Trap Subdomain Trust Injection
  • Cybercriminals

The .gov Illusion: Inside the 16,800-Domain “Operation Trust Trap” Campaign

Do Son April 28, 2026 0
Read More Read more about The .gov Illusion: Inside the 16,800-Domain “Operation Trust Trap” Campaign
The End of Unlimited AI: GitHub Copilot Shifts to “Pay-as-You-Go” Credits to Power the Agentic Era GitHub Copilot usage-based billing
  • Technology

The End of Unlimited AI: GitHub Copilot Shifts to “Pay-as-You-Go” Credits to Power the Agentic Era

Do Son April 28, 2026 0
Read More Read more about The End of Unlimited AI: GitHub Copilot Shifts to “Pay-as-You-Go” Credits to Power the Agentic Era
Inside the Stealthy Evolution of Vidar Infostealer Vidar Infostealer Stealth Attack Framework
  • Malware

Inside the Stealthy Evolution of Vidar Infostealer

Do Son April 28, 2026 0
Read More Read more about Inside the Stealthy Evolution of Vidar Infostealer
China Blocks Meta’s $2B Acquisition of Manus AI in Landmark Security Move Meta Manus AI acquisition block Meta acquisition Manus AI agent, Manus $100M ARR startup
  • Technology

China Blocks Meta’s $2B Acquisition of Manus AI in Landmark Security Move

Do Son April 28, 2026 0
Read More Read more about China Blocks Meta’s $2B Acquisition of Manus AI in Landmark Security Move
Attackers Are Weaponizing Foxit PDF Reader’s Reputation Foxit PDF Malware UltraVNC Hijack
  • Malware

Attackers Are Weaponizing Foxit PDF Reader’s Reputation

Do Son April 28, 2026 0
Read More Read more about Attackers Are Weaponizing Foxit PDF Reader’s Reputation
Patching the CVSS 10 RCE Hole in Gemini CLI Gemini CLI Security Update Headless RCE Patch
  • Vulnerability Report

Patching the CVSS 10 RCE Hole in Gemini CLI

Do Son April 28, 2026 0
Read More Read more about Patching the CVSS 10 RCE Hole in Gemini CLI
Injection Flaws (CVE-2026-40967 & 40978) Hit Spring AI Vector Stores Spring AI Vulnerability LLM Memory Poisoning Spring AI Vulnerability Vector Store Injection
  • Vulnerability Report

Injection Flaws (CVE-2026-40967 & 40978) Hit Spring AI Vector Stores

Do Son April 28, 2026 0
Read More Read more about Injection Flaws (CVE-2026-40967 & 40978) Hit Spring AI Vector Stores
From Shanghai to Houston: The HAFNIUM Hacker Who Stole Vaccine Secrets Faces Justice UNC5221 HAFNIUM Extradition PRC State Espionage
  • Cybercriminals

From Shanghai to Houston: The HAFNIUM Hacker Who Stole Vaccine Secrets Faces Justice

Do Son April 28, 2026 0
Read More Read more about From Shanghai to Houston: The HAFNIUM Hacker Who Stole Vaccine Secrets Faces Justice
Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild LiteLLM SQL Injection CVE-2026-42208 LiteLLM Vulnerability AI Infrastructure Security
  • Vulnerability Report

Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild

Do Son April 28, 2026 0
Read More Read more about Critical LiteLLM SQL Injection (CVE-2026-42208) Exploited in the Wild
Apache MINA Hit by Twin Critical RCE Flaws Apache MINA flaws critical deserialization bypass Apache MINA Deserialization CVE-2026-42778 RCE Apache MINA RCE CVE-2026-41635
  • Vulnerability Report

Apache MINA Hit by Twin Critical RCE Flaws

Do Son April 28, 2026 0
Read More Read more about Apache MINA Hit by Twin Critical RCE Flaws
Freedom to Reboot: Microsoft Finally Separates Windows 11 Updates from the Power Menu Windows 11 Low Latency Profile Windows 11 Build 26300.8289 update
  • Windows

Freedom to Reboot: Microsoft Finally Separates Windows 11 Updates from the Power Menu

Do Son April 27, 2026 0
Read More Read more about Freedom to Reboot: Microsoft Finally Separates Windows 11 Updates from the Power Menu
OpenAI and Semiconductor Titans Join Forces to Build the First AI Agent Smartphone OpenAI AI agent smartphone
  • Technology

OpenAI and Semiconductor Titans Join Forces to Build the First AI Agent Smartphone

Do Son April 27, 2026 0
Read More Read more about OpenAI and Semiconductor Titans Join Forces to Build the First AI Agent Smartphone
Amazon Unveils “Claude Platform on AWS” for Instant Access to Anthropic’s Latest Features Claude Platform on AWS
  • Technology

