Vulnerability Alerts

Vulnerability Alerts

CVEs, zero-days, exploits, and security advisories

EX
VULNExploit-DB13 days ago

[local] Linux Kernel - Local Privilege Escalation

EX
VULNExploit-DB13 days ago

[webapps] MixPHP Framework 2.2.17 - Unsafe Deserialization Remote Code Execution

EX
VULNExploit-DB13 days ago

[remote] Wing FTP Server 8.1.3 - Authenticated Remote Code Execution

EX
VULNExploit-DB13 days ago

[webapps] CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)

EX
VULNExploit-DB13 days ago

[remote] strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow

EX
VULNExploit-DB13 days ago

[dos] strongSwan 5.9.13 - DoS

VULNPalo Alto Unit 4213 days ago

2026 World Cup: Discussing The World’s Biggest Game’s Attack Surface

VULNhighZero Day Initiative14 days ago

ZDI-26-326: TrendAI Vision One Security Agent Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago

ZDI-26-325: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago

ZDI-26-321: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago

ZDI-26-324: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago

ZDI-26-322: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago

ZDI-26-320: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago

ZDI-26-323: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNPalo Alto Unit 4214 days ago

Out of the Crypt: The Evolving Cyber Extortion Economy

EX
VULNExploit-DB15 days ago

[local] Linux Kernel - Local Privilege Escalation

EX
VULNExploit-DB15 days ago

[webapps] Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

EX
VULNExploit-DB15 days ago

[webapps] EspoCRM 9.3.3 - SSRF

EX
VULNExploit-DB15 days ago

[webapps] scramble - Remote Code Execution

EX
VULNExploit-DB15 days ago

[hardware] MeiG Smart FORGE_SLT711 - OS Command Injection

EX
VULNExploit-DB15 days ago

[local] Realtek rtl819x - Local Privilege

EX
VULNExploit-DB15 days ago

[webapps] OpenCATS 0.9.7.4 - SQL Injection

VULNCheck Point Research15 days ago

AI Threat Landscape Digest March-April 2026

VULNFull Disclosure16 days ago

Re: Dovecot Security Advisory OXDC-2026-0002

VULNFull Disclosure16 days ago

SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues

VULNhighFull Disclosure16 days ago

[SECURITY ADVISORY] CVE-2021-21735 - ZTE ZXHN H168N V3.5 Unauthenticated Admin Credential Leak

VULNhighFull Disclosure16 days ago

[SECURITY ADVISORY] CVE-2026-34474 - ZTE H298A/H108N Unauthenticated Admin Credential Exposure

VULNhighFull Disclosure16 days ago

[SECURITY ADVISORY] CVE-2026-34472 - ZTE ZXHN H188A V6 Authentication Bypass via Pre-Login Wizard

VULNhighFull Disclosure16 days ago

[SECURITY ADVISORY] CVE-2026-34473 - Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)

VULNhighFull Disclosure16 days ago

Multiple vulnerabilities in Sparx Pro Cloud Server and Enterprise Architect