CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
security.nl
Kritiek beveiligingslek in Windows IKE-extensie misbruikt bij aanvallen
Een kritieke kwetsbaarheid in de Windows Internet Key Exchange (IKE)-extensie, die remote code execution op Windowssystemen mogelijk (RCE) maakt, wordt misbruikt bij aanvallen. Dat meldt het Amerikaan ...
-
The Hacker News
Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P
Cybersecurity researchers at Hunt.io have disclosed details of a campaign that they say compromised more than 14,530 Dahua devices between June 17 and July 22, 2026, using credential attacks, two auth ...
-
The Hacker News
Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, stating they are being exploited i ...
-
cert.pl
Vulnerabilities in nnn software
Vulnerabilities in nnn software CVE ID CVE-2026-65609 Publication date 19 August 2026 Vendor nnn Product nnn Vulnerable versions 5.2 Vulnerability type (CWE) Out-of-bounds write (CWE-787) Report sourc ...
-
security.nl
Australië waarschuwt bedrijven voor aanvallen op N-central RMM-servers
De Australische overheid waarschuwt bedrijven voor aanvallen op N-central RMM-servers, waarbij misbruik wordt gemaakt van twee kwetsbaarheden waarvoor beveiligingsupdates beschikbaar zijn. N-central i ...
-
The Cyber Express
Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers to remotely modify or delete public projects and use ...
-
The Hacker News
Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
A JavaServer Pages (JSP) web shell deployed following the exploitation of a critical security flaw in PTC Windchill and FlexPLM servers is specifically designed for the enterprise Product Lifecycle Ma ...
-
TheCyberThrone
GitLab 19.2.4: Critical GraphQL Vulnerability patched
GitLab has released an ad-hoc critical security patch for its Community Edition (CE) and Enterprise Edition (EE), addressing a critical GraphQL-related vulnerability that could allow an unauthenticat ...
-
The Hacker News
Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other info ...
-
The Hacker News
Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets
Two critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and ...