CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
cert.pl
Vulnerability in diff-so-fancy software
Vulnerability in diff-so-fancy software CVE ID CVE-2026-50642 Publication date 29 July 2026 Vendor so-fancy Product diff-so-fancy Vulnerable versions All through 1.4.10 Vulnerability type (CWE) Improp ...
-
The Hacker News
Public PoC Released for Exploited Check Point SmartConsole Authentication Bypass
Cybersecurity researchers have shared additional technical details about a recently patched critical security flaw impacting Check Point Security Management Server and Multi-Domain Security Management ...
-
cert.pl
Vulnerabilities in GNU Bison software
Vulnerabilities in GNU Bison software CVE ID CVE-2026-56389 Publication date 29 July 2026 Vendor GNU Product Bison Vulnerable versions 3.8.2 Vulnerability type (CWE) Improper Neutralization of Special ...
-
security.nl
MikroTik-routers door RouterOS-lek kwetsbaar voor bruteforce-aanvallen
MikroTik-routers zijn door een beveiligingslek in RouterOS, het besturingssysteem dat op de apparaten draait, kwetsbaar voor bruteforce-aanvallen. Het probleem is ook aanwezig in Cloud Hosted Router ( ...
-
The Hacker News
New Gitea RCE Lets Repository Writers Plant a Git Hook to Run Shell Commands
Gitea, the self-hosted Git platform, has patched a critical remote code execution vulnerability. A user with ordinary repository write access can turn attacker-controlled patch content into a live Git ...
-
security.nl
Kritiek lek in forumsoftware vBulletin maakt remote code execution mogelijk
Een kritieke kwetsbaarheid in forumsoftware vBulletin maakt remote code execution door ongeauthenticeerde aanvallers mogelijk. Er zijn updates uitgebracht om de kwetsbaarheid (CVE-2026-61511) te verhe ...
-
TheCyberThrone
CISA Expands KEV Catalog with FortiOS and Arista VeloCloud Flaws
July 29, 2026The Cybersecurity and Infrastructure Security Agency (CISA) has expanded its Known Exploited Vulnerabilities (KEV) Catalog by adding two vulnerabilities affecting Fortinet FortiOS and Ari ...
-
Ars Technica
We now have a better understanding how OpenAI hacked into Hugging Face
Last week’s unprecedented security event in which two OpenAI security hacking models trespassed into the network of fellow AI company Hugging Face was enabled by exploiting one or more zero-day vulner ...
-
TheCyberThrone
CVE-2026-63077: JetBrains TeamCity RCE
Executive SummaryModern software development depends on CI/CD platforms to automate code building, testing, and deployment. These platforms hold privileged credentials, source code, signing certificat ...
-
The Hacker News
24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing Intelligent Platform Management Interface (IPMI) pro ...