Skip to content
July 26, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Squid Caching Proxy Alert: Critical ICP Protocol Flaws Threaten Web Infrastructure CVE-2024-25617 CVE-2025-59362 Squid Proxy ICP Vulnerability
  • Vulnerability Report

Squid Caching Proxy Alert: Critical ICP Protocol Flaws Threaten Web Infrastructure

Do Son March 25, 2026 0
Read More Read more about Squid Caching Proxy Alert: Critical ICP Protocol Flaws Threaten Web Infrastructure
GitLab Critical Alert: High-Severity Flaws Allow App Impersonation and AI Token Leaks GitLab Security Update Account Impersonation GitLab Security Update CVE-2026-1090 GitLab vulnerability GitLab vulnerability, GitLab patches
  • Vulnerability Report

GitLab Critical Alert: High-Severity Flaws Allow App Impersonation and AI Token Leaks

Do Son March 25, 2026 0
Read More Read more about GitLab Critical Alert: High-Severity Flaws Allow App Impersonation and AI Token Leaks
AI Infrastructure at Risk: NVIDIA Fixes Critical 9.0 RCE Flaw in Apex Library (CVE-2025-33244) NVIDIA GPU Security CUDA-Q Vulnerability NVIDIA Apex Vulnerability AI Infrastructure Security NVIDIA Cumulus Linux CVE-2025-33179 NVIDIA Arm divestment NVIDIA DGX Spark, CVE-2025-33187 NVIDIA Isaac-GROOT, Code Injection Megatron-LM Vulnerability, AI Code Injection NVIDIA China NVIDIA GPUs, Hardware Kill Switches NVIDIA Megatron-LM, LLM Vulnerabilities NVIDIA Base Command Manager - CVE-2024-0138
  • Vulnerability Report

AI Infrastructure at Risk: NVIDIA Fixes Critical 9.0 RCE Flaw in Apex Library (CVE-2025-33244)

Do Son March 25, 2026 0
Read More Read more about AI Infrastructure at Risk: NVIDIA Fixes Critical 9.0 RCE Flaw in Apex Library (CVE-2025-33244)
2026 Cybersecurity Excellence Awards Winners Announced during RSA Conference as AI Security Dominates PR-image_1774418653gzG1LV4yJZ
  • Press Release

2026 Cybersecurity Excellence Awards Winners Announced during RSA Conference as AI Security Dominates

cybernewswire March 25, 2026 0
Read More Read more about 2026 Cybersecurity Excellence Awards Winners Announced during RSA Conference as AI Security Dominates
Project 20/20: Microsoft’s Radical Plan to Cure Windows 11’s “Memory Hunger” Windows 11 Project 20/20
  • Windows

Project 20/20: Microsoft’s Radical Plan to Cure Windows 11’s “Memory Hunger”

Do Son March 25, 2026 0
Read More Read more about Project 20/20: Microsoft’s Radical Plan to Cure Windows 11’s “Memory Hunger”
Critical 9.4 CVSS Flaw Exposes Harbor Registries to Total Hijack Harbor Registry Supply Chain Attack
  • Vulnerability Report

Critical 9.4 CVSS Flaw Exposes Harbor Registries to Total Hijack

Do Son March 25, 2026 0
Read More Read more about Critical 9.4 CVSS Flaw Exposes Harbor Registries to Total Hijack
Code in the Wild: Full Technical Deep-Dive and Public GitHub PoC Released for Critical Linux TLS Root Exploit CIFSwitch local root exploit cifs-utils privilege escalation Linux Kernel Root Exploit CVE-2025-39946 PoC CVE-2023-2598 PoC Ubuntu LPE Vulnerability CVE-2026-3888
  • Vulnerability

Code in the Wild: Full Technical Deep-Dive and Public GitHub PoC Released for Critical Linux TLS Root Exploit

