Tuesday, May 5, 2026
HomeCyber News

Cyber News

Microsoft Unveils Updated Security Defaults for Windows 365 Cloud PCs

Microsoft has unveiled two critical security enhancements for Windows 365 Cloud PCs, embedding advanced protections by default to combat data exfiltration and kernel-level exploits. These changes—disabling high-risk redirections and enabling virtualization-based security features—reflect Microsoft Secure Future Initiative (SFI) commitment to "security by default." The...

Versa Director Vulnerability Allow for Arbitrary Command Execution

Multiple critical security vulnerabilities discovered in Versa Director have created significant security risks for organizations utilizing the SD-WAN management platform. Nine separate vulnerability advisories were issued on June 19, 2025, indicating a comprehensive security assessment that revealed systemic issues within the platform's architecture. These...

Dover Fueling Solutions Vulnerability Exposes Fueling Operations to Attackers

A critical security vulnerability in Dover Fueling Solutions' ProGauge MagLink LX fuel monitoring systems could allow remote attackers to gain complete control over fueling operations, manipulate tank data, and potentially deploy malware across affected installations worldwide. The vulnerability, assigned CVE-2025-5310 with a severe CVSS...

ClamAV 1.4.3 and 1.0.9 Released With Critical Buffer Overflow Vulnerabilities

The ClamAV development team has released critical security patches addressing multiple vulnerabilities, including a severe buffer overflow vulnerability that could enable remote code execution. The new versions 1.4.3 and 1.0.9 are now available through the official downloads page, GitHub releases, and Docker Hub, with...

Critical Apache SeaTunnel Vulnerability Allows Unauthenticated Deserialization

A moderate-severity security vulnerability has been discovered in Apache SeaTunnel, a distributed data integration platform, affecting versions 2.3.1 through 2.3.10. The vulnerability enables unauthorized users to execute arbitrary file read operations and deserialization attacks through the platform's RESTful API, potentially compromising system security...

Critical IBM QRadar SIEM Vulnerabilities Enables Remote Command Execution

IBM has disclosed multiple critical security vulnerabilities in its QRadar Security Information and Event Management (SIEM) platform that could enable attackers to gain unauthorized access to sensitive data and execute arbitrary commands on affected systems. The vulnerabilities, published on June 19, 2025, affect QRadar...