After discovering that hackers were exploiting a zero-day vulnerability in the Chakra JavaScript engine used by Internet...
rce
Elastic has released urgent security updates for Elastic Cloud Enterprise (ECE) to patch a critical vulnerability (CVE-2025-37729)...
A critical security flaw has been discovered in Cherry Studio, a cross-platform desktop client that supports multiple...
Apple has announced a major overhaul of its Security Bounty vulnerability reward program, set to take effect...
A critical-severity vulnerability has been disclosed in Happy DOM, a popular JavaScript package used to emulate web...
The Zero Day Initiative (ZDI) has published details of two critical vulnerabilities in the popular open-source compression...
Google Threat Intelligence Group (GTIG) and Mandiant have jointly disclosed an extensive data theft and extortion campaign...
Huntress has sounded the alarm over active exploitation of a newly discovered Local File Inclusion (LFI) vulnerability...
NVIDIA has released an important software security update for its GPU Display Driver, addressing multiple vulnerabilities that...
Security researcher Rocco Calvi detailed a critical flaw in the TP-Link AX1800 WiFi 6 Router (Archer AX21/AX20)...
The maintainers of Flowise, an open-source generative AI development platform for building AI agents and LLM workflows,...
The Deno project has issued a new security advisory warning of a command injection vulnerability on Windows...
Security researcher David Leadbeater has disclosed a vulnerability in OpenSSH, identified as CVE-2025-61984, which highlights how even...
The Qt Group has released a critical security advisory addressing two severe vulnerabilities in the Qt SVG...
CrowdStrike has sounded the alarm on an ongoing mass exploitation campaign targeting Oracle E-Business Suite (EBS) applications...
Microsoft Threat Intelligence has issued a warning following the discovery of active exploitation of a newly disclosed...
IBM has released fixes for three security vulnerabilities affecting its IBM Security Verify Access and IBM Verify...
Security researchers at Rapid7 have published a detailed technical analysis uncovering how a pair of zero-day vulnerabilities...
Cybersecurity researchers at Synacktiv have uncovered two critical vulnerabilities in Snipe-IT, an open-source IT asset management system,...
A serious vulnerability in the Unity Runtime, tracked as CVE-2025-59489 (CVSS 8.4), has been discovered by security...
A newly disclosed vulnerability in DrayTek’s Vigor routers, tracked as CVE-2025-10547, could allow remote attackers to execute...
Oracle has issued an emergency Security Alert addressing a critical vulnerability (CVE-2025-61882) in Oracle E-Business Suite, warning...