Vulnerabilities

CISA Releases ICS Advisories Addressing Ongoing Vulnerabilities and Exploits

The Cybersecurity and Infrastructure Security Agency (CISA) has released eight Industrial Control Systems (ICS) advisories on June 24, 2025, addressing…

10 months ago

NVIDIA Megatron LM Vulnerabilities Allows Attackers to Inject Malicious Code

NVIDIA has disclosed critical security vulnerabilities in its Megatron LM software that enable attackers to inject malicious code through compromised…

10 months ago

OWASP AI Testing Guide: A New Initiative to Identify Vulnerabilities in AI Applications

The Open Web Application Security Project (OWASP) has announced the development of a comprehensive AI Testing Guide, marking a significant…

10 months ago

Aviatrix Cloud Controller Authentication Vulnerabilities Allows Remote Code Execution by Attackers

A two severe security vulnerabilities in Aviatrix Controller, a popular Software-Defined Networking (SDN) utility used to create links between different…

10 months ago

Amazon EKS Vulnerabilities Put AWS Credentials at Risk and Allow Privilege Escalation

A critical vulnerabilities in Amazon Elastic Kubernetes Service (EKS) environments that allow attackers to exploit misconfigured containers to access sensitive…

10 months ago

ClamAV 1.4.3 and 1.0.9 Released With Critical Buffer Overflow Vulnerabilities

The ClamAV development team has released critical security patches addressing multiple vulnerabilities, including a severe buffer overflow vulnerability that could…

10 months ago

Critical IBM QRadar SIEM Vulnerabilities Enables Remote Command Execution

IBM has disclosed multiple critical security vulnerabilities in its QRadar Security Information and Event Management (SIEM) platform that could enable…

10 months ago

CISA Alerts Public to Active Exploitation of Erlang/OTP SSH Server RCE Flaw

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical update to its Known Exploited Vulnerabilities (KEV) catalog regarding…

10 months ago

84,000+ Roundcube Webmail Installations Exposed to RCE Vulnerabilities

Recent security disclosures have revealed that Roundcube Webmail, the world’s most widely deployed open-source webmail client, is under siege from a…

10 months ago

Critical Chrome Vulnerabilities Allow Remote Code Execution – Update Immediately!

An urgent security update for its Chrome browser, addressing critical vulnerabilities that could allow attackers to execute arbitrary code on…

10 months ago