Amazon Unveils “Claude Platform on AWS” for Instant Access to Anthropic’s Latest Features

Do Son April 27, 2026 0
Read More Read more about Amazon Unveils “Claude Platform on AWS” for Instant Access to Anthropic’s Latest Features
The Zero-Click Vulnerability: Akamai Uncovers Incomplete Patch for APT28 Exploit Zero-Click Exploitation LNK Authentication Coercion
  • Vulnerability Report

The Zero-Click Vulnerability: Akamai Uncovers Incomplete Patch for APT28 Exploit

Do Son April 27, 2026 0
Read More Read more about The Zero-Click Vulnerability: Akamai Uncovers Incomplete Patch for APT28 Exploit
The CVE Watchtower: Weekly Threat Intelligence Briefing (April 20 – April 26, 2026) Vulnerability Digest AI Infrastructure Security
  • Vulnerability Report

The CVE Watchtower: Weekly Threat Intelligence Briefing (April 20 – April 26, 2026)

Do Son April 27, 2026 0
Read More Read more about The CVE Watchtower: Weekly Threat Intelligence Briefing (April 20 – April 26, 2026)
The Unpatched Pivot: New RPC Flaw Opens Doors for Windows Privilege Escalation PhantomRPC Windows Privilege Escalation
  • Vulnerability Report

The Unpatched Pivot: New RPC Flaw Opens Doors for Windows Privilege Escalation

Do Son April 27, 2026 0
Read More Read more about The Unpatched Pivot: New RPC Flaw Opens Doors for Windows Privilege Escalation
Critical 9.8 CVSS RCE Hijacks Pipecat Voice Agents Pipecat RCE CVE-2025-62373
  • Vulnerability Report

Critical 9.8 CVSS RCE Hijacks Pipecat Voice Agents

Do Son April 27, 2026 0
Read More Read more about Critical 9.8 CVSS RCE Hijacks Pipecat Voice Agents
Carlson VASCO-B GNSS Receivers Left Open to Remote Hijack GNSS Hijacking Carlson Software
  • Vulnerability Report

Carlson VASCO-B GNSS Receivers Left Open to Remote Hijack

Do Son April 27, 2026 0
Read More Read more about Carlson VASCO-B GNSS Receivers Left Open to Remote Hijack
Critical 9.8 CVSS Flaw Exposes Intrado 911 Emergency Gateways Intrado 911 Gateway Vulnerability CVE-2026-6074
  • Vulnerability Report

Critical 9.8 CVSS Flaw Exposes Intrado 911 Emergency Gateways

Do Son April 27, 2026 0
Read More Read more about Critical 9.8 CVSS Flaw Exposes Intrado 911 Emergency Gateways
UNC6692 Uses MS Teams and Cloud Reputations to Hijack Active Directory UNC6692 SNOW Malware Suite
  • Malware

UNC6692 Uses MS Teams and Cloud Reputations to Hijack Active Directory

Do Son April 27, 2026 0
Read More Read more about UNC6692 Uses MS Teams and Cloud Reputations to Hijack Active Directory
Inside “HexagonalRodent”: The AI-Powered DPRK Syndicate Hauling Millions in Crypto HexagonalRodent Malware Web3 Developer Scams
  • Cybercriminals

Inside “HexagonalRodent”: The AI-Powered DPRK Syndicate Hauling Millions in Crypto

Do Son April 27, 2026 0
Read More Read more about Inside “HexagonalRodent”: The AI-Powered DPRK Syndicate Hauling Millions in Crypto
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-0770CVSS 9.8
    Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2021-27137CVSS 8.1
    An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2026-6875CVSS 9.5
    ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability...
    Admin intel📅 Updated: Jul 18, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-61884CVSS 9.8
    The web management interface of Tycon Systems TPDIN-Monitor-WEB2  does not perform server-side validation...
  • CVE-2026-62379CVSS 9.8
    ## Summary A pre-authentication remote code execution vulnerability affects OpenAM. The remote...
  • CVE-2026-62263
    ### Summary The GHSA-6c99-87fr-6q7r fix wrapped WebAuthn authenticator deserialization in an `ObjectInputFilter`...
  • CVE-2026-62835CVSS 9.3
    Improper authorization in Azure Portal allows an unauthorized attacker to disclose information...
  • CVE-2026-48021CVSS 9.1
    In epa4all, prior to version 2026-05-20, an attacker who can intercept the...
  • CVE-2026-59940CVSS 9.8
    ## Summary A type confusion issue in `seroval.fromJSON()` allowed attacker-controlled JSON input...
  • CVE-2026-58630CVSS 10.0
    Improper access control in Azure App Service allows an unauthorized attacker to...
  • CVE-2026-57106CVSS 10.0
    Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to...
  • CVE-2026-56163CVSS 10.0
    Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an...
  • CVE-2026-15704CVSS 9.8
    In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.