In a display of vulnerability chaining, security researcher Kiddo has released a detailed write-up demonstrating how three...
rce
Ideally, text editors are passive tools—you open a file, edit it, and save it. But a new...
A critical security vulnerability carrying a near-maximum severity score has been discovered in “Advanced Custom Fields: Extended,”...
A critical security vulnerability has been identified in the Longwatch video surveillance and monitoring system developed by...
Critical Unpatched Flaw: Vivotek EOL IP Cameras Exposed to Unauthenticated RCE via Command Injection
Critical Unpatched Flaw: Vivotek EOL IP Cameras Exposed to Unauthenticated RCE via Command Injection
The Akamai Security Intelligence and Response Team (SIRT) has uncovered a previously undocumented — and still widely...
A newly disclosed high-severity vulnerability in vLLM—one of the fastest-growing open-source inference engines for large language models—allows...
The CERT Coordination Center (CERT/CC) has issued a warning about multiple unpatched command injection vulnerabilities affecting Tenda’s...
ABB has issued an urgent cybersecurity advisory warning customers of a critical authentication bypass vulnerability in the...
A critical vulnerability (CVE-2025-65108) has been disclosed in the widely used Markdown to PDF npm package, a...
SonicWall has released security updates addressing two vulnerabilities in its Email Security appliances, including one that could...
The AhnLab Security Intelligence Center (ASEC) has uncovered an active exploitation campaign in which threat actors weaponized...
Apache Causeway, a popular framework for rapidly developing domain-driven Java applications, has been found vulnerable to a...
Fortinet has issued an urgent advisory warning customers that a newly disclosed vulnerability in FortiWeb, tracked as...
D-Link has issued a security advisory warning users of the DIR-878 router series that multiple newly disclosed...
METZ CONNECT GmbH, in coordination with CERT@VDE, has issued an urgent security advisory warning of multiple critical...
SolarWinds has released security updates addressing three critical vulnerabilities in Serv-U—its managed file transfer and FTP server...
The pgAdmin development team has issued patches addressing four newly disclosed security vulnerabilities impacting pgAdmin versions up...
IBM has released a new security bulletin addressing multiple high-severity vulnerabilities affecting AIX 7.2, AIX 7.3, and...
The Amazon Threat Intelligence team has uncovered a highly sophisticated threat campaign exploiting multiple zero-day vulnerabilities in...
A newly disclosed vulnerability in Wolfram Cloud version 14.2 — tracked as CVE-2025-11919 — could allow attackers...