CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • BleepingComputer
Grafana warns of max severity admin spoofing vulnerability

Grafana Labs is warning of a maximum severity vulnerability (CVE-2025-41115) in its Enterprise product that can be exploited to treat new users as administrators or for privilege escalation. The issue ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • CybersecurityNews
Chinese Hackers Exploiting WSUS Remote Code Execution Vulnerability to Deploy ShadowPad Malware

Chinese-backed attackers have begun weaponizing a critical vulnerability in Microsoft Windows Server Update Services (WSUS) to distribute ShadowPad, a sophisticated backdoor malware linked to multiple ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • The Hacker News
Grafana Patches CVSS 10.0 SCIM Flaw Enabling Impersonation and Privilege Escalation

Nov 21, 2025Ravie LakshmananVulnerability / Threat Mitigation Grafana has released security updates to address a maximum severity security flaw that could allow privilege escalation or user imperson ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • security.nl
Kritiek RCE-lek in Oracle Identity Manager mogelijk misbruikt bij aanvallen

Een kritieke kwetsbaarheid in Oracle Identity Manager is mogelijk weken voor het uitkomen van een beveiligingsupdate misbruikt door aanvallers, zo meldt het Internet Storm Center (ISC). Op 21 oktober ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • CybersecurityNews
Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack

The Cl0p ransomware group has claimed responsibility for infiltrating Broadcom’s internal systems as part of an ongoing exploitation campaign targeting Oracle E-Business Suite vulnerabilities. The hac ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • CybersecurityNews
Critical Grafana Vulnerability Let Attackers Escalate Privilege

Grafana Labs has disclosed a critical security vulnerability affecting Grafana Enterprise that could allow attackers to escalate privileges and impersonate users. The flaw, tracked as CVE-2025-41115, ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • The Hacker News
APT24 Deploys BADAUDIO in Years-Long Espionage Hitting Taiwan and 1,000+ Domains

A China-nexus threat actor known as APT24 has been observed using a previously undocumented malware dubbed BADAUDIO to establish persistent remote access to compromised networks as part of a nearly th ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • CybersecurityNews
Critical ASUSTOR Vulnerability Let Attackers Execute Malicious Code with Elevated Privileges

A critical security vulnerability has been discovered in ASUSTOR backup and synchronization software, allowing attackers to execute malicious code with elevated system privileges. The flaw, tracked as ...

Published Date: Nov 21, 2025 (3 weeks, 2 days ago)
  • The Cyber Express
CERT-In Warns of Critical Asus Router Flaw Exposing Millions in India

According to the Indian Computer Emergency Response Team (CERT-In), thousands of households, small offices, and service providers across the country may already be at risk due to a newly uncovered aut ...

Published Date: Nov 21, 2025 (3 weeks, 3 days ago)
  • CybersecurityNews
SonicOS SSLVPN Vulnerability Let Attackers Crash the Firewall Remotely

SonicWall has disclosed a critical stack-based buffer overflow vulnerability in its SonicOS SSLVPN service. That allows remote unauthenticated attackers to crash firewalls through denial-of-service at ...

Published Date: Nov 21, 2025 (3 weeks, 3 days ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8613 Results