CVE-2026-20349 is an actively exploited denial-of-service vulnerability in Cisco Secure Firewall ASA and FTD software, added to CISA's Known Exploited…
Read More »cisa known exploited
Attackers are actively exploiting a critical authentication bypass vulnerability (CVE-2026-16232) in Check Point Security Management and Multi-Domain Security Management servers,…
Read More »Check Point has released a patch for CVE-2026-16232, a critical authentication bypass zero-day vulnerability in its SmartConsole GUI that is…
Read More »CISA confirmed active exploitation of a high-severity SolarWinds Serv-U denial-of-service vulnerability (CVE-2026-28318), which allows remote attackers to crash servers via…
Read More »A critical zero-day vulnerability (CVE-2026-34926) in Trend Micro's Apex One on-premise platform is being actively exploited, with at least one…
Read More »Microsoft has confirmed the CVE-2026-42897 zero-day spoofing flaw in on-premises Exchange Server 2016, 2019, and Subscription Edition, which CISA has…
Read More »Two critical software vulnerabilities are being actively exploited: a Microsoft SharePoint flaw (CVE-2026-20963) and a severe session hijacking issue in…
Read More »Apple has released a critical security update for older iPhone and iPad models to patch actively exploited vulnerabilities, including those…
Read More »CISA has mandated federal agencies to patch two actively exploited vulnerabilities in Roundcube Webmail within three weeks, highlighting the persistent…
Read More »A critical Fortinet firewall vulnerability (CVE-2025-59718) persists despite patches, allowing unauthorized admin access via the FortiCloud SSO feature even on…
Read More »Apple has released urgent security patches for two actively exploited zero-day vulnerabilities (CVE-2025-14174 and CVE-2025-43529) in its WebKit browser engine,…
Read More »Over 800 N-able N-central servers remain vulnerable to two actively exploited critical flaws, CVE-2025-8875 and CVE-2025-8876, allowing attackers to execute…
Read More »










