CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 10 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
security.nl
Securitybedrijf meldt actief misbruik van XSS-lek in Roundcube Webmail
Aanvallers maken opnieuw actief misbruik van een XSS-kwetsbaarheid in Roundcube Webmail, zo meldt securitybedrijf Positive Technologies. Roudcube is opensource-webmailsoftware en wordt door allerlei o ...
-
Cybersecurity News
Cisco Investigates Potential Data Exposure, Confirms No Breach of Internal Systems
Cisco Systems is currently investigating an alleged unauthorized access to data housed on a public-facing DevHub environment. While initial reports suggested a potential breach of Cisco’s internal sys ...
-
seclists.org
SEC Consult SA-20241015-0 :: Multiple Vulnerabilities in Rittal IoT Interface & CMC III Processing Unit (CVE-2024-47943, CVE-2024-47944, CVE-2024-47945)
Full Disclosure mailing list archives From: SEC Consult Vulnerability Lab via Fulldisclosure <fulldisclosure () seclists org> Date: Thu, 17 Oct 2024 05:46:06 +0000 SEC Consult Vulnerability Lab Securi ...
-
seclists.org
CVE-2024-48939: Unauthorized enabling of API in Paxton Net2 software
Full Disclosure mailing list archives From: Jeroen Hermans via Fulldisclosure <fulldisclosure () seclists org> Date: Sun, 20 Oct 2024 12:37:31 +0200 CloudAware Security Advisory CVE-2024-48939: Unauth ...
-
Cybersecurity News
Microsoft Windows Flaw: CVE-2024-30090 PoC Exploit Published, Posing SYSTEM Privilege Threat
Security researcher Angelboy (@scwuaptx) with DEVCORE has identified a privilege escalation vulnerability in Microsoft’s Kernel Streaming service. The vulnerability, tracked as CVE-2024-30090 and assi ...
-
Cybersecurity News
CVE-2024-21216 (CVSS 9.8): Oracle WebLogic Flaw That Could Give Attackers Full Control
Oracle has recently rolled out its October 2024 Critical Patch Update (CPU), addressing 329 vulnerabilities across a variety of products. Among these are five severe vulnerabilities within the Oracle ...
-
Dark Reading
DPRK Uses Microsoft Zero-Day in No-Click Toast Attacks
Source: Eric Anthony Johnson via Alamy Stock PhotoThe North Korea-backed advanced persistent threat known as APT37 exploited a zero-day vulnerability in Microsoft's Internet Explorer Web browser over ...
-
Hackread - Latest Cybersecurity, Tech, Crypto & Hacking News
“HM Surf” macOS Flaw Lets Attackers Access Camera and Mic – Patch Now!
Researchers at Microsoft discovered a new macOS vulnerability, “HM Surf” (CVE-2024-44133), which bypasses TCC protections, allowing unauthorized access to sensitive data like the camera and microphone ...
-
TheCyberThrone
BIG-IP F5 affected by a vulnerability CVE-2024-45844
A critical vulnerability has been identified in F5 BIG-IP that could allow authenticated attackers to bypass access control restrictions and potentially compromise the system.The vulnerability tracked ...
-
Help Net Security
Week in review: 87k+ Fortinet devices still open to attack, red teaming tool used for EDR evasion
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 87,000+ Fortinet devices still open to attack, are yours among them? (CVE-2024-23113) Last week, CISA ...