Vulnerability

WordPress Post SMTP Plugin Vulnerability Exposes 400K Websites to Account Takeover Attacks

A critical security vulnerability in the popular Post SMTP WordPress plugin has left over 400,000 websites exposed to potential account…

9 months ago

AWS Client VPN for Windows Vulnerability Allows Privilege Escalation by Attackers

Amazon Web Services has addressed a critical security vulnerability in its Client VPN software for Windows that could allow attackers…

9 months ago

CISA Alerts on Google Chromium Input Validation Vulnerability Exploited in Ongoing Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Google Chromium vulnerability to its Known Exploited Vulnerabilities (KEV)…

9 months ago

Hackers Exploit SharePoint 0-Day Vulnerability to Breach US Nuclear Weapons Data

A damaging cyber-intrusion has exposed sensitive data within networks that manage elements of the United States’ nuclear weapons enterprise. Investigators…

9 months ago

Severe Vulnerability in JavaScript Library Puts Millions of Apps at Risk of Code Execution Attacks

A critical security vulnerability in the widely-used form-data JavaScript library has been disclosed, potentially exposing millions of applications to sophisticated…

9 months ago

PHP PDO Vulnerability Allows Hackers to Execute Malicious SQL Injections

A critical vulnerability in PHP's PDO (PHP Data Objects) library has been discovered that allows attackers to perform SQL injection…

9 months ago

Microsoft AppLocker Vulnerability Allows Malicious Apps to Bypass Restrictions

A configuration vulnerability in Microsoft's AppLocker security feature that could potentially allow certain applications to bypass system restrictions. The discovery…

9 months ago

Critical Livewire Vulnerability Puts Millions of Laravel Applications at Risk of Remote Code Execution

A critical security vulnerability has been discovered in Livewire v3, a popular full-stack framework for Laravel that enables developers to…

9 months ago

New 7-Zip Vulnerability Lets RAR5 Files Crash Systems

A critical vulnerability in the popular 7-Zip file archiver has been discovered and patched, allowing malicious actors to craft weaponized…

9 months ago

SharePoint 0-Day RCE Vulnerability Allowing Full Server Compromise

A critical zero-day vulnerability in Microsoft SharePoint servers, designated CVE-2025-53770, that allows attackers to achieve remote code execution without authentication.…

9 months ago