Skip to content
July 25, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
NVIDIA Fixes High-Severity Flaws in KAI Scheduler and CUDA-Q NVIDIA GPU Security CUDA-Q Vulnerability NVIDIA Apex Vulnerability AI Infrastructure Security NVIDIA Cumulus Linux CVE-2025-33179 NVIDIA Arm divestment NVIDIA DGX Spark, CVE-2025-33187 NVIDIA Isaac-GROOT, Code Injection Megatron-LM Vulnerability, AI Code Injection NVIDIA China NVIDIA GPUs, Hardware Kill Switches NVIDIA Megatron-LM, LLM Vulnerabilities NVIDIA Base Command Manager - CVE-2024-0138
  • Vulnerability Report

NVIDIA Fixes High-Severity Flaws in KAI Scheduler and CUDA-Q

Do Son April 22, 2026 0
Read More Read more about NVIDIA Fixes High-Severity Flaws in KAI Scheduler and CUDA-Q
GitLab Security Update: High-Severity Vulnerabilities Patched in April Release GitLab security updates, GitLab patch release, CVE-2026-6552, CVE-2026-10087, CVE-2026-7250 GitLab Security Update May 2026 GitLab XSS and DoS Vulnerabilities GitLab Security Session Hijacking GitLab Security Update, CI/CD Vulnerability GitLab DoS, Security Update bypassing SAML - CVE-2024-8312 and CVE-2024-6826
  • Vulnerability Report

GitLab Security Update: High-Severity Vulnerabilities Patched in April Release

Do Son April 22, 2026 0
Read More Read more about GitLab Security Update: High-Severity Vulnerabilities Patched in April Release
CVE-2026-40342: CVSS 10.0 Path Traversal to RCE in Firebird Database Firebird Database RCE CVE-2026-40342
  • Vulnerability Report

CVE-2026-40342: CVSS 10.0 Path Traversal to RCE in Firebird Database

Do Son April 22, 2026 0
Read More Read more about CVE-2026-40342: CVSS 10.0 Path Traversal to RCE in Firebird Database
The $600 Billion Orbit: SpaceX and xAI Join Forces with Cursor to Command the Future of Coding Cursor SpaceX acquisition
  • Technology

The $600 Billion Orbit: SpaceX and xAI Join Forces with Cursor to Command the Future of Coding

Do Son April 22, 2026 0
Read More Read more about The $600 Billion Orbit: SpaceX and xAI Join Forces with Cursor to Command the Future of Coding
The 271-Zero-Day Sweep: How Anthropic’s “Project Glasswing” Just Saved Firefox Anthropic Claude Lawsuit Claude Max limits, AI subscription lawsuit, Claude Pro vs Max Claude Mythos security audit Claude Identity Verification Anthropic DMCA GitHub takedown bugs Nuclear weapons Xcode, Claude AI Anthropic, Claude Sonnet 4 Claude AI, AI safety
  • Vulnerability Report

The 271-Zero-Day Sweep: How Anthropic’s “Project Glasswing” Just Saved Firefox

Do Son April 22, 2026 0
Read More Read more about The 271-Zero-Day Sweep: How Anthropic’s “Project Glasswing” Just Saved Firefox
OpenAI Unveils ChatGPT Images 2.0 with Native Reasoning and 2K Precision ChatGPT Images 2.0 reasoning
  • Technology

OpenAI Unveils ChatGPT Images 2.0 with Native Reasoning and 2K Precision

Do Son April 22, 2026 0
Read More Read more about OpenAI Unveils ChatGPT Images 2.0 with Native Reasoning and 2K Precision
TikTok’s Secret Tracker: The “Featured” Extensions Harvesting Your Data TikTok Downloader Malware Browser Extension Fingerprinting
  • Data Leak

TikTok’s Secret Tracker: The “Featured” Extensions Harvesting Your Data

Do Son April 22, 2026 0
Read More Read more about TikTok’s Secret Tracker: The “Featured” Extensions Harvesting Your Data
Command Injection Vulnerability (CVE-2025-29635) Exploited in the Wild Cloudflare DDoS attacks 2 Tbps
  • Vulnerability Report

Command Injection Vulnerability (CVE-2025-29635) Exploited in the Wild

Do Son April 22, 2026 0
Read More Read more about Command Injection Vulnerability (CVE-2025-29635) Exploited in the Wild
“FakeWallet” Trojan Masquerades as Crypto Wallets to Drain Assets FakeWallet Trojan Crypto Phishing
  • Malware

“FakeWallet” Trojan Masquerades as Crypto Wallets to Drain Assets

Do Son April 22, 2026 0
Read More Read more about “FakeWallet” Trojan Masquerades as Crypto Wallets to Drain Assets
How to Remove Video Backgrounds Online Without Editing Skills PICTURE 1
  • Technique

How to Remove Video Backgrounds Online Without Editing Skills

Do Son April 22, 2026 0
Read More Read more about How to Remove Video Backgrounds Online Without Editing Skills
The Rise of Payouts King and the Resurrection of BlackBasta Payouts King Ransomware BlackBasta Successor
  • Malware

The Rise of Payouts King and the Resurrection of BlackBasta

Do Son April 22, 2026 0
Read More Read more about The Rise of Payouts King and the Resurrection of BlackBasta
Splunk Unmasks New Malware Campaign Pairing Ghost RAT with CloverPlus Adware Ghost RAT RDP Credential Theft
  • Malware

