CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • CybersecurityNews
Ivanti Neurons for ITSM Vulnerabilities Allow Remote Attacker to Obtain User Sessions

Ivanti has released security updates addressing two medium-severity vulnerabilities in Ivanti Neurons for ITSM (N-ITSM), its on-premise IT service management platform. The flaws, if exploited, could a ...

Published Date: Apr 14, 2026 (2 days, 7 hours ago)
  • CybersecurityNews
CISA Warns of Microsoft Exchange and Windows CLFS Vulnerabilities Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to organizations regarding two severe Microsoft vulnerabilities. On April 13, 2026, the agency officially added ...

Published Date: Apr 14, 2026 (2 days, 8 hours ago)
  • CybersecurityNews
Synology SSL VPN Client Vulnerabilities Let Remote Attackers Access Sensitive Files

Synology reveals two severe SSL VPN Client flaws that could let remote attackers steal sensitive files and intercept network traffic. The vulnerabilities affect users running older versions of the sof ...

Published Date: Apr 14, 2026 (2 days, 8 hours ago)
  • CybersecurityNews
Critical FortiSandbox Vulnerabilities Allow Attackers to Execute Unauthorized Commands

Fortinet has disclosed two critical security vulnerabilities affecting its FortiSandbox platform, both carrying a CVSSv3 score of 9.1. The flaws, published on April 14, 2026, could allow unauthenticat ...

Published Date: Apr 14, 2026 (2 days, 8 hours ago)
  • The Hacker News
New PHP Composer Flaws Enable Arbitrary Command Execution — Patches Released

Two high-severity security vulnerabilities have been disclosed in Composer, a package manager for PHP, that, if successfully exploited, could result in arbitrary command execution. The vulnerabilities ...

Published Date: Apr 14, 2026 (2 days, 8 hours ago)
  • Daily CyberSecurity
Critical—9 Vulnerabilities in Orthanc DICOM Servers Threaten Medical Data Integrity

A series of critical security flaws has been uncovered in Orthanc, the popular open-source “lightweight Digital Imaging and Communications in Medicine (DICOM) server used to store, process, and retrie ...

Published Date: Apr 14, 2026 (2 days, 10 hours ago)
  • The Hacker News
Google Adds Rust-Based DNS Parser into Pixel 10 Modem to Enhance Security

Google has announced the integration of a Rust-based Domain Name System (DNS) parser into the modem firmware as part of its ongoing efforts to beef up the security of Pixel devices and push memory-saf ...

Published Date: Apr 14, 2026 (2 days, 10 hours ago)
  • Daily CyberSecurity
Juju’s CVSS 10 Flaw Hands Over Master Cloud Credentials

Juju, the popular open-source application orchestration engine, is facing a critical security emergency. A newly discovered vulnerability, carrying the maximum possible severity rating of CVSS 10, all ...

Published Date: Apr 14, 2026 (2 days, 11 hours ago)
  • Daily CyberSecurity
CVE-2026-4810: Critical 9.3 RCE Flaw Hits Google’s AI Agent Development Kit

A recently disclosed vulnerability in Google’s Agent Development Kit (ADK) serves as a stark reminder that even the most modular frameworks are not immune to classic security pitfalls. Security resear ...

Published Date: Apr 14, 2026 (2 days, 12 hours ago)
  • security.nl
SAP dicht kritiek SQL Injection-lek in Business Planning en Business Warehouse

SAP heeft een kritieke kwetsbaarheid in Business Planning en Business Warehouse gedicht waardoor een ongeautoriseerde aanvaller op afstand willekeurige SQL-commando's op de database kan uitvoeren. De ...

Published Date: Apr 14, 2026 (2 days, 12 hours ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 10812 Results