CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • BleepingComputer
New sandbox escape flaw exposes n8n instances to RCE attacks

Two vulnerabilities in the n8n workflow automation platform could allow attackers to fully compromise affected instances, access sensitive data, and execute arbitrary code on the underlying host. Iden ...

Published Date: Jan 28, 2026 (12 hours, 36 minutes ago)
  • reddit.com
CVE-2025-40551: SolarWinds WebHelpDesk RCE Deep-Dive and Indicators of Compromise

Let us know your cookie preferences Reddit uses cookies and similar technologies to: Keep the website operational and running properly Prevent fraud and abuse Monitor site usage and performance metric ...

Published Date: Jan 28, 2026 (13 hours, 33 minutes ago)
  • The Register
Fortinet unearths another critical bug as SSO accounts borked post-patch

Things aren't over yet for Fortinet customers – the security shop has disclosed yet another critical FortiCloud SSO vulnerability. Those hoping for a reprieve following last week's patch pantomime are ...

Published Date: Jan 28, 2026 (13 hours, 53 minutes ago)
  • CybersecurityNews
TP-Link Archer Vulnerability Let Attackers Take Control Over the Router

A critical security advisory has been released for a command injection vulnerability affecting the Archer MR600 v5 router. The flaw, tracked as CVE-2025-14756, enables authenticated attackers to execu ...

Published Date: Jan 28, 2026 (14 hours, 7 minutes ago)
  • CybersecurityNews
Gemini MCP Tool 0-day Vulnerability Allows Remote Attackers to Execute Arbitrary Code

A critical zero‑day vulnerability in Gemini MCP Tool exposes users to remote code execution (RCE) attacks without any authentication. Tracked as ZDI‑26‑021 / ZDI‑CAN‑27783 and assigned CVE‑2026‑0755, ...

Published Date: Jan 28, 2026 (14 hours, 17 minutes ago)
  • security.nl
SolarWinds waarschuwt voor kritieke kwetsbaarheden in Web Help Desk

Softwarebedrijf SolarWinds waarschuwt voor verschillende kritieke kwetsbaarheden in Web Help Desk waardoor ongeauthenticeerde aanvallers systemen op afstand kunnen overnemen. Ook bevat de software har ...

Published Date: Jan 28, 2026 (14 hours, 21 minutes ago)
  • hackread.com
Hackers Still Using Patched WinRAR Flaw for Malware Drops, Warns Google

The Google Threat Intelligence Group (GTIG) warns that nation-state actors and financially motivated threat actors are exploiting a flaw in WinRAR. Known as CVE-2025-8088, this vulnerability allows ha ...

Published Date: Jan 28, 2026 (14 hours, 34 minutes ago)
  • Help Net Security
WinRAR vulnerability still a go-to tool for hackers, Mandiant warns

State-sponsored hackers and financially motivated attackers continue leveraging a critical WinRAR vulnerability (CVE-2025-8088) that’s been fixed over half a year ago. CVE-2025-8088 is a path traversa ...

Published Date: Jan 28, 2026 (15 hours, 25 minutes ago)
  • BleepingComputer
SolarWinds warns of critical Web Help Desk RCE, auth bypass flaws

SolarWinds has released security updates to patch critical authentication bypass and remote command execution vulnerabilities in its Web Help Desk IT help desk software. The authentication bypass secu ...

Published Date: Jan 28, 2026 (15 hours, 44 minutes ago)
  • CybersecurityNews
Check Point Harmony SASE Windows Client Vulnerability Enables Privilege Escalation

A critical privilege-escalation vulnerability has been discovered in Check Point’s Harmony SASE (Secure Access Service Edge) Windows client software, affecting versions prior to 12.2. Tracked as CVE-2 ...

Published Date: Jan 28, 2026 (15 hours, 48 minutes ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 9467 Results