Vulnerabilities
Google and Mozilla have released patches for multiple high-severity vulnerabilities affecting Chrome and Firefox.
Hi, what are you looking for?
The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild.
Google and Mozilla have released patches for multiple high-severity vulnerabilities affecting Chrome and Firefox.
A researcher said he found vulnerable internal services that exposed the information of 270,000 Intel employees.
A new public exploit chains two critical flaws in SAP NetWeaver, exposing unpatched instances to code execution attacks.
More than 870 N-able N-central instances have not been patched against CVE-2025-8875 and CVE-2025-8876, two exploited vulnerabilities.
CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
Cisco has released over 20 advisories as part of its August 2025 bundled publication for ASA, FMC and FTD products.
Path traversal and XXE injection flaws allowing unauthenticated remote code execution have been patched in Xerox FreeFlow Core.
CISA reported becoming aware of attacks exploiting CVE-2025-8875 and CVE-2025-8876 in N-able N-central on the day they were patched.
The new DDoS attack vector, which involves HTTP/2 implementation flaws, has been compared to Rapid Reset.
Intel, AMD and Nvidia have published security advisories describing vulnerabilities found recently in their products.
Fortinet and Ivanti have published new security advisories for their August 2025 Patch Tuesday updates.
Adobe’s security updates fix vulnerabilities in Commerce, Substance, InDesign, FrameMaker, Dimension and other products.
Microsoft’s August 2025 Patch Tuesday updates address critical vulnerabilities in Windows, Office, and Hyper-V.
Taking place August 12-13, CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured,...
SAP has released 15 new security notes on the August 2025 Patch Tuesday, including for critical vulnerabilities.
A researcher has been given the highest reward in Google’s Chrome bug bounty program for a sandbox escape with remote code execution.
A researcher has demonstrated how a platform used by over 1,000 dealerships in the US could have been used to hack cars.
Taking place August 12-13, CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured,...
CISA and Microsoft have issued advisories for CVE-2025-53786, a high-severity flaw allowing privilege escalation in cloud environments.
A desync attack method leveraging HTTP/1.1 vulnerabilities impacted many websites and earned researchers more than $200,000 in bug bounties.