Splunk Unmasks New Malware Campaign Pairing Ghost RAT with CloverPlus Adware

Do Son April 22, 2026 0
Read More Read more about Splunk Unmasks New Malware Campaign Pairing Ghost RAT with CloverPlus Adware
CrowdStrike Issues Critical Alert: LogScale Vulnerability Allows Unauthenticated File Access LogScale Vulnerability Path Traversal Falcon Sensor File Deletion, CVE-2025-42701 CrowdStrike update crashes - CVE 2025-1146
  • Vulnerability Report

CrowdStrike Issues Critical Alert: LogScale Vulnerability Allows Unauthenticated File Access

Do Son April 22, 2026 0
Read More Read more about CrowdStrike Issues Critical Alert: LogScale Vulnerability Allows Unauthenticated File Access
Critical RCE Alert: Bamboo Data Center Vulnerable to OS Command Injection CVE-2023-22518 Bamboo RCE CI/CD Supply Chain Security
  • Vulnerability Report

Critical RCE Alert: Bamboo Data Center Vulnerable to OS Command Injection

Do Son April 22, 2026 0
Read More Read more about Critical RCE Alert: Bamboo Data Center Vulnerable to OS Command Injection
Emergency .NET Update: Critical Data Protection Flaw Allows Authentication Forgery Windows DNS Client RCE .NET 10 Auth Bypass CVE-2026-40372
  • Vulnerability Report

Emergency .NET Update: Critical Data Protection Flaw Allows Authentication Forgery

Do Son April 22, 2026 0
Read More Read more about Emergency .NET Update: Critical Data Protection Flaw Allows Authentication Forgery
7 Critical Vulnerabilities Threaten Spring Security 7.0 cve-2024-38810 Spring Security 7.0 Vulnerabilities Authorization Bypass
  • Vulnerability Report

7 Critical Vulnerabilities Threaten Spring Security 7.0

Do Son April 22, 2026 0
Read More Read more about 7 Critical Vulnerabilities Threaten Spring Security 7.0
The Intel “AppDomain” Hijack: Unmasking a Sophisticated Post-Exploitation Framework phan
  • Malware

The Intel “AppDomain” Hijack: Unmasking a Sophisticated Post-Exploitation Framework

Do Son April 22, 2026 0
Read More Read more about The Intel “AppDomain” Hijack: Unmasking a Sophisticated Post-Exploitation Framework
Microsoft Teams Exploited for Silent Enterprise Takeovers Teams Impersonation Administrative Abuse
  • Cybercriminals

Microsoft Teams Exploited for Silent Enterprise Takeovers

Do Son April 22, 2026 0
Read More Read more about Microsoft Teams Exploited for Silent Enterprise Takeovers
Three Silent Vulnerabilities Discovered in the glibc Core glibc Security Legacy DNS Flaws glibc Vulnerabilities Linux Security Alert glibc Vulnerability CVE-2026-0861
  • Vulnerability Report

Three Silent Vulnerabilities Discovered in the glibc Core

Do Son April 21, 2026 0
Read More Read more about Three Silent Vulnerabilities Discovered in the glibc Core
BreachLock Named Representative Vendor in the 2026 Gartner Market Guide for Adversarial Exposure Validation BreachLock_Named_Representative_Vendor_in_2026_Gar_1776721618nJIDraNFL9
  • Press Release

BreachLock Named Representative Vendor in the 2026 Gartner Market Guide for Adversarial Exposure Validation

cybernewswire April 21, 2026 0
Read More Read more about BreachLock Named Representative Vendor in the 2026 Gartner Market Guide for Adversarial Exposure Validation
The Dual CVSS 10.0 RCE Flaws Threatening Spinnaker Pipelines Spinnaker RCE CVSS 10.0
  • Vulnerability Report

The Dual CVSS 10.0 RCE Flaws Threatening Spinnaker Pipelines

Do Son April 21, 2026 0
Read More Read more about The Dual CVSS 10.0 RCE Flaws Threatening Spinnaker Pipelines
The Ungoverned Workforce: Cybersecurity Insiders Finds 92% Lack Visibility Into AI Identities Report-Post-Image-Apr-20_1776736093vYskEx4Tpb
  • Press Release

The Ungoverned Workforce: Cybersecurity Insiders Finds 92% Lack Visibility Into AI Identities

cybernewswire April 21, 2026 0
Read More Read more about The Ungoverned Workforce: Cybersecurity Insiders Finds 92% Lack Visibility Into AI Identities
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-0770CVSS 9.8
    Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2021-27137CVSS 8.1
    An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2026-6875CVSS 9.5
    ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability...
    Admin intel📅 Updated: Jul 18, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-61884CVSS 9.8
    The web management interface of Tycon Systems TPDIN-Monitor-WEB2  does not perform server-side validation...
  • CVE-2026-62379CVSS 9.8
    ## Summary A pre-authentication remote code execution vulnerability affects OpenAM. The remote...
  • CVE-2026-62263
    ### Summary The GHSA-6c99-87fr-6q7r fix wrapped WebAuthn authenticator deserialization in an `ObjectInputFilter`...
  • CVE-2026-62835CVSS 9.3
    Improper authorization in Azure Portal allows an unauthorized attacker to disclose information...
  • CVE-2026-48021CVSS 9.1
    In epa4all, prior to version 2026-05-20, an attacker who can intercept the...
  • CVE-2026-59940CVSS 9.8
    ## Summary A type confusion issue in `seroval.fromJSON()` allowed attacker-controlled JSON input...
  • CVE-2026-58630CVSS 10.0
    Improper access control in Azure App Service allows an unauthorized attacker to...
  • CVE-2026-57106CVSS 10.0
    Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to...
  • CVE-2026-56163CVSS 10.0
    Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an...
  • CVE-2026-15704CVSS 9.8
    In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.