CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
The Hacker News
New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch
A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-b ...
-
The Hacker News
Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup
An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public r ...
-
The Hacker News
Leaked n8n API Tokens Exposed Live Instances to Credential Theft
GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream creden ...
-
security.nl
Apache Tomcat-lek dat remote code execution mogelijk maakt actief misbruikt
Een beveiligingslek in Apache Tomcat dat remote code execution mogelijk maakt wordt actief misbruikt bij aanvallen, zo meldt het Amerikaanse cyberagentschap CISA. Misbruik doet zich alleen bij bepaald ...
-
The Hacker News
CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in t ...
-
nextron-systems.com
Detecting Certighost (CVE-2026-54121): Sigma Coverage Across the Full Attack Chain
Many organizations rely on Microsoft Active Directory to manage users, computers, logins, and access permissions. Domain Controllers are the central systems that enforce these decisions. In many envir ...
-
The Hacker News
New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root
cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrativ ...
-
security.nl
Microsoft komt met noodpatch voor Excel-lek dat aanvaller code laat uitvoeren
Microsoft heeft buiten de maandelijkse patchcyclus om een noodpatch uitgebracht voor een kwetsbaarheid in Excel. Via het beveiligingslek (CVE-2026-62870) kan een aanvaller code op het systeem van gebr ...
-
security.nl
SonicWall-lekken gebruikt bij ransomware-aanvallen op organisaties
Twee kwetsbaarheden in de SMA1000-gateway van netwerkbeveiliger SonicWall worden gebruikt om organisaties met ransomware te infecteren, zo meldt het Amerikaanse cyberagentschap CISA. De aanvallers com ...
-
The Hacker News
CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog following ...