Vulnerabilities Cisco Warns of Available PoC for Critical Unified CM Vulnerability The high-severity flaw can be exploited remotely, without authentication, in server-side request forgery (SSRF) attacks. Ionut ArghireJune 4, 2026
Vulnerabilities PoC Code Published for Critical NGINX Vulnerability Introduced in 2008, the critical-severity security defect was patched this week in NGINX Plus and NGINX open source. Ionut ArghireMay 16, 2026
Vulnerabilities Exploitation of Oracle EBS Zero-Day Started 2 Months Before Patching Hundreds of internet-exposed Oracle E-Business Suite instances may still be vulnerable to attacks. Eduard KovacsOctober 8, 2025
Vulnerabilities Adobe Issues Out-of-Band Patches for AEM Forms Vulnerabilities With Public PoC Adobe has released urgent security updates to resolve two AEM Forms vulnerabilities for which proof-of-concept (PoC) code exists. Ionut ArghireAugust 6, 2025
Vulnerabilities Technical Details Published for Critical Cisco IOS XE Vulnerability The critical flaw, tracked as CVE-2025-20188 (CVSS score of 10/10), allows attackers to execute arbitrary code remotely. Ionut ArghireJune 2, 2025
Vulnerabilities Chrome 136 Update Patches Vulnerability With ‘Exploit in the Wild’ Google has rolled out a Chrome 136 update that resolves a high-severity vulnerability for which a public exploit exists. Ionut ArghireMay 15, 2025
Vulnerabilities Dozens of SysAid Instances Vulnerable to Remote Hacking SysAid patches IT service management software vulnerabilities that can be chained for unauthenticated remote command execution. Eduard KovacsMay 8, 2025
Vulnerabilities PoC Published for Exploited SonicWall Vulnerabilities PoC code targeting two exploited SonicWall flaws was published just CISA added them to the KEV catalog. Ionut ArghireMay 5, 2025
Vulnerabilities PoC Exploit Published for Critical Ivanti EPM Vulnerabilities Proof-of-concept (PoC) code and technical details on four critical-severity Ivanti EPM vulnerabilities are now available. Ionut ArghireFebruary 20, 2025
Malware & Threats Infostealer Masquerades as PoC Code Targeting Recent LDAP Vulnerability A fake proof-of-concept (PoC) exploit for a recent LDAP vulnerability distributes information stealer malware. Ionut ArghireJanuary 13, 2025
Vulnerabilities Exploit Code Published for Potentially Dangerous Windows LDAP Vulnerability Proof-of-concept (PoC) code was published for CVE-2024-49113, a denial-of-service (DoS) vulnerability in Windows LDAP. Ionut ArghireJanuary 3, 2025
Vulnerabilities Adobe Patches ColdFusion Flaw at High Risk of Exploitation Adobe has released patches for a high-severity ColdFusion vulnerability for which proof-of-concept (PoC) code exists. Ionut ArghireDecember 24, 2024
Vulnerabilities PoC Exploit Published for Unpatched Mitel MiCollab Vulnerability WatchTowr has published proof-of-concept (PoC) code for an unpatched vulnerability in the Mitel MiCollab enterprise collaboration platform. Ionut ArghireDecember 6, 2024
Vulnerabilities Exploitation of Another Ivanti VPN Vulnerability Observed Organizations urged to hunt for potential compromise as exploitation of a recent Ivanti enterprise VPN vulnerability begins. Ionut ArghireFebruary 12, 2024
Vulnerabilities PoC Exploit Published for Critical Jenkins Vulnerability PoC exploit code targeting a critical Jenkins vulnerability patched last week is already publicly available. Ionut ArghireJanuary 29, 2024
Vulnerabilities PoC Code Published for Just-Disclosed Fortra GoAnywhere Vulnerability PoC code exploiting a critical Fortra GoAnywhere MFT vulnerability gets published one day after public disclosure. Ionut ArghireJanuary 24, 2024