Skip to content
September 13, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Sality Botnet Disrupted After Two Decades in Global Takedown Sality botnet disruption diagram showing a peer-to-peer sinkhole isolating infected machines from the operator
  • Malware

Sality Botnet Disrupted After Two Decades in Global Takedown

Do Son September 2, 2026 0
Read More Read more about Sality Botnet Disrupted After Two Decades in Global Takedown
Massive IDScan Data Breach Reported A dark web forum displaying stolen identity documents from the massive IDScan breach
  • Data Leak

Massive IDScan Data Breach Reported

Do Son September 2, 2026 0
Read More Read more about Massive IDScan Data Breach Reported
Virtualizor Hit By BGP Hijack Attack A graphic showing BGP routing hijacking redirecting a server update to a malicious source
  • Cybercriminals

Virtualizor Hit By BGP Hijack Attack

Do Son September 2, 2026 0
Read More Read more about Virtualizor Hit By BGP Hijack Attack
Meta Muse Code Exits Beta With Multi-Agent Workflows and SDK Meta Muse Code coding agent leaving beta with multi-agent workflows, inter-session messaging and a developer SDK
  • Technology

Meta Muse Code Exits Beta With Multi-Agent Workflows and SDK

Do Son September 2, 2026 0
Read More Read more about Meta Muse Code Exits Beta With Multi-Agent Workflows and SDK
Windows 11 Memory Integrity Goes On by Default in October Windows 11 memory integrity (HVCI) enabled by default to protect the kernel using hardware virtualization
  • Windows

Windows 11 Memory Integrity Goes On by Default in October

Do Son September 2, 2026 0
Read More Read more about Windows 11 Memory Integrity Goes On by Default in October
METR Security Breach: Stolen API Key Burns $600K in Credits METR security breach where a stolen API key consumed roughly $600K in AI credits via an exposed agent dashboard
  • Cybercriminals

METR Security Breach: Stolen API Key Burns $600K in Credits

Do Son September 2, 2026 0
Read More Read more about METR Security Breach: Stolen API Key Burns $600K in Credits
OpenMatter Network Expands Platform with New Capabilities for Secure AI, Computing and Data Collaboration Untitled_design_1_1788297544teMoozvKMV
  • Press Release

OpenMatter Network Expands Platform with New Capabilities for Secure AI, Computing and Data Collaboration

cybernewswire September 2, 2026 0
Read More Read more about OpenMatter Network Expands Platform with New Capabilities for Secure AI, Computing and Data Collaboration
Malicious Browser Extensions Drain Crypto Wallets Malicious browser extensions crypto wallet drainer campaign diagram from Socket Threat Research
  • Malware

Malicious Browser Extensions Drain Crypto Wallets

Do Son September 2, 2026 0
Read More Read more about Malicious Browser Extensions Drain Crypto Wallets
HOOKEDGE Malware: BlueDelta Hits EU Diplomatic Targets HOOKEDGE malware infection chain diagram showing BlueDelta APT28 phishing and webhook C2 abuse
  • Cybercriminals

HOOKEDGE Malware: BlueDelta Hits EU Diplomatic Targets

Do Son September 2, 2026 0
Read More Read more about HOOKEDGE Malware: BlueDelta Hits EU Diplomatic Targets
PackClient RAT: New C2 Framework Sold on Telegram ACR Stealer infection chain starting with a ClickFix lure to steal browser credentials
  • Malware

PackClient RAT: New C2 Framework Sold on Telegram

Do Son September 2, 2026 0
Read More Read more about PackClient RAT: New C2 Framework Sold on Telegram
Critical Google Chrome Vulnerabilities Patched in New Update Illustration of critical Google Chrome vulnerabilities in the latest update
  • Vulnerability Report

Critical Google Chrome Vulnerabilities Patched in New Update

Do Son September 2, 2026 0
Read More Read more about Critical Google Chrome Vulnerabilities Patched in New Update
CVE-2026-80047: Hugging Face Transformers Library Vulnerability Hugging Face vulnerability CVE-2026-80047 illustration
  • Vulnerability Report

CVE-2026-80047: Hugging Face Transformers Library Vulnerability

Do Son September 2, 2026 0
Read More Read more about CVE-2026-80047: Hugging Face Transformers Library Vulnerability
Amatera Password Stealer Abuses Service Workers and Smart Contracts Amatera password stealer campaign attack chain diagram and Amatera password stealer workflow
  • Malware

Amatera Password Stealer Abuses Service Workers and Smart Contracts

Do Son September 2, 2026 0
Read More Read more about Amatera Password Stealer Abuses Service Workers and Smart Contracts
CVE-2026-68162: Linux Kernel Root Escalation PoC Public Linux kernel vulnerability CVE-2026-68162 SCTP use-after-free root privilege escalation PoC exploit
  • Vulnerability Report

