Nagios XI, one of the most widely used IT infrastructure monitoring solutions, has been found vulnerable to...
Remote Code Execution
The developers of ImageMagick, one of the most widely used open-source image processing libraries, have disclosed a...
The Sangoma FreePBX Security Team has issued a critical advisory for a newly discovered vulnerability in its...
The Cloud Software Group (CSG) has released urgent security updates to address three high-severity vulnerabilities affecting NetScaler...
Plex Media Server (PMS) users are being urged to update their systems immediately after the discovery of...
A new report from Palo Alto Networks’ Unit 42 has shed light on an unusual and stealthy...
Under normal circumstances, software developers recommend that users promptly update to the latest version after a release....
Siemens ProductCERT has issued a high-severity security advisory (SSA-493787) warning of a critical vulnerability in its SIMATIC...
Fortinet has issued an urgent security advisory for a critical remote unauthenticated command injection vulnerability affecting multiple...
Security researchers at Unit 42 have issued an urgent warning regarding CVE-2025-32433, a CVSS 10.0-rated vulnerability in...
BadCam: Critical Flaws in Lenovo Linux Webcams Allow Remote BadUSB Attacks and Persistent Infections
BadCam: Critical Flaws in Lenovo Linux Webcams Allow Remote BadUSB Attacks and Persistent Infections
Security researchers at Eclypsium have identified critical vulnerabilities in select Lenovo USB webcams that could allow attackers...
Xerox has released a security update for FreeFlow Core, addressing two high-impact vulnerabilities that could allow attackers...
Security researchers at ESET have uncovered a zero-day path traversal vulnerability in the Windows version of WinRAR...
Socket’s Threat Research Team has uncovered an alarming wave of malicious Go packages—some still live on GitHub—designed...
Ubiquiti has issued a comprehensive security advisory addressing multiple vulnerabilities in its UniFi Connect product line, affecting...
Socket’s Threat Research Team has uncovered two malicious npm packages—naya-flore and nvlore-hsc—designed to target developers building WhatsApp...
Security researcher Juan Jose Lopez Jaimez published the technical details and proof-of-concept exploit code for a vulnerability...
A critical vulnerability—CVE-2025-54594 (CVSS 9.1)—has been identified in the React Native Bottom Tabs project, exposing the repository...
Adobe has released urgent patches for two critical vulnerabilities affecting Adobe Experience Manager (AEM) Forms on JEE,...
Rockwell Automation has issued a security advisory addressing three memory abuse vulnerabilities in its Arena Simulation software,...