This critical (CVSS 10.0) use-after-free (UAF) vulnerability in Lua scripting could allow authenticated attackers to execute ...
PKCERT has issued a critical security advisory of a remote code execution (RCE) vulnerability in Windows Server Update Services.
Google announced a fresh set of security updates for the Android platform, to address two vulnerabilities in the System component.
In Monsta FTP, a web-based FTP client, attackers can inject and execute malicious code through a vulnerability.
Threat actors were exploiting vulnerable versions of Triofox after a patched version was released, said Google Cloud ...
Security researchers at software supply chain company JFrog Ltd. today revealed details of a critical vulnerability in React, ...
Microsoft has released its August 2025 Patch package, a cumulative set of updates addressing more than 100 vulnerabilities across a host of its products. Microsoft’s SharePoint Server Remote Code ...
Critical remote code execution (RCE) vulnerabilities in a popular WordPress plugin have been made public. The RCE bugs impact PHP Everywhere, a utility for web developers to be able to use PHP code in ...
QNAP patched two dozen vulnerabilities across its product portfolio, including 7 flaws demonstrated at Pwn2Own Ireland 2025.
VMware released multiple updates today to address five critical severity vulnerabilities in the VMware vSphere ESXi, VMware Workstation Pro / Player, and VMware Fusion Pro / Fusion, two of which were ...
Sophos has fixed a critical vulnerability in its Sophos Firewall product that allows remote code execution (RCE). Tracked as CVE-2022-1040, the authentication bypass vulnerability exists in the User ...