CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Daily CyberSecurity
Guloader Malware Rides Wave of Fake Performance Reports

Cybercriminals are weaponizing workplace anxiety in a new sophisticated phishing campaign. The AhnLab Security Intelligence Center (ASEC) has issued a warning regarding a malicious operation that leve ...

Published Date: Jan 09, 2026 (3 weeks ago)
  • Daily CyberSecurity
The 9.6 Crack in Java’s Foundation: Critical Undertow Flaw CVE-2025-12543

A foundational crack has been discovered in the bedrock of the Java web ecosystem. Undertow, the high-performance web server that powers enterprise heavyweights like WildFly and JBoss EAP, has been hi ...

Published Date: Jan 09, 2026 (3 weeks ago)
  • Daily CyberSecurity
Wide Open Firewall: Critical Foomuuri Flaws Let Local Users Take Control

The SUSE Security Team has released a detailed report exposing multiple vulnerabilities in Foomuuri, a popular nftables-based firewall manager for Linux, that left the firewall’s management interface ...

Published Date: Jan 09, 2026 (3 weeks ago)
  • BleepingComputer
VMware ESXi zero-days likely exploited a year before disclosure

Chinese-speaking threat actors used a compromised SonicWall VPN appliance to deliver a VMware ESXi exploit toolkit that seems to have been developed more than a year before the targeted vulnerabilitie ...

Published Date: Jan 08, 2026 (3 weeks ago)
  • seclists.org
KL-001-2026-01: yintibao Fun Print Mobile Unauthorized Access via Context Hijacking

Full Disclosure mailing list archives From: KoreLogic Disclosures via Fulldisclosure <fulldisclosure () seclists org> Date: Thu, 8 Jan 2026 15:03:37 -0600 KL-001-2026-01: yintibao Fun Print Mobile Una ...

Published Date: Jan 08, 2026 (3 weeks ago)
  • hackread.com
n8n Users Urged to Patch CVSS 10.0 Full System Takeover Vulnerability

If your company uses n8n to handle daily tasks, it is time to check your version number. A major security flaw has been found in the platform, and it’s about as serious as it gets. The firm Upwind rec ...

Published Date: Jan 08, 2026 (3 weeks ago)
  • The Register
Patch Cisco ISE bug now before attackers abuse proof-of-concept exploit

Cisco patched a bug in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) products that allows remote attackers with admin-level privileges to access sensitive information ...

Published Date: Jan 08, 2026 (3 weeks, 1 day ago)
  • The Cyber Express
CISA Warns of Attacks on PowerPoint and HPE Vulnerabilities

A 16-year-old Microsoft PowerPoint flaw and a new maximum-severity HPE vulnerability are the latest additions to CISA’s Known Exploited Vulnerabilities (KEV) catalog. CVE-2025-37164 is a 10.0-rated Co ...

Published Date: Jan 08, 2026 (3 weeks, 1 day ago)
  • CybersecurityNews
Hackers Launched 8.1 Million Attack Sessions to React2Shell Vulnerability

The React2Shell vulnerability (CVE-2025-55182) continues to face a relentless exploitation campaign, with threat actors launching more than 8.1 million attack sessions since its initial disclosure. Ac ...

Published Date: Jan 08, 2026 (3 weeks, 1 day ago)
  • cert.pl
Vulnerability in Asseco AMDX software

Vulnerability in Asseco AMDX software CVE ID CVE-2025-4596 Publication date 08 January 2026 Vendor Asseco Product AMDX Vulnerable versions All before 6.09.01.62 Vulnerability type (CWE) Authorization ...

Published Date: Jan 08, 2026 (3 weeks, 1 day ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 9501 Results