exploited

CISA Warns of Exploited Gitea Vulnerability

CISA Warns of Exploited Gitea Vulnerability 2026-08-26 at 08:17 By Eduard Kovacs CVE-2026-60004 is a remote code execution vulnerability patched by Gitea developers in late July with the release of version 1.27.1. The post CISA Warns of Exploited Gitea Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Warns of Exploited Gitea Vulnerability Read More »

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities 2026-08-25 at 16:33 By Eduard Kovacs CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin. The post WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities Read More »

CISA Warns of Exploited Oracle WebLogic Vulnerability

CISA Warns of Exploited Oracle WebLogic Vulnerability 2026-08-25 at 10:46 By Eduard Kovacs The vulnerability is tracked as CVE-2026-21962 and it has been widely exploited by threat actors against WebLogic servers. The post CISA Warns of Exploited Oracle WebLogic Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Warns of Exploited Oracle WebLogic Vulnerability Read More »

CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities

CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities 2026-08-21 at 10:25 By Ionut Arghire The Head Mare hacktivist group has been exploiting the bugs to deploy the PhantomCore malware. The post CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities Read More »

Hackers Target Zimbra Servers in Active Exploitation Campaign

Hackers Target Zimbra Servers in Active Exploitation Campaign 2026-08-20 at 17:50 By Eduard Kovacs Exploitation of the Zimbra Collaboration vulnerability CVE-2026-73570 has been observed by Poland’s CERT Polska. The post Hackers Target Zimbra Servers in Active Exploitation Campaign appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Hackers Target Zimbra Servers in Active Exploitation Campaign Read More »

MLflow Vulnerability Exploited for Cloud Credential Theft

MLflow Vulnerability Exploited for Cloud Credential Theft 2026-08-20 at 15:05 By Ionut Arghire The critical-severity flaw allows attackers to send HTTP requests to internal endpoints and extract sensitive information. The post MLflow Vulnerability Exploited for Cloud Credential Theft appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

MLflow Vulnerability Exploited for Cloud Credential Theft Read More »

CISA Urges Immediate Patching of Exploited Microsoft, VMware, Apple Vulnerabilities

CISA Urges Immediate Patching of Exploited Microsoft, VMware, Apple Vulnerabilities 2026-08-19 at 13:37 By Ionut Arghire The flaws can be exploited for remote code execution, authentication bypass, and device takeover. The post CISA Urges Immediate Patching of Exploited Microsoft, VMware, Apple Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

CISA Urges Immediate Patching of Exploited Microsoft, VMware, Apple Vulnerabilities Read More »

Recent macOS Screen Sharing Vulnerability Exploited in Attacks

Recent macOS Screen Sharing Vulnerability Exploited in Attacks 2026-08-17 at 11:47 By Ionut Arghire Threat actors gained root access to the vulnerable systems and deployed a Monero miner. The post Recent macOS Screen Sharing Vulnerability Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Recent macOS Screen Sharing Vulnerability Exploited in Attacks Read More »

Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure

Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure 2026-08-17 at 11:13 By Eduard Kovacs The vulnerability tracked as CVE-2026-58231 can be exploited to execute arbitrary code and compromise internal components. The post Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure Read More »

Hackers Exploiting Unpatched GeoServer Zero-Day

Hackers Exploiting Unpatched GeoServer Zero-Day 2026-08-14 at 10:01 By Ionut Arghire The security defect is described as an SQL injection that could allow attackers to achieve remote code execution. The post Hackers Exploiting Unpatched GeoServer Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Hackers Exploiting Unpatched GeoServer Zero-Day Read More »

Adobe Commerce Bug Targeted Immediately After Disclosure

Adobe Commerce Bug Targeted Immediately After Disclosure 2026-08-13 at 17:17 By Ionut Arghire The first exploitation attempts targeting CVE-2026-71362 were observed shortly after Adobe released patches. The post Adobe Commerce Bug Targeted Immediately After Disclosure appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Adobe Commerce Bug Targeted Immediately After Disclosure Read More »

SharePoint Vulnerability Exploited Shortly After PoC Release

SharePoint Vulnerability Exploited Shortly After PoC Release 2026-08-12 at 17:47 By Eduard Kovacs The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild. The post SharePoint Vulnerability Exploited Shortly After PoC Release appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

SharePoint Vulnerability Exploited Shortly After PoC Release Read More »

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks 2026-08-12 at 11:45 By Ionut Arghire The bug allowed attackers to gain full control of the victims’ systems and deploy the ForestTiger backdoor. The post Fresh Windows Zero-Day Exploited in North Korean Cyberattacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks Read More »

Cisco Patches Firewall Zero-Day Exploited for DoS Attacks

Cisco Patches Firewall Zero-Day Exploited for DoS Attacks 2026-08-12 at 08:10 By Eduard Kovacs CVE-2026-20349 can be exploited remotely without authentication against Secure Firewall ASA and FTD devices. The post Cisco Patches Firewall Zero-Day Exploited for DoS Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cisco Patches Firewall Zero-Day Exploited for DoS Attacks Read More »

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day 2026-08-11 at 21:46 By Ionut Arghire A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges. The post August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from […]

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day Read More »

CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability

CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability 2026-08-10 at 12:31 By Ionut Arghire The critical-severity flaw allows unauthenticated, remote attackers to execute arbitrary commands. The post CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Urges Immediate Patching of Exploited Progress LoadMaster Vulnerability Read More »

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities 2026-08-05 at 12:44 By Ionut Arghire The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass. The post CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities Read More »

N‑able Patches Vulnerability Exploited to Hack N-central Servers

N‑able Patches Vulnerability Exploited to Hack N-central Servers 2026-08-03 at 15:34 By Eduard Kovacs The N‑central vulnerability CVE-2026-18577 has been exploited in the wild after threat actors found a patch bypass. The post N‑able Patches Vulnerability Exploited to Hack N-central Servers appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

N‑able Patches Vulnerability Exploited to Hack N-central Servers Read More »

Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks

Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks 2026-08-03 at 13:39 By Ionut Arghire The INC Ransomware gang has been targeting vulnerable SMA1000 appliances for root access and lateral movement. The post Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks Read More »

Cisco Secure FMC Zero-Day Exploited in the Wild

Cisco Secure FMC Zero-Day Exploited in the Wild 2026-07-30 at 09:31 By Eduard Kovacs The vulnerability tracked as CVE-2026-20316 can be exploited by a remote, unauthenticated attacker to log into affected devices.  The post Cisco Secure FMC Zero-Day Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Cisco Secure FMC Zero-Day Exploited in the Wild Read More »

Scroll to Top