Microsoft has confirmed that a critical remote code execution flaw in Entra ID, its cloud-based identity and access management platform, has already been…
Tag: Vulnerability
August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415 CVEs
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415…
GitLab Released GraphQL Vulnerability (CVE-2026-19478) Emergency Patch
GitLab released an emergency, out-of-band security update to address a critical access control flaw affecting self-managed instances of…
Critical Arbitrary File Upload Vulnerability Patched in Elementor Pro WordPress Plugin
On July 24th, 2026, we received a submission for an Unauthenticated Arbitrary File Upload vulnerability in Elementor Pro, a WordPress plugin with an…
Cisco External Entity Injection Vulnerability Allows Attackers to Read Sensitive Data
Cisco has released security updates for a high-severity XML External Entity injection vulnerability in Cisco BroadWorks that could allow unauthenticated…
MLflow Vulnerability Exploited for Cloud Credential Theft
The critical-severity flaw allows attackers to send HTTP requests to internal endpoints and extract sensitive information.
Cisco BroadWorks Vulnerability Allows Remote Attackers to Access Sensitive Files
Cisco has issued security updates for a high-severity vulnerability in Cisco BroadWorks that could allow unauthenticated remote attackers to access…
Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: Expanding AI Benchmarks in Cybersecurity Beyond Vulnerability Discovery
Zimbra RCE Vulnerability Lets Remote Attackers Execute System Commands
An urgent alert regarding an actively exploited remote code execution vulnerability affecting the Zimbra Collaboration Suite, a widely used enterprise…
Critical Zimbra RCE Vulnerability Actively Exploited in the Wild
CERT Polska has warned that threat actors are actively exploiting a critical remote code execution vulnerability in Zimbra Collaboration Suite. Tracked as…
NetScaler CVE-2026-19490 Lets Attackers Bypass Authentication
NetScaler flaws could enable authentication bypass and DoS attacks.
CISA Adds Microsoft SharePoint Weak Authentication Vulnerability to KEV List
CISA added a critical Microsoft SharePoint authentication flaw to its KEV catalog after CVE-2026-55040 was confirmed in active exploitation, urging…
CISA Adds Microsoft Internet Key Exchange RCE Vulnerability Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency has added a critical Microsoft Internet Key Exchange vulnerability, tracked as CVE-2026-33824,…
GitLab Patches Critical CVE-2026-19478 GraphQL Vulnerability
GitLab patched a critical GraphQL flaw as researchers observed exploitation attempts.
Windows Defender Update for 0-day Vulnerability Breaks Virus Scans
Microsoft Defender has been aborting Quick, Full, and Offline virus scans after a cluster of Security Intelligence updates reached Windows PCs on August…
Hackers Actively Exploiting macOS’s Built-in Screen Sharing Service Vulnerability in the Wild
Hackers are actively abusing a flaw in macOS Screen Sharing to take root-level control of a small number of devices. The attacks turn a built-in…
Critical GitLab Code Injection Flaw CVE-2026-19478
GitLab has released emergency security patches addressing a critical code injection vulnerability that enables unauthenticated attackers to modify or…
Oracle Releases 943 Security Patches Including Critical WebLogic Full Takeover Vulnerability
Oracle has released 943 new security patches in its August 2026 Critical Security Patch Update, addressing flaws across its enterprise software portfolio.…
Critical Cursor 0-day Vulnerability Enables Arbitrary Code Execution Attacks
A binary planting vulnerability in the Cursor IDE that lets a malicious git.exe file, placed at the root of a repository, run automatically the moment a…
CISA Warns of VMware vCenter Path Traversal Vulnerability Actively Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency has added a critical Broadcom VMware vCenter vulnerability, tracked as CVE-2026-59310, to its…
