CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • cert.pl
Vulnerability in Carbone software

Vulnerability in Carbone software CVE ID CVE-2026-18929 Publication date 18 August 2026 Vendor Carbone Product Carbone Vulnerable versions All before 3.8.2 Vulnerability type (CWE) Improper handling o ...

Published Date: Aug 18, 2026 (2 hours, 36 minutes ago)
  • security.nl
Kritieke Citrix NetScaler RCE-kwetsbaarheid misbruikt bij aanvallen

dinsdag 18 augustus 2026, 10:20 door Redactie, 1 reactiesLaatst bijgewerkt: Vandaag, 12:02 Een kritieke kwetsbaarheid in Citrix NetScaler ADC en Citrix NetScaler Gateway die remote code execution (RCE ...

Published Date: Aug 18, 2026 (5 hours, 11 minutes ago)
  • security.nl
Apple dicht lek waardoor afbeelding code op iPhones en Macs kan uitvoeren

Apple heeft beveiligingsupdates voor iOS, iPadOS en macOS uitgebracht die meerdere kwetsbaarheden verhelpen, waaronder een beveiligingslek dat het uitvoeren van willekeurige code maakt bij het verwerk ...

Published Date: Aug 18, 2026 (5 hours, 53 minutes ago)
  • The Hacker News
CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitat ...

Published Date: Aug 18, 2026 (6 hours, 57 minutes ago)
  • The Hacker News
Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects

GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauth ...

Published Date: Aug 17, 2026 (16 hours, 28 minutes ago)
  • The Hacker News
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads

A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to achieve arbitrary code execution on suscepti ...

Published Date: Aug 17, 2026 (19 hours, 9 minutes ago)
  • Kaspersky
ClickFix on Steam forums: how malicious PowerShell commands install a crypto miner | Kaspersky official blog

This year has seen a real boom in ClickFix attacks. It’s such a hit with criminals that we barely finish writing about one variation before it’s time to cover the next. This time, attackers are target ...

Published Date: Aug 17, 2026 (21 hours, 26 minutes ago)
  • The Hacker News
⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

The expensive attacks are not always the clever ones. This week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supply-chain problems ...

Published Date: Aug 17, 2026 (1 day ago)
  • The Hacker News
How MCP Servers Can Expose Enterprise Secrets

MCP servers can expose enterprise secrets through plaintext configuration files, over-permissioned access and prompt injection, often before security teams even know the server is running. As more org ...

Published Date: Aug 17, 2026 (1 day, 1 hour ago)
  • cert.pl
Vulnerability in OutSystems Service Center software

Vulnerability in OutSystems Service Center software CVE ID CVE-2026-40126 Publication date 17 August 2026 Vendor OutSystems Product Service Center Vulnerable versions All before 11.41.2 Vulnerability ...

Published Date: Aug 17, 2026 (1 day, 2 hours ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 12075 Results