CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • The Cyber Express
Microsoft Patch Tuesday December 2025: One Zero-Day, Six High-Risk Flaws Fixed

Microsoft patched 57 vulnerabilities in its Patch Tuesday December 2025 update, including one exploited zero-day and six high-risk vulnerabilities. The exploited zero-day is CVE-2025-62221, a 7.8-rate ...

Published Date: Dec 10, 2025 (1 hour, 15 minutes ago)
  • CybersecurityNews
Critical Ivanti EPM Vulnerability Allows Admin Session Hijacking via Stored XSS

A critical stored cross-site scripting vulnerability in Ivanti Endpoint Manager (“EPM”) versions 2024 SU4 and below, that could enable attackers to hijack administrator sessions without authentication ...

Published Date: Dec 10, 2025 (1 hour, 49 minutes ago)
  • CybersecurityNews
Over 644,000 Domains Exposed to Critical React Server Components Vulnerability

The Shadowserver Foundation has released alarming new data regarding the exposure of web applications to CVE-2025-55182, a critical vulnerability affecting React Server Components. Following significa ...

Published Date: Dec 10, 2025 (2 hours, 37 minutes ago)
  • hackread.com
North Korean Hackers Deploy EtherRAT Malware in React2Shell Exploits

A team of cybersecurity researchers at Sysdig, a firm specialising in protecting cloud and container-based apps, has found a new malware called EtherRAT being deployed to exploit the severe CVE-2025-5 ...

Published Date: Dec 10, 2025 (2 hours, 52 minutes ago)
  • security.nl
Ivanti brengt update uit voor kritieke XSS-kwetsbaarheid in Endpoint Manager

woensdag 10 december 2025, 16:50 door Redactie, 0 reactiesLaatst bijgewerkt: Vandaag, 17:01 Softwarebedrijf Ivanti heeft een beveiligingsupdate uitgebracht voor een kritieke cross-site scripting (XSS) ...

Published Date: Dec 10, 2025 (3 hours, 36 minutes ago)
  • TheCyberThrone
CVE-2025-6218 and CVE-2025-62221 Hit CISA KEV

December 10, 2025CISA has added CVE-2025-6218 and CVE-2025-62221 to its Known Exploited Vulnerabilities (KEV) catalog, signaling active real-world exploitation and immediate remediation requirements f ...

Published Date: Dec 10, 2025 (4 hours, 22 minutes ago)
  • The Hacker News
Three PCIe Encryption Weaknesses Expose PCIe 5.0+ Systems to Faulty Data Handling

Dec 10, 2025Ravie LakshmananHardware Security / Vulnerability Three security vulnerabilities have been disclosed in the Peripheral Component Interconnect Express (PCIe) Integrity and Data Encryption ...

Published Date: Dec 10, 2025 (5 hours, 54 minutes ago)
  • The Hacker News
Warning: WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat Groups

Dec 10, 2025Ravie LakshmananVulnerability / Malware The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a security flaw impacting the WinRAR file archiver and compressi ...

Published Date: Dec 10, 2025 (7 hours, 32 minutes ago)
  • CybersecurityNews
Microsoft Outlook Vulnerability Let Attackers Execute Malicious Code Remotely

Microsoft has patched a critical remote code execution (RCE)vulnerability in Outlook that could allow attackers to execute malicious code on vulnerable systems. The flaw, tracked as CVE-2025-62562, wa ...

Published Date: Dec 10, 2025 (8 hours, 4 minutes ago)
  • CybersecurityNews
North Korean Hackers Exploit React2Shell Vulnerability in the Wild to Deploy EtherRAT

A novel, highly sophisticated malware strain targeting vulnerable React Server Components, signaling a significant evolution in how state-sponsored threat actors are exploiting the critical React2Shel ...

Published Date: Dec 10, 2025 (8 hours, 26 minutes ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8519 Results