LIVE FEED
Subscribe
//

Category: Vulnerabilities

Vulnerabilities Kubota North America Breach Exposed Employee Data Over 35 Days
HIGH Vulnerabilities

Kubota North America Breach Exposed Employee Data Over 35 Days

Kubota North America has disclosed a network intrusion lasting more than a month that exposed sensitive personal and financial data belonging to…

by Robbie · 3 months ago
Vulnerabilities Medtronic Notifies Customers After ShinyHunters Breach Exposed 9M Records
HIGH Vulnerabilities

Medtronic Notifies Customers After ShinyHunters Breach Exposed 9M Records

Medical device giant Medtronic is sending breach notifications after the ShinyHunters extortion group accessed corporate IT systems in April, potentially exposing names,…

by Robbie · 3 months ago
Vulnerabilities CISA Adds SharePoint RCE Flaw CVE-2026-45659 to KEV Catalog
HIGH Vulnerabilities

CISA Adds SharePoint RCE Flaw CVE-2026-45659 to KEV Catalog

CISA has added a high-severity Microsoft SharePoint Server remote code execution vulnerability to its Known Exploited Vulnerabilities catalog after confirming active exploitation…

by Robbie · 3 months ago
Vulnerabilities Google Patches 382 Vulnerabilities in Chrome 151, 15 Rated Critical
CRITICAL Vulnerabilities

Google Patches 382 Vulnerabilities in Chrome 151, 15 Rated Critical

The Chrome 151 release addresses a record-setting batch of security flaws, with 358 of them discovered internally, likely aided by AI-assisted vulnerability…

by Robbie · 3 months ago
Vulnerabilities Apple Patches 37 Flaws in iOS, macOS, and Safari, 26 in WebKit Alone
HIGH Vulnerabilities

Apple Patches 37 Flaws in iOS, macOS, and Safari, 26 in WebKit Alone

Apple's latest round of security updates addresses dozens of vulnerabilities across its platform, with the majority concentrated in WebKit and exploitable through…

by Robbie · 3 months ago
Vulnerabilities ATEN Unizon Directory Traversal Flaw Exposes Files to Unauthenticated Attackers
HIGH Vulnerabilities

ATEN Unizon Directory Traversal Flaw Exposes Files to Unauthenticated Attackers

A path validation failure in ATEN's Unizon software lets remote, unauthenticated attackers read arbitrary files at SYSTEM-level privilege. ATEN has issued a…

by Robbie · 3 months ago
Vulnerabilities Oracle PeopleSoft RCE Flaw Allows Auth Bypass via Deserialization
HIGH Vulnerabilities

Oracle PeopleSoft RCE Flaw Allows Auth Bypass via Deserialization

A deserialization vulnerability in Oracle PeopleSoft's HubMBeanPersistance method enables remote code execution, with the built-in authentication requirement undermined by a bypass condition.

by Robbie · 3 months ago
Vulnerabilities X.Org Server Out-Of-Bounds Read Leaks Sensitive Data to Local Attackers
MEDIUM Vulnerabilities

X.Org Server Out-Of-Bounds Read Leaks Sensitive Data to Local Attackers

A missing validation check in the X.Org Server's ChangeDrawableAttributes handler lets low-privileged local users read beyond an allocated structure, potentially aiding privilege…

by Robbie · 3 months ago
Vulnerabilities Quest NetVault Backup XSS Flaw Enables Authentication Bypass
HIGH Vulnerabilities

Quest NetVault Backup XSS Flaw Enables Authentication Bypass

A cross-site scripting vulnerability in Quest NetVault Backup's viewclient webpage allows remote attackers to bypass authentication and, chained with other flaws, execute…

by Robbie · 3 months ago
Vulnerabilities ATEN Unizon Flaw Allows Remote Code Execution via Broken Signature Check
HIGH Vulnerabilities

ATEN Unizon Flaw Allows Remote Code Execution via Broken Signature Check

A cryptographic signature verification failure in ATEN Unizon lets authenticated remote attackers execute arbitrary code as SYSTEM. A patch is available.

by Robbie · 3 months ago
Vulnerabilities Oracle PeopleSoft SSRF Flaw Requires No Auth, Scores 9.3 CVSS
CRITICAL Vulnerabilities

Oracle PeopleSoft SSRF Flaw Requires No Auth, Scores 9.3 CVSS

A server-side request forgery vulnerability in Oracle PeopleSoft's HttpListeningConnector can be exploited by unauthenticated remote attackers and chained with other bugs to…

by Robbie · 3 months ago
Vulnerabilities X.Org Server Use-After-Free Flaw Leaks Sensitive Data to Local Attackers
MEDIUM Vulnerabilities

X.Org Server Use-After-Free Flaw Leaks Sensitive Data to Local Attackers

A use-after-free vulnerability in X.Org Server's screen saver handling allows local attackers to read sensitive memory, with potential for privilege escalation to…

by Robbie · 3 months ago
1 … 16 17 18 19

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.