CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
CybersecurityNews
CISA Warns of Zimbra Collaboration Suite (ZCS) XSS Zero-Day Vulnerability Actively Exploited in Attacks
CISA has issued a critical warning regarding a zero-day cross-site scripting (XSS) vulnerability in Synacor’s Zimbra Collaboration Suite (ZCS), designated as CVE-2025-27915. This vulnerability has bee ...
-
security.nl
CrowdStrike: Kritiek lek in Oracle EBS sinds augustus misbruikt bij aanvallen
Een kritieke kwetsbaarheid in Oracle E-Business Suite (EBS), waarvoor op 4 oktober een noodpatch verscheen, is sinds 9 augustus misbruikt bij aanvallen op organisaties, zo stelt securitybedrijf CrowdS ...
-
CybersecurityNews
Multiple Chrome Vulnerabilities Expose Users to Arbitrary Code Execution Attacks
Google has released Chrome version 141.0.7390.65/.66 for Windows and Mac, along with 141.0.7390.65 for Linux, addressing multiple critical security vulnerabilities that could allow attackers to execut ...
-
Daily CyberSecurity
Microsoft Signs 100 MW Solar PPA with Shizen Energy to Power AI in Japan
Microsoft continues to advance its renewable energy transition in Japan, having recently confirmed the signing of three new solar Power Purchase Agreements (PPAs) with Japanese renewable energy provid ...
-
Daily CyberSecurity
Evernote Relaunches as AI-First Note App with Semantic Search and OpenAI Assistant
Once the defining name in note-taking applications, Evernote had seen its presence wane in recent years. Yet under the stewardship of Italian developer Bending Spoons, the platform has undergone its m ...
-
Daily CyberSecurity
Critical AWS VPN Client Flaw CVE-2025-11462 (CVSS 9.3) Allows Root Privilege Escalation on macOS
Amazon Web Services (AWS) has released an important security bulletin warning users of a critical local privilege escalation vulnerability in the AWS Client VPN application for macOS. The flaw, tracke ...
-
Daily CyberSecurity
Critical Nagios Flaw CVE-2025-44823 (CVSS 9.9) Leaks Plaintext Admin API Keys, PoC Available
Image: Nagios Security researchers have identified two critical vulnerabilities in Nagios Log Server, the enterprise log management solution widely used for centralized logging, real-time monitoring, ...
-
Daily CyberSecurity
Zimbra XSS Zero-Day (CVE-2025-27915) Actively Exploited; CISA Adds to KEV Catalog
A cross-site scripting (XSS) vulnerability in Synacor Zimbra Collaboration Suite (ZCS) — tracked as CVE-2025-27915 — has been confirmed to be actively exploited in the wild, prompting CISA to add the ...
-
Daily CyberSecurity
OpenSSH Flaw (CVE-2025-61984) Allows Remote Code Execution via Usernames
Security researcher David Leadbeater has disclosed a vulnerability in OpenSSH, identified as CVE-2025-61984, which highlights how even minor quirks in command-line parsing and shell behavior can open ...
-
Daily CyberSecurity
Chrome 141 Stable Fixes Two High-Severity Flaws: Heap Overflow in Sync and UAF in Storage
Google has released a new Stable Channel update for Chrome 141.0.7390.65/.66 on Windows and macOS and 141.0.7390.65 for Linux, addressing three significant security vulnerabilities that could allow at ...