Forgejo developers released version 16.0.4 on September 11, 2026, to address a critical flaw. This severe bug...
Remote Code Execution
Check Point released emergency security updates on September 9, 2026, to address two critical-severity flaws. These critical...
Apache has disclosed three Apache Nutch vulnerabilities in the Nutch Server REST API. The most serious, CVE-2026-41870,...
TL;DR Ivanti patched eight vulnerabilities in its Neurons for ITSM platform, including five rated Critical with CVSS...
Dell patched multiple critical flaws in its Secure Connect Gateway on August 31, 2026. The most severe...
Attacks against Magento stores began on September 4, 2026. Security firm Sansec named the flaw StyleSmuggler. This...
ASUS published CVE-2026-75754 on September 4, 2026. This ASUS Control Center vulnerability earns a maximum CVSS score...
SignalWire shipped FreeSWITCH 1.11.3 on August 28, 2026. The vendor called it an important release with critical...
TL;DR Attackers are exploiting CVE-2026-14894 in the wild. This critical Super Forms vulnerability lets unauthenticated users upload...
Two critical vulnerabilities impact WHMCS billing platforms. A new WHMCS security update resolves a severe remote code...
SonicWall released a security bulletin detailing three security flaws in on-premise management appliances. These SonicWall NSM vulnerabilities...
TL;DR Cisco disclosed CVE-2026-20212 on September 2, 2026. This critical Cisco Nexus 9000 vulnerability allows unauthenticated remote...
TL;DR Jenkins shipped a large security advisory on September 2, 2026. It fixes more than 30 CVEs...
TL;DR Attackers are exploiting CVE-2026-9586 in the wild. This critical Sangoma Switchvox vulnerability turns an unauthenticated SQL...
TL;DR A critical Redis vulnerability, tracked as CVE-2026-81934, allows remote code execution on TLS-enabled servers. It carries...
TL;DR CERT@VDE published full details of CVE-2026-78319 on September 1, 2026. This SAUTER building controller vulnerability lets...
TL;DR A PaperCut vulnerability is under active attack. The zero-day is an exploit chain, tracked as CVE-2026-81578...
TL;DR WatchGuard patched five critical flaws in Fireware OS and Dimension on August 27, 2026. Each carries...
TL;DR TeamViewer has patched two TeamViewer vulnerabilities in its Desktop Clients. The more severe, CVE-2026-19042, is a...
Update 3: Piotr Karwasz, a member of the Apache Software Foundation, stated that this alert re-covers an...
TL;DR Vercel patched two critical Next.js flaws that allow unauthenticated remote code execution. One is CVE-2026-75604, scoring...
TL;DR WatchGuard patched two critical flaws in its WatchGuard Agent for Windows. Both enable unauthenticated remote code...