CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 10 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • Google Cloud
Exploitation of KnowledgeDeliver via ViewState Deserialization Vulnerability

Written by: Takahiro Sugiyama, Peter Revelant, Mathew Potaczek Introduction In late 2025, Mandiant responded to a security incident involving a compromised web server running KnowledgeDeliver. Knowled ...

Published Date: May 25, 2026 (4 months ago)
  • 0patch.com
Micropatches released for Windows Shell Link Processing Spoofing Vulnerability (CVE-2026-25185)

March 2026 Windows Updates brought a patch for CVE-2026-25185, a flaw in Windows Explorer's processing of .LNK files that allowed an attacker to force user's computer to authenticate to a malicious se ...

Published Date: May 25, 2026 (4 months ago)
  • The Hacker News
Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks

Threat actors are exploiting a recently disclosed critical security flaw in Ghost CMS to inject malicious JavaScript code with an aim to fuel ClickFix attacks. According to QiAnXin XLab, the activity ...

Published Date: May 25, 2026 (4 months ago)
  • cert.pl
Vulnerability in Kenik cameras software

Vulnerability in Kenik cameras software CVE ID CVE-2026-7766 Publication date 25 May 2026 Vendor Kenik Product KG-5230TAS-IL-3, KG-5230TAS-IL-G3, KG-5230DAS-IL-G3, KG-5260TZAS-IL-3, KG-5260DZAS-IL-3, ...

Published Date: May 25, 2026 (4 months ago)
  • cert.pl
Vulnerability in Lifetime software

Vulnerability in Lifetime software CVE ID CVE-2026-40127 Publication date 25 May 2026 Vendor OutSystems Product Lifetime Vulnerable versions All before 11.28.2.3955 Vulnerability type (CWE) Authorizat ...

Published Date: May 25, 2026 (4 months ago)
  • CybersecurityNews
Hackers Actives Scanning SonicWall Firewall Interfaces – 597,000 Sessions Observed

A sharp rise in internet-wide scanning activity targeting SonicWall firewall management interfaces has been detected, raising concerns about a potential pre-disclosure reconnaissance phase tied to new ...

Published Date: May 25, 2026 (4 months ago)
  • CybersecurityNews
CISA Warns of Drupal Core SQL Injection Vulnerability Exploited in Attacks

CISA has issued an urgent alert regarding a critical SQL injection vulnerability in Drupal Core, tracked as CVE-2026-9082, which is now being actively exploited in real-world attacks. The flaw, classi ...

Published Date: May 25, 2026 (4 months ago)
  • CybersecurityNews
Pentest Agent Suite – Bug Bounty Framework for Claude Code and 6 AI Coding Tools

A fully autonomous bug-bounty framework called Pentest Agent Suite has been open-sourced, delivering 50 specialized security agents, 26 slash commands, 19 CLI tools, and a cross-IDE installer across s ...

Published Date: May 25, 2026 (4 months ago)
  • TheCyberThrone
CVE-2026-9082 – Drupal Core SQL Injection

May 24, 2026CVE-2026-9082 is a highly critical SQL injection vulnerability in Drupal core’s database abstraction API, specifically in the PostgreSQL EntityQuery condition handler. An unauthenticated, ...

Published Date: May 24, 2026 (4 months ago)
  • TheCyberThrone
CVE-2026-2005 | PostgreSQL pgcrypto — Heap Buffer Overflow

May 24, 2026Vulnerability SummaryCVE-2026-2005 is a heap buffer overflow vulnerability in the PostgreSQL pgcrypto extension. A ciphertext provider can trigger the overflow to execute arbitrary code as ...

Published Date: May 24, 2026 (4 months ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 12362 Results