ManageEngine’s Exchange Reporter Plus, a widely-used web-based monitoring and reporting tool for Microsoft Exchange, has been found...
rce
B. Braun Melsungen AG has issued a high-priority security advisory warning of three severe vulnerabilities affecting its...
Security researcher Egidio Romano (EgiX) uncovers a fascinating PHP Object Injection (POI) vulnerability in legacy versions of...
A newly disclosed vulnerability in the Auth0 PHP SDK—a widely-used authentication toolkit with over 16 million downloads—poses...
Two newly disclosed vulnerabilities in popular telecommunications devices expose critical infrastructure to unauthenticated remote code execution and...
Hewlett Packard Enterprise (HPE) has issued a security bulletin detailing multiple severe vulnerabilities in its StoreOnce Software,...
Security researcher João Domingos has published a comprehensive breakdown of a full exploit chain affecting the FiberGateway...
MediaTek, a leading global chipset manufacturer, has published its June 2025 Product Security Bulletin, disclosing one high-severity...
Roundcube Webmail, a widely-used browser-based IMAP client, has patched a critical security vulnerability, tracked as CVE-2025-49113 (CVSS...
Apple has patched a high-severity zero-day vulnerability in CoreAudio, the framework responsible for audio playback and processing...
Veritas has issued a security advisory warning users of its Desktop Laptop Option (DLO) platform about two...
Security researchers at Rapid7 have uncovered a troubling trio of vulnerabilities in MICI Network Co., Ltd.’s NetFax...
A critical vulnerability—CVE-2025-20188—has been disclosed in Cisco IOS XE Wireless LAN Controller (WLC) software, allowing unauthenticated attackers...
IBM has issued a critical security update for its Tivoli Monitoring suite, addressing a high-severity vulnerability that...
A critical vulnerability in the Tenda W18Ev2 Enterprise Router allows unauthenticated attackers to remotely change the administrator...
Redis, the lightning-fast in-memory data store beloved by developers for real-time data applications, has recently patched a...
A newly disclosed vulnerability in Apache Commons BeanUtils has raised serious concerns for Java-based applications relying on...
The Mozilla Foundation has released a security advisory addressing a critical vulnerability affecting Firefox and other Mozilla-based...
Sekoia’s latest threat intelligence report reveals a targeted exploitation campaign of CVE-2025-32432, a critical unauthenticated remote code...
CERT@VDE and Lenze SE have disclosed two local privilege escalation vulnerabilities affecting the Lenze VPN Client on...