CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • CybersecurityNews
Devolutions Server Vulnerability Let Attackers Impersonate Users Using Pre-MFA Cookie

A critical vulnerability in Devolutions Server could allow attackers with low-level access to impersonate other user accounts by exploiting how the application handles authentication cookies before mu ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • Help Net Security
Attackers exploited another Gladinet Triofox zero-day (CVE-2025-12480)

Attackers have exploited a now-fixed vulnerability (CVE-2025-12480) in the Gladinet Triofox secure file sharing and remote access platform while it was still a zero-day, Mandiant revealed on Monday. C ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • security.nl
Kritiek lek in Samsung Galaxy-smartphones toegevoegd aan KEV-database CISA

Het Amerikaanse Cybersecurity & Infrastructure Security Agency (CISA) heeft een kwetsbaarheid in Samsung Galaxy-smartphones toegevoegd aan de Known Exploited Vulnerabilities (KEV)-database met kwetsba ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • The Register
Hitachi-owned GlobalLogic admits data stolen on 10k current and former staff

Digital engineering outfit GlobalLogic says personal data from more than 10,000 current and former employees was exposed in the wave of Oracle E-Business Suite (EBS) attacks attributed to the Clop ran ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • CybersecurityNews
WatchGuard Firebox Firewall Vulnerability Let Attackers Gain Unauthorized SSH Access

A critical vulnerability in WatchGuard Firebox firewalls could allow attackers to gain complete administrative access to the devices without any authentication. The flaw, tracked as CVE-2025-59396, st ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • CybersecurityNews
Zoom Vulnerabilities Let Attackers Bypass Access Controls to Access Session Data

Zoom has issued multiple security bulletins detailing patches for several vulnerabilities affecting its Workplace applications. The disclosures, published today, highlight two high-severity issues alo ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • Daily CyberSecurity
SAP November 2025 Patch Day Fixes 3 Critical Flaws (CVSS 10) — Including Code Injection and Insecure Key Management

Today, SAP released its latest batch of Security Patch Day updates, delivering 18 new security notes and two updates to previously released ones. Among them, three critical vulnerabilities stand out — ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • CybersecurityNews
SAP Security Update – Patch for Critical Vulnerabilities Allowing Code Execution and Injection Attacks

SAP released its monthly Security Patch Day updates, addressing 18 new security notes and providing two updates to existing ones, focusing on vulnerabilities that could enable remote code execution an ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • Daily CyberSecurity
Critical Synology BeeStation Zero-Day (CVE-2025-12686) Found at Pwn2Own Allows Remote Code Execution

Synology has released an urgent security update for its BeeStation OS, patching a zero-day vulnerability (CVE-2025-12686) that was successfully exploited by researchers during the Pwn2Own Ireland 2025 ...

Published Date: Nov 11, 2025 (4 weeks ago)
  • CybersecurityNews
Hackers Exploiting Triofox 0-Day Vulnerability to Execute Malicious Payload Abusing Anti-Virus Feature

Google Mandiant has disclosed active exploitation of CVE-2025-12480, a critical unauthenticated access vulnerability in Gladinet’s Triofox file-sharing platform. The threat cluster tracked as UNC6485  ...

Published Date: Nov 11, 2025 (4 weeks ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8467 Results