CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 10 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
Daily CyberSecurity
Home Network Alert: TP-Link Patches RCE Vulnerability in Archer AXE75 Routers
TP-Link has issued an urgent security advisory for users of its high-performance Archer AXE75 routers. A newly discovered command injection flaw, tracked as CVE-2025-15568, could allow attackers to se ...
-
Daily CyberSecurity
Kubernetes Security Alert: “Ingress-Nginx” Injection Flaw Risks Cluster-Wide Secret Exposure
A critical security vulnerability has been identified in ingress-nginx, the widely used Ingress controller for Kubernetes. Tracked as CVE-2026-3288 with a high-severity CVSS score of 8.8, the flaw cen ...
-
TheCyberThrone
CISA KEV Catalog Update – March 9 2026
March 10, 2026CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog today, based on evidence of active exploitationCVE-2026-1603 — Ivanti Endpoint Manager (EPM) ...
-
Daily CyberSecurity
CVE-2026-0866: Malformed ZIP Headers Allow Malware to Slip Past EDR Scanners
A newly detailed vulnerability, CVE-2026-0866, is highlighting a fundamental blind spot in how many Antivirus (AV) and Endpoint Detection and Response (EDR) tools handle compressed files. By strategic ...
-
Daily CyberSecurity
Critical 9.8 CVSS Flaws Expose SICK Lector Scanners to Hijacking
In a significant update for the industrial automation sector, SICK PSIRT has issued a high-priority security advisory regarding two critical vulnerabilities affecting the Lector85x and Lector83x produ ...
-
Daily CyberSecurity
Critical 9.3 CVSS Flaw in Gogs Turns Repositories into Malware Delivery Vectors
The Gogs project, a popular self-hosted Git service prized for its simplicity and painless setup, has been hit by a critical security flaw that could turn trusted repositories into delivery vectors fo ...
-
Daily CyberSecurity
Critical Request Smuggling & Cache Flaws Discovered in Cloudflare’s Pingora
Security researchers have disclosed three significant vulnerabilities in Pingora, the high-performance Rust framework developed by Cloudflare to build programmable network services. While Rust is cele ...
-
TheCyberThrone
Termite Ransomware — Threat Intelligence and Technical Dissection
1. Executive SummaryTermite is a highly sophisticated ransomware operation first observed in November 2024. Built on the leaked Babuk ransomware source code, Termite has evolved rapidly from opportuni ...
-
CybersecurityNews
Critical ExifTool Flaw Lets Malicious Images Trigger Code Execution on macOS
A serious security flaw has been found in ExifTool, a popular open-source tool used to read and edit image file metadata. Tracked as CVE-2026-3102, this vulnerability affects macOS systems and allows ...
-
The Cloudflare Blog
Fixing request smuggling vulnerabilities in Pingora OSS deployments
2026-03-097 min readIn December 2025, Cloudflare received reports of HTTP/1.x request smuggling vulnerabilities in the Pingora open source framework when Pingora is used to build an ingress proxy. Tod ...