Vulnerability Alerts
Vulnerability Alerts
CVEs, zero-days, exploits, and security advisories
EX
VULNExploit-DB13 days ago
[local] Linux Kernel - Local Privilege Escalation
EX
VULNExploit-DB13 days ago
[webapps] MixPHP Framework 2.2.17 - Unsafe Deserialization Remote Code Execution
EX
VULNExploit-DB13 days ago
[remote] Wing FTP Server 8.1.3 - Authenticated Remote Code Execution
EX
VULNExploit-DB13 days ago
[webapps] CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)
EX
VULNExploit-DB13 days ago
[remote] strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow
EX
VULNExploit-DB13 days ago
[dos] strongSwan 5.9.13 - DoS

VULNPalo Alto Unit 4213 days ago
2026 World Cup: Discussing The World’s Biggest Game’s Attack Surface

VULNhighZero Day Initiative14 days ago
ZDI-26-326: TrendAI Vision One Security Agent Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago
ZDI-26-325: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago
ZDI-26-321: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago
ZDI-26-324: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago
ZDI-26-322: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago
ZDI-26-320: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNhighZero Day Initiative14 days ago
ZDI-26-323: TrendAI Vision One Security Agent Origin Validation Error Local Privilege Escalation Vulnerability

VULNPalo Alto Unit 4214 days ago
Out of the Crypt: The Evolving Cyber Extortion Economy
EX
VULNExploit-DB15 days ago
[local] Linux Kernel - Local Privilege Escalation
EX
VULNExploit-DB15 days ago
[webapps] Casdoor 3.54.1 - Arbitrary File Write via Path Traversal
EX
VULNExploit-DB15 days ago
[webapps] EspoCRM 9.3.3 - SSRF
EX
VULNExploit-DB15 days ago
[webapps] scramble - Remote Code Execution
EX
VULNExploit-DB15 days ago
[hardware] MeiG Smart FORGE_SLT711 - OS Command Injection
EX
VULNExploit-DB15 days ago
[local] Realtek rtl819x - Local Privilege
EX
VULNExploit-DB15 days ago
[webapps] OpenCATS 0.9.7.4 - SQL Injection

VULNCheck Point Research15 days ago
AI Threat Landscape Digest March-April 2026

VULNFull Disclosure16 days ago
Re: Dovecot Security Advisory OXDC-2026-0002

VULNFull Disclosure16 days ago
SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues

VULNhighFull Disclosure16 days ago
[SECURITY ADVISORY] CVE-2021-21735 - ZTE ZXHN H168N V3.5 Unauthenticated Admin Credential Leak

VULNhighFull Disclosure16 days ago
[SECURITY ADVISORY] CVE-2026-34474 - ZTE H298A/H108N Unauthenticated Admin Credential Exposure

VULNhighFull Disclosure16 days ago
[SECURITY ADVISORY] CVE-2026-34472 - ZTE ZXHN H188A V6 Authentication Bypass via Pre-Login Wizard

VULNhighFull Disclosure16 days ago
[SECURITY ADVISORY] CVE-2026-34473 - Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)

VULNhighFull Disclosure16 days ago