Vulnerabilities
Fresh attacks targeted three VMware ESXi vulnerabilities that were disclosed in March 2025 as zero-days.
Hi, what are you looking for?
The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild.
Fresh attacks targeted three VMware ESXi vulnerabilities that were disclosed in March 2025 as zero-days.
The bug can allow attackers to read arbitrary files from the system, potentially exposing configurations and credentials.
Tracked as CVE-2026-21858 (CVSS score 10), the bug enables remote code execution without authentication.
The maximum-severity code injection flaw can be exploited without authentication for remote code execution.
An error in the firmware-upload handler leads to devices starting an unauthenticated root-level Telnet service.
Four vulnerabilities have been fixed in the latest release of Veeam Backup & Replication.
The critical-severity vulnerability allows unauthenticated, remote attackers to execute arbitrary shell commands.
The flaw is tracked as CVE-2025-54957 and its existence came to light in October 2025 after it was discovered by Google researchers.
With 24 new vulnerabilities known to be exploited by ransomware groups, the list now includes 1,484 software and hardware flaws.
WhatsApp device fingerprinting can be useful in the delivery of sophisticated spyware, but impact is very limited without a zero-day.
GreyNoise has observed thousands of requests targeting a dozen vulnerabilities in Adobe ColdFusion during the Christmas 2025 holiday.
Tracked as CVE-2020-12812, the exploited FortiOS flaw allows threat actors to bypass two-factor authentication.
Dubbed MongoBleed, the high-severity flaw allows unauthenticated, remote attackers to leak sensitive information from MongoDB servers.
The critical-severity bug in the Fireware OS’s iked process leads to unauthenticated remote code execution.
Tracked as CVE-2025-37164, the critical flaw could allow unauthenticated, remote attackers to execute arbitrary code.
Tracked as CVE-2025-59374, the issue is a software backdoor implanted in Asus Live Update in a supply chain attack.
The medium-severity flaw has been exploited in combination with a critical bug for remote code execution.
The critical zero-day is tracked as CVE-2025-20393 and it impacts Secure Email Gateway and Secure Email and Web Manager appliances.
The startup takes an agentic approach to preventing vulnerability exploitation by uncovering exposure across assets.
From open source libraries to AI-powered coding assistants, speed-driven development is introducing new third-party risks that threat actors are increasingly exploiting.