SharePoint CVE-2026-55040 lets unauthenticated attackers impersonate users and chain with CVE-2026-63520 for code execution ...
Microsoft patches 398 flaws, including exploited CVE-2026-68820 that lets local attackers reach SYSTEM, plus four unauthenticated 9.8 RCEs.
CISA confirmed today that ransomware gangs have begun abusing a high-severity Microsoft SharePoint remote code execution ...
Cisco warned of two high-severity vulnerabilities affecting the Secure Endpoint Connector that allow threat actors to crash the ClamAV scanning process in denial-of-service (DoS) attacks.
Zoom has patched a vulnerability that could allow attackers to execute code on other meeting participants’ systems.
Recorded Future’s Insikt Group® has released its latest CVE report for July 2026, which identifies 85 high-impact vulnerabilities that ANZ organisations should prioritise ...
ServiceNow CVE-2026-6875, a critical unauthenticated RCE in the AI Platform, is under active exploitation. Threat intelligence firm Defused confirmed a second sandbox-escape gadget chain that bypasses ...
Chrome Firefox security update July 2026 delivered emergency patches across five vendors on July 15: Mozilla confirmed public exploit code for both critical Firefox 152.0.6 CVEs, Google patched two ...
Contrast Security, the leader in Application Detection and Response (ADR), today announced Contrast CVE Shield to stop the ...
“There are no workarounds identified that directly mitigate the risk concerning this attack campaign,” is not what you want to read, having just been informed of a zero-day exploit concerning a Common ...
Phoenix Security launches Exploit Hunt at Black Hat USA 2026: an AI red team that reports a finding only after it has ...