Do Son March 25, 2026 0
Read More Read more about Code in the Wild: Full Technical Deep-Dive and Public GitHub PoC Released for Critical Linux TLS Root Exploit
Beyond the Hook: Unmasking SnappyClient, the HijackLoader-Linked Stealth Stealer Targeting Crypto SnappyClient HijackLoader
  • Malware

Beyond the Hook: Unmasking SnappyClient, the HijackLoader-Linked Stealth Stealer Targeting Crypto

Do Son March 25, 2026 0
Read More Read more about Beyond the Hook: Unmasking SnappyClient, the HijackLoader-Linked Stealth Stealer Targeting Crypto
Larva-26002 Threat Actor Escalates Attacks on MS-SQL Servers ICE Cloud Malware Larva-26002
  • Malware

Larva-26002 Threat Actor Escalates Attacks on MS-SQL Servers

Do Son March 25, 2026 0
Read More Read more about Larva-26002 Threat Actor Escalates Attacks on MS-SQL Servers
Streaming Nightmare: Unpatched CVSS 10.0 Flaws Leave AVideo Servers Wide Open AVideo RCE YPTSocket Vulnerability AVideo Vulnerabilities Streaming Platform Security AVideo Vulnerabilities CVE-2026-28501
  • Vulnerability Report

Streaming Nightmare: Unpatched CVSS 10.0 Flaws Leave AVideo Servers Wide Open

Do Son March 25, 2026 0
Read More Read more about Streaming Nightmare: Unpatched CVSS 10.0 Flaws Leave AVideo Servers Wide Open
The Sunset of Sora: Why OpenAI is Killing its Video Giant to Build an AI Super-App OpenAI Sora shutdown 2026
  • Technology

The Sunset of Sora: Why OpenAI is Killing its Video Giant to Build an AI Super-App

Do Son March 25, 2026 0
Read More Read more about The Sunset of Sora: Why OpenAI is Killing its Video Giant to Build an AI Super-App
The Digital Fortress Falls: Why Russia Blocked Archive.today and Wikipedia Severed Its Links Archive.today Russia block
  • Technology

The Digital Fortress Falls: Why Russia Blocked Archive.today and Wikipedia Severed Its Links

Do Son March 25, 2026 0
Read More Read more about The Digital Fortress Falls: Why Russia Blocked Archive.today and Wikipedia Severed Its Links
Beyond the SCSI Bottleneck: How to Unlock the Hidden Native NVMe Driver in Windows 11 Windows 11 native NVMe driver NVMe IOPS performance boost
  • Windows

Beyond the SCSI Bottleneck: How to Unlock the Hidden Native NVMe Driver in Windows 11

Do Son March 25, 2026 0
Read More Read more about Beyond the SCSI Bottleneck: How to Unlock the Hidden Native NVMe Driver in Windows 11
3 Steps to Reduce Phishing MTTR to Minutes in Your SOC Screenshot 2026-03-24 at 13.36.12
  • Technique

3 Steps to Reduce Phishing MTTR to Minutes in Your SOC

Do Son March 25, 2026 0
Read More Read more about 3 Steps to Reduce Phishing MTTR to Minutes in Your SOC
VoidStealer Debuts Novel Debugger Bypass for Chrome and Edge Encryption VoidStealer ABE Bypass
  • Malware

VoidStealer Debuts Novel Debugger Bypass for Chrome and Edge Encryption

Do Son March 25, 2026 0
Read More Read more about VoidStealer Debuts Novel Debugger Bypass for Chrome and Edge Encryption
95 Million Downloads Hijacked: The LiteLLM PyPI Backdoor Targeting AI Developers LiteLLM PyPI Supply Chain Attack
  • Malware

95 Million Downloads Hijacked: The LiteLLM PyPI Backdoor Targeting AI Developers

Do Son March 25, 2026 0
Read More Read more about 95 Million Downloads Hijacked: The LiteLLM PyPI Backdoor Targeting AI Developers
From Viewer to SYSTEM: Critical 10.0 CVSS Flaw in GeoVision ERM Allows Full Host Takeover GeoVision CVE-2026-4606 Local Privilege Escalation
  • Vulnerability Report

