CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • hackread.com
Hackers Still Using Patched WinRAR Flaw for Malware Drops, Warns Google

The Google Threat Intelligence Group (GTIG) warns that nation-state actors and financially motivated threat actors are exploiting a flaw in WinRAR. Known as CVE-2025-8088, this vulnerability allows ha ...

Published Date: Jan 28, 2026 (2 days, 2 hours ago)
  • Help Net Security
WinRAR vulnerability still a go-to tool for hackers, Mandiant warns

State-sponsored hackers and financially motivated attackers continue leveraging a critical WinRAR vulnerability (CVE-2025-8088) that’s been fixed over half a year ago. CVE-2025-8088 is a path traversa ...

Published Date: Jan 28, 2026 (2 days, 3 hours ago)
  • BleepingComputer
SolarWinds warns of critical Web Help Desk RCE, auth bypass flaws

SolarWinds has released security updates to patch critical authentication bypass and remote command execution vulnerabilities in its Web Help Desk IT help desk software. The authentication bypass secu ...

Published Date: Jan 28, 2026 (2 days, 3 hours ago)
  • CybersecurityNews
Check Point Harmony SASE Windows Client Vulnerability Enables Privilege Escalation

A critical privilege-escalation vulnerability has been discovered in Check Point’s Harmony SASE (Secure Access Service Edge) Windows client software, affecting versions prior to 12.2. Tracked as CVE-2 ...

Published Date: Jan 28, 2026 (2 days, 3 hours ago)
  • The Hacker News
Critical vm2 Node.js Flaw Allows Sandbox Escape and Arbitrary Code Execution

A critical sandbox escape vulnerability has been disclosed in the popular vm2 Node.js library that, if successfully exploited, could allow attackers to run arbitrary code on the underlying operating s ...

Published Date: Jan 28, 2026 (2 days, 4 hours ago)
  • 0patch.com
Micropatches Released for Microsoft Office Security Feature Bypass Vulnerability (CVE-2026-21509)

Two days ago, Microsoft released an emergency update for Microsoft Office, resolving CVE-2026-21509, a vulnerability in Office that was found to be exploited in the wild. Microsoft's advisory initiall ...

Published Date: Jan 28, 2026 (2 days, 4 hours ago)
  • The Hacker News
Two High-Severity n8n Flaws Allow Authenticated Remote Code Execution

Cybersecurity researchers have disclosed two new security flaws in the n8n workflow automation platform, including a crucial vulnerability that could result in remote code execution. The weaknesses, d ...

Published Date: Jan 28, 2026 (2 days, 5 hours ago)
  • CybersecurityNews
Chrome Security Update Patches Background Fetch API Vulnerability

Chrome versions 144.0.7559.109 and 144.0.7559.110 have been released to the stable channel, addressing a critical security vulnerability in the Background Fetch API. The update is rolling out across W ...

Published Date: Jan 28, 2026 (2 days, 7 hours ago)
  • security.nl
Thunderbird dicht lek dat aanvaller inhoud versleutelde e-mail laat stelen

De makers van e-mailclient Thunderbird hebben een beveiligingsupdate uitgebracht wegens een kwetsbaarheid waardoor een aanvaller de inhoud van versleutelde e-mail kan stelen. De Duitse overheid stelt ...

Published Date: Jan 28, 2026 (2 days, 7 hours ago)
  • CybersecurityNews
Fortinet Confirms Critical FortiCloud SSO Vulnerability(CVE-2026-24858) Actively Exploited in the Wild

Fortinet has confirmed a critical authentication bypass vulnerability in its FortiCloud SSO feature, actively exploited in the wild under CVE-2026-24858. According to an advisory published on January ...

Published Date: Jan 28, 2026 (2 days, 7 hours ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 9501 Results