Vulnerability

Tesla Wall Charger Vulnerability Exposed in Swift 18-Minute Attack

A critical vulnerability in Tesla's Wall Connector home charging stations, proving that attackers can gain control of the devices through…

10 months ago

Apache CloudStack Vulnerability Allows Attackers to Execute Privileged Actions

The Apache CloudStack project is a leading open-source Infrastructure-as-a-Service (IaaS) platform used globally by many organizations to orchestrate cloud environments.…

10 months ago

CoreDNS Vulnerability Allows Attackers to Exhaust Server Memory Through Amplification Attack

A critical Denial-of-Service (DoS) vulnerability (CVE-2025-XXXX) has been patched in CoreDNS’s DNS-over-QUIC (DoQ) server implementation. The flaw allows remote attackers…

10 months ago

New Secure Boot Vulnerability Allows Attackers to Install Malware in PC and Server Boot Processes

Security researchers from Binarly have uncovered a major software vulnerability in the Unified Extensible Firmware Interface (UEFI) ecosystem, specifically impacting…

10 months ago

Insyde UEFI Application Vulnerability Enables Digital Certificate Injection Through NVRAM Variable

A critical vulnerability in Insyde H2O UEFI firmware (tracked as CVE-2025-XXXX) allows attackers to bypass Secure Boot protections by injecting…

10 months ago

Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers

On June 10, 2025, Microsoft confirmed a critical security vulnerability (CVE-2025-47176) in Microsoft Office Outlook, enabling attackers to execute arbitrary…

10 months ago

Apache Kafka SSRF Vulnerability Allows Attackers to Access Arbitrary Files

A concerning security flaw has emerged affecting Apache Kafka, the widely adopted distributed event streaming platform. Researchers have identified a Severe…

10 months ago

New Nday Vulnerability in Zyxel NWA50AX Pro Enables Arbitrary File Deletion

A vulnerability researcher has discovered a critical security vulnerability in Zyxel NWA50AX Pro WiFi 6 access points that allows unauthenticated…

10 months ago

CISA Alerts on Exploited Linux Kernel Ownership Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory about a critical Linux kernel vulnerability (CVE-2023-0386) actively…

10 months ago

Google Gerrit Vulnerability Exposes 18 Projects, Including ChromiumOS

A critical vulnerability in Google’s Gerrit code-collaboration platform allowed unauthorized actors to inject malicious code into at least 18 high-profile…

10 months ago