From Viewer to SYSTEM: Critical 10.0 CVSS Flaw in GeoVision ERM Allows Full Host Takeover

Do Son March 25, 2026 0
Read More Read more about From Viewer to SYSTEM: Critical 10.0 CVSS Flaw in GeoVision ERM Allows Full Host Takeover
Tax Season Terror: Phishing Campaigns Weaponize Urgency to Deliver Remote Access Tools Tax Phishing ScreenConnect RAT
  • Cybercriminals

Tax Season Terror: Phishing Campaigns Weaponize Urgency to Deliver Remote Access Tools

Do Son March 24, 2026 0
Read More Read more about Tax Season Terror: Phishing Campaigns Weaponize Urgency to Deliver Remote Access Tools
High-Severity JSON Schema Flaw Threatens MariaDB Database Stability MariaDB Vulnerability JSON Schema Overflow
  • Vulnerability Report

High-Severity JSON Schema Flaw Threatens MariaDB Database Stability

Do Son March 24, 2026 0
Read More Read more about High-Severity JSON Schema Flaw Threatens MariaDB Database Stability
PolyShell Alert: Critical Magento REST API Vulnerability Faces Massive Global Exploitation in the Wild PolyShell Magento RCE Magento PolyShell REST API RCE CosmicSting (CVE-2024-34102) Magento Security Updates
  • Vulnerability Report

PolyShell Alert: Critical Magento REST API Vulnerability Faces Massive Global Exploitation in the Wild

Do Son March 24, 2026 0
Read More Read more about PolyShell Alert: Critical Magento REST API Vulnerability Faces Massive Global Exploitation in the Wild
The Ransomware ‘Locksmith’: Russian Access Broker Aleksei Volkov Sentenced to 7 Years for $9M Cyber Heist Initial Access Broker Aleksei Volkov
  • Cybercriminals

The Ransomware ‘Locksmith’: Russian Access Broker Aleksei Volkov Sentenced to 7 Years for $9M Cyber Heist

Do Son March 24, 2026 0
Read More Read more about The Ransomware ‘Locksmith’: Russian Access Broker Aleksei Volkov Sentenced to 7 Years for $9M Cyber Heist
‘Keenadu’ Firmware Backdoor Hijacks Android from the Inside Out Keenadu Malware Android Firmware Backdoor
  • Malware

‘Keenadu’ Firmware Backdoor Hijacks Android from the Inside Out

Do Son March 24, 2026 0
Read More Read more about ‘Keenadu’ Firmware Backdoor Hijacks Android from the Inside Out
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-0770CVSS 9.8
    Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2021-27137CVSS 8.1
    An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2026-6875CVSS 9.5
    ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability...
    Admin intel📅 Updated: Jul 18, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-66012CVSS 10.0
    SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp...
  • CVE-2026-61884CVSS 9.8
    The web management interface of Tycon Systems TPDIN-Monitor-WEB2  does not perform server-side validation...
  • CVE-2026-62379CVSS 9.8
    ## Summary A pre-authentication remote code execution vulnerability affects OpenAM. The remote...
  • CVE-2026-62263
    ### Summary The GHSA-6c99-87fr-6q7r fix wrapped WebAuthn authenticator deserialization in an `ObjectInputFilter`...
  • CVE-2026-62835CVSS 9.3
    Improper authorization in Azure Portal allows an unauthorized attacker to disclose information...
  • CVE-2026-48021CVSS 9.1
    In epa4all, prior to version 2026-05-20, an attacker who can intercept the...
  • CVE-2026-59940CVSS 9.8
    ## Summary A type confusion issue in `seroval.fromJSON()` allowed attacker-controlled JSON input...
  • CVE-2026-58630CVSS 10.0
    Improper access control in Azure App Service allows an unauthorized attacker to...
  • CVE-2026-57106CVSS 10.0
    Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to...
  • CVE-2026-56163CVSS 10.0
    Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.