Three critical vulnerabilities have been discovered in Citrix NetScaler ADC and Gateway devices, with CVE-2025-7775 already being actively exploited for…
Read More »remote code execution
A critical Git vulnerability (CVE-2025-48384) allows arbitrary code execution via maliciously crafted submodules, affecting macOS and Linux systems. CISA has…
Read More »A critical security vulnerability in on-premises Commvault deployments allows unauthenticated attackers to execute remote code by chaining four distinct flaws…
Read More »A critical vulnerability (CVE-2025-31324) in SAP NetWeaver AS Java is actively exploited, allowing unauthenticated attackers to execute remote code via…
Read More »Elastic denies claims of a zero-day remote code execution vulnerability in its Defend platform, refuting a public disclosure by AshES…
Read More »Microsoft's August 2025 Patch Tuesday fixes over 100 vulnerabilities, including a critical Kerberos flaw (CVE-2025-53779) that could grant domain admin…
Read More »Dutch organizations were targeted by cyberattacks exploiting Citrix NetScaler vulnerability CVE-2025-6543, allowing remote code execution or denial-of-service, with breaches obscured…
Read More »Trend Micro released an urgent security update for critical vulnerabilities in its Apex One platform, which could allow remote code…
Read More »Adobe has released urgent patches for critical vulnerabilities (CVE-2025-54253, CVE-2025-54254) in its Experience Manager Forms platform, with exploit code already…
Read More »Security teams are alert as attackers exploit unpatched vulnerabilities (CVE-2025-54948 and CVE-2025-54987) in Trend Micro's Apex One, risking remote code…
Read More »Security researchers discovered high-risk vulnerabilities in NVIDIA's Triton Inference Server, allowing attackers to remotely take control of systems without authentication.…
Read More »A critical security flaw (CVE-2025-54135) in Cursor IDE, dubbed CurXecute, allows remote code execution via manipulated AI prompts, risking unauthorized…
Read More »Microsoft increased its bug bounty rewards to $40,000 for critical vulnerabilities in .NET and ASP.NET Core, emphasizing the need to…
Read More »Federal agencies and private organizations are urged to patch a critical PaperCut vulnerability (CVE-2023-2533) that allows remote code execution, with…
Read More »SonicWall warns of a critical remote code execution vulnerability (CVE-2025-40599) in SMA 100 series appliances, urging immediate patching due to…
Read More »SonicWall issued an urgent alert for a critical vulnerability (CVE-2025-40599) in its SMA 100 Series devices, risking remote code execution…
Read More »Microsoft SharePoint is under active attack via zero-day vulnerabilities (CVE-2025-53770 and CVE-2025-53771), enabling remote code execution on on-premises servers, with…
Read More »Security teams are responding to active exploitation of a critical Fortinet FortiWeb vulnerability (CVE-2025-25257), allowing unauthenticated remote code execution via…
Read More »CVE-2025-25257 is a critical remote code execution flaw in FortiWeb's Fabric Connector, allowing attackers to inject SQL commands via HTTP/S…
Read More »A critical vulnerability (CVE-2025-25257, 9.8/10 severity) in Fortinet's FortiWeb WAF allows unauthenticated remote code execution via SQL injection, requiring immediate…
Read More »