Trending Now​

CVE-2026-1340: Critical Ivanti EPMM RCE Vulnerability Actively Exploited in the Wild

A critical vulnerability, CVE-2026-1340, has been identified in Ivanti Endpoint Manager Mobile...

CVE-2026-34621: Adobe Acrobat Reader Vulnerability Enables Code Execution via Malicious Files

A crafted PDF file could exploit CVE-2026-34621 in Adobe Acrobat Reader. Understand the risk, attack...

CVE-2026-35616: Fortinet FortiClient EMS Vulnerability Allows Unauthenticated Remote Code Execution

CVE-2026-35616 is a critical vulnerability affecting Fortinet FortiClient EMS that allows...

CVE-2025-59287: WSUS RCE Vulnerability Explained

CVE-2025-55182, known as React2Shell, is a critical vulnerability affecting applications with React...

CVE-2025-55182 (React2Shell): A Critical React Server Components Vulnerability

CVE-2025-55182, known as React2Shell, is a critical vulnerability affecting applications with React...

CVE-2022-30190 (Follina) — MSDT RCE in Windows (what to know now)

CVE-2022-30190 commonly referred to as Follina grabbed headlines in 2022 because attackers could...

Recent Post​

CVE‑2025‑52842: Reflected XSS in Laundry Application

CVE‑2025‑52842 is a medium-severity reflected Cross-Site Scripting (XSS) vulnerability in Laundry 2.3.0, a desktop application for Linux and macOS. By...

CVE‑2025‑36630: Local Privilege Escalation in Tenable Nessus on Windows

CVE‑2025‑36630 is a newly identified high-severity vulnerability affecting Tenable Nessus on Windows systems (versions prior to 10.8.5). The flaw...

CVE‑2025‑3461: Unauthenticated Telnet Access in Quantenna Wi‑Fi Chipsets

CVE‑2025‑3461 is a newly assigned critical-severity vulnerability in Quantenna Wi‑Fi chipsets (used in various routers and embedded devices), where a...

CVE‑2024‑55585: Unauthenticated Admin API Access in moPS App

CVE‑2024‑55585 is a high to critical severity vulnerability affecting the moPS App through version 1.8.618. The flaw allows unauthenticated users to...

CVE-2025-49127: Unauthenticated Remote Code Execution in Kafbat UI

CVE-2025-49127 is a recently disclosed high-severity vulnerability affecting Kafbat UI, a web interface for managing Apache Kafka clusters. The flaw...

CVE-2025-5733: Full Path Disclosure Vulnerability in Modern Events Calendar Lite Plugin for WordPress

CVE-2025-5733 is a recently disclosed vulnerability affecting the Modern Events Calendar Lite plugin for WordPress (versions ≤ 7.21.9). The flaw...

CVE-2025-5419: High-Severity Zero-Day Vulnerability in Google Chrome’s V8 Engine

CVE-2025-5419 is a recently disclosed high-severity vulnerability affecting Google Chrome’s V8 JavaScript engine. This out-of-bounds read and...

CVE-2025-4224: Stored Cross-Site Scripting Vulnerability in wpForo Advanced Attachments Plugin

CVE-2025-4224 is a recently disclosed vulnerability affecting the wpForo + wpForo Advanced Attachments plugin for WordPress. Versions ≤ 3.1.3 are...

CVE-2025-4857: Local File Inclusion Vulnerability in Newsletters Plugin for WordPress

CVE-2025-4857 is a recently disclosed vulnerability affecting the widely used Newsletters plugin for WordPress (versions ≤ 4.9.9.9). The flaw allows...