Alerts
Timely information about security issues, vulnerabilities, and exploits.
786 items
24 September 2026
Active Exploitation of High-Severity Vulnerability in WordPress
Attackers are exploiting a high-severity vulnerability in WordPress to achieve remote code execution under specific conditions. Patch immediately.
23 September 2026
Multiple Vulnerabilities in Synology DiskStation Manager (DSM)
Attackers can exploit multiple vulnerabilities in Synology DiskStation Manager (DSM) to read or write arbitrary files and conduct denial-of-service attacks. Patch immediately.
21 September 2026
Active Exploitation of Vulnerability in Cisco Identity Services Engine
Attackers are exploiting a critical vulnerability in Cisco Identity Services Engine and Cisco Identity Services Engine Passive Identity Connector to bypass authentication and gain unauthorised access. Patch immediately.
18 September 2026
Active Exploitation of Critical Vulnerability in Cisco AsyncOS
Attackers are exploiting a critical vulnerability in Cisco AsyncOS to execute arbitrary commands with root privileges. Patch immediately.
17 September 2026
Active Exploitation of Vulnerability in Vite Development Servers
Attackers are exploiting a high severity vulnerability in Vite development servers to retrieve restricted system and configuration files over HTTP. Patch immediately.
17 September 2026
Active Exploitation of Critical Vulnerability in GitLab
Attackers are exploiting a critical vulnerability in GitLab to read arbitrary files from the server. Patch immediately.
15 September 2026
High-Severity Vulnerability in MongoDB Server
Attackers can exploit a high-severity vulnerability in MongoDB Server to gain full unauthenticated administrative access to the affected database. Patch promptly.
14 September 2026
Critical Vulnerabilities in Check Point Quantum Security Gateway and Security Management Server
Attackers can exploit critical vulnerabilities in Check Point Quantum Security Gateway and Security Management Server to perform remote code execution without authentication. Patch immediately.
9 September 2026
High-Severity Vulnerability in PostgreSQL
Attackers can exploit a high-severity vulnerability in PostgreSQL to execute arbitrary code on the affected system. Patch promptly.
9 September 2026
Critical Vulnerabilities in SAP Products
Attackers can exploit multiple vulnerabilities in SAP Products to execute arbitrary commands, obtain sensitive credentials, replace or delete tenant data and perform unauthorised actions. Patch immediately.
