Business-grade email server software SmarterMail just patched a maximum-severity vulnerability that allowed threat actors to ...
The RondoDox botnet has been observed exploiting the critical React2Shell flaw (CVE-2025-55182) to infect vulnerable Next.js ...
An unauthenticated user can execute the attack, and there’s no mitigation, just a hotfix that should be applied immediately.
SafeBreach researchers developed a zero-click PoC exploit that crashes unpatched Windows Servers using the Windows ...
The explosive, easy-to-trigger vulnerability was exploited within hours of disclosure, exposing the risks of default ...
HPE patched a critical OneView vulnerability with CVSS 10.0 that could allow unauthenticated remote code execution in ...
A new report out today from artificial intelligence security startup Cyata Security Ltd. details a critical remote code ...
Because it was under attack before a patch was made available by WatchGuard on December 18, this makes CVE-2025-14733 a bona ...
The zero-day exploitations of Ivanti's MDM platform meant unprecedented pwning of 1000s of orgs by a Chinese APT — and ...
Flaw in remote-access appliance lets attackers chain bugs for root-level takeover SonicWall has warned customers of a ...
With attacks on the critical firewall vulnerability, WatchGuard joins a list of edge device vendors whose products have been ...