Vulnerabilities
Patches released by Fortinet and Ivanti resolve over a dozen vulnerabilities, including high-severity flaws leading to code execution, credential leaks.
Hi, what are you looking for?
The security defect is described as an SQL injection that could allow attackers to achieve remote code execution.
Patches released by Fortinet and Ivanti resolve over a dozen vulnerabilities, including high-severity flaws leading to code execution, credential leaks.
Google and Mozilla have released patches for a combined total of four high-severity memory bugs in Chrome and Firefox.
Patch Tuesday: Adobe documents hundreds of bugs across multiple products and warns of code execution, feature bypass risks.
Redmond warns that external control of a file name or path in WebDAV "allows an unauthorized attacker to execute code over a network."
Security researchers uncover critical flaws and widespread misconfigurations in Salesforce’s industry-specific CRM solutions.
SAP has fixed a critical NetWeaver vulnerability allowing attackers to bypass authorization checks and escalate their privileges.
Google has awarded $5,000 to a researcher who found security holes that enabled brute-forcing the phone number of any user.
Cisco has released patches for a critical vulnerability impacting cloud deployments of Identity Services Engine (ISE).
An HPE StoreOnce vulnerability allows attackers to bypass authentication, potentially leading to remote code execution.
Learn why your security controls matter more than theoretical risk scores and how exposure validation helps slash massive patch lists down to the few...
Reported by the Google Threat Analysis Group, the vulnerability might have been exploited by commercial spyware.
Chipmaker says there are indications from Google Threat Analysis Group that a trio of flaws “may be under limited, targeted exploitation.”
Exploitation of the vBulletin vulnerability tracked as CVE-2025-48827 and CVE-2025-48828 started shortly after disclosure.
The critical flaw, tracked as CVE-2025-20188 (CVSS score of 10/10), allows attackers to execute arbitrary code remotely.
Professional hackers have built a network of ASUS routers that can survive firmware upgrades, factory reboots and most anti-malware scans.
Google and Mozilla released patches for Chrome and FireFox to address a total of 21 vulnerabilities between the two browsers, including three rated high...
New report says organizations should always consider environmental context when assessing the impact of vulnerabilities in CISA KEV catalog.
Akamai documents a privilege escalation flaw in Windows Server 2025 after Redmond declines to ship an immediate patch.
Cisco published 10 security advisories detailing over a dozen vulnerabilities, including two high-severity flaws in its Identity Services Engine (ISE) and Unified Intelligence Center.
GitLab and Atlassian have released patches for over a dozen vulnerabilities in their products, including high-severity bugs.