NetSPI has uncovered a critical vulnerability in Forescout SecureConnector, a security agent meant to enforce endpoint compliance....
rce
Ubiquiti has issued a security advisory for a critical vulnerability affecting multiple models in its UniFi Access...
A severe remote code execution (RCE) vulnerability has been discovered in Lighthouse Studio, a popular web-based survey...
A critical vulnerability was found in Cisco Identity Services Engine (ISE) and Cisco ISE-PIC. Tracked as CVE-2025-20337,...
Security researcher Vagebondcur has uncovered four vulnerabilities in the Nexxt Solutions NCM-X1800 mesh router, including unauthenticated telnet...
In a recently disclosure, ALE (Alcatel-Lucent Enterprise) has published a security advisory (SA-N0150) addressing multiple critical vulnerabilities...
NVIDIA has released a critical security update for its Container Toolkit and GPU Operator, patching two high-impact...
A critical vulnerability—CVE-2025-34068—has been discovered in Samsung’s WLAN AP WEA453e access points, allowing unauthenticated remote command execution...
A newly discovered Server-Side Template Injection (SSTI) vulnerability in the widely-used LaRecipe documentation tool has been assigned...
The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2025-47812 to its Known Exploited Vulnerabilities (KEV) Catalog...
A flaw has been discovered in ImageMagick, the widely used open-source image manipulation suite, that could lead...
A critical remote code execution (RCE) vulnerability has been discovered in the Symantec Endpoint Management suite, also...
A critical security flaw in Fortinet’s FortiWeb web application firewall has been publicly weaponized, with proof-of-concept (PoC)...
CYFIRMA has uncovered a new threat model called RenderShock — a zero-click attack strategy that turns convenience...
In a warning issued by CERT/CC, multiple high-impact vulnerabilities have been identified in Gigabyte UEFI firmware that...
Axis Communications has issued a security advisory for a critical vulnerability affecting several of its flagship software...
In a concerning development for WordPress site administrators, the Patchstack team has uncovered a targeted supply chain...
Rockwell Automation has issued a security advisory detailing two vulnerabilities affecting its Arena Simulation software. Disclosed by...
On July 1, 2025—just a day after its public disclosure—Huntress witnessed the active exploitation of a critical...
A recent technical deep-dive by Synacktiv has exposed a serious yet often overlooked risk in Laravel—the popular...