JPCERT/CC has issued a warning about two serious vulnerabilities in the Nimesa Backup and Recovery solution, a...
rce
Redis, the beloved in-memory data store powering millions of real-time applications, has just patched a critical vulnerability...
In a recent security advisory, researchers from Synacktiv revealed two chained vulnerabilities in ScriptCase’s Production Environment module—known...
IBM X-Force has peeled back the layers on Microsoft Azure Arc, uncovering how the hybrid-cloud management tool—meant...
A newly discovered critical vulnerability in DjVuLibre, the open-source decoder for DjVu document files, has opened the...
Microsoft has released Edge Stable Channel Version 138.0.3351.65, an update that addresses critical browser vulnerabilities impacting Chromium-based...
In a recent deep-dive analysis, Palo Alto Networks’ Unit 42 revealed disturbing insights into a surge of...
A newly disclosed vulnerability in HIKVISION’s widely deployed security management platform, applyCT (previously known as HikCentral), has...
Cymulate Research Labs has revealed Anthropic’s Filesystem MCP Server vulnerabilities. Two newly disclosed flaws—CVE-2025-53110 and CVE-2025-53109—exposes systems...
The Wiz Research Team has uncovered a stealthy and rapidly executed exploitation chain leveraging a misconfigured Java...
A critical security flaw has been discovered in Lucee, the high-performance, open-source CFML (ColdFusion Markup Language) application...
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added a high-severity vulnerability in Google Chrome...
Grafana Labs has issued an urgent security advisory addressing four critical vulnerabilities affecting two of its key...
Cisco has disclosed a critical vulnerability in its Unified Communications Manager (Unified CM) and Session Management Edition...
A critical remote code execution (RCE) vulnerability has been discovered in Wing FTP Server, a popular cross-platform...
A newly disclosed high-severity vulnerability in the popular Forminator plugin threatens the security of hundreds of thousands...
Netflix Conductor, the powerful microservices orchestration engine used to automate complex workflows, has been found vulnerable to...
DataEase, an open-source business intelligence (BI) platform known for its ease of use and data visualization capabilities,...
Two critical vulnerabilities recently disclosed by CERT@VDE, in coordination with industrial automation company Pilz, highlight a sobering...
The Electron team has published a new security advisory addressing two significant vulnerabilities that could impact a...