CVE-2026-68162: Linux Kernel Root Escalation PoC Public

Do Son September 2, 2026 0
Read More Read more about CVE-2026-68162: Linux Kernel Root Escalation PoC Public
Debian 11 Reaches End of Long Term Support Debian 11 LTS ends showing upgrading to Debian 12 for ongoing security updates
  • Linux

Debian 11 Reaches End of Long Term Support

Do Son September 2, 2026 0
Read More Read more about Debian 11 Reaches End of Long Term Support
FreeRDP 3.31.0 Fixes Pre-Auth RCE Chain in Server FreeRDP vulnerability server role pre-auth remote code execution chain patch diagram
  • Vulnerability Report

FreeRDP 3.31.0 Fixes Pre-Auth RCE Chain in Server

Do Son September 2, 2026 0
Read More Read more about FreeRDP 3.31.0 Fixes Pre-Auth RCE Chain in Server
Darwin-VM Enables Apple Silicon Security Research A conceptual terminal interface showing Darwin-VM Apple Silicon execution and XNU kernel debugging
  • Technology

Darwin-VM Enables Apple Silicon Security Research

Do Son September 2, 2026 0
Read More Read more about Darwin-VM Enables Apple Silicon Security Research
Apple OpenAI Lawsuit Escalates Over AI Trade Secrets Apple OpenAI lawsuit documents
  • Technology

Apple OpenAI Lawsuit Escalates Over AI Trade Secrets

Do Son September 2, 2026 0
Read More Read more about Apple OpenAI Lawsuit Escalates Over AI Trade Secrets
HPE Fabric Composer Vulnerabilities Expose Critical Systems Illustration of HPE Fabric Composer vulnerabilities including critical HPE Fabric Composer vulnerabilities
  • Vulnerability Report

HPE Fabric Composer Vulnerabilities Expose Critical Systems

Do Son September 1, 2026 0
Read More Read more about HPE Fabric Composer Vulnerabilities Expose Critical Systems
CVE-2026-83548 Exploited: SMA1000 SSRF Hits 10.0 SonicWall SMA1000 vulnerability CVE-2026-83548 pre-authentication SSRF exploited in the wild CVSS 10.0 diagram
  • Vulnerability Report

CVE-2026-83548 Exploited: SMA1000 SSRF Hits 10.0

Do Son September 1, 2026 0
Read More Read more about CVE-2026-83548 Exploited: SMA1000 SSRF Hits 10.0
Proxmox VE 7 Auth Bypass: PoC Public, Exploited in the Wild Proxmox VE authentication bypass vulnerability PoC exploit code publicly disclosed pre-auth root access diagram
  • Vulnerability Report

Proxmox VE 7 Auth Bypass: PoC Public, Exploited in the Wild

Do Son September 1, 2026 0
Read More Read more about Proxmox VE 7 Auth Bypass: PoC Public, Exploited in the Wild
CVE-2026-35029 Exploited for Full LiteLLM Server Takeover LiteLLM vulnerability diagram showing LiteLLM vulnerability server takeover risks
  • Vulnerability Report

CVE-2026-35029 Exploited for Full LiteLLM Server Takeover

Do Son September 1, 2026 0
Read More Read more about CVE-2026-35029 Exploited for Full LiteLLM Server Takeover
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-51990
    A critical remote code execution vulnerability in Sogou Input Method, one of the most widely used Chinese-language input...
    Admin intel📅 Updated: Sep 12, 2026
  • CVE-2026-85706CVSS 10.0
    GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42016CVSS 8.1
    JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-42018CVSS 7.5
    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially...
    Admin intelCISA KEV📅 Added to KEV: Sep 11, 2026📅 Updated: Sep 11, 2026
  • CVE-2026-84869CVSS 9.9
    A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote...
    CISA KEV📅 Added to KEV: Sep 11, 2026
  • CVE-2026-20079CVSS 10.0
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2025-25249CVSS 8.1
    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
  • CVE-2026-87491
    Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 9, 2026📅 Updated: Sep 9, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-90558CVSS 9.8
    sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting...
  • CVE-2026-78159CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code...
  • CVE-2026-85681CVSS 9.8
    The WP Component WordPress plugin through 2.2.4 does not have any capability...
  • CVE-2026-84171CVSS 9.8
    The WP images upload on piclect WordPress plugin through 1.0 does not...
  • CVE-2026-82845CVSS 9.9
    The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values...
  • CVE-2026-81402CVSS 9.8
    The DS Ad Rotator WordPress plugin through 0.8 does not perform any...
  • CVE-2026-77006CVSS 9.6
    The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied...
  • CVE-2026-77005CVSS 9.6
    The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a...
  • CVE-2026-75800CVSS 9.8
    The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.