Actively Exploited Bugs

Hackers Abuse WordPress Plugin Flaw (CVE-2023-6000) to Infect 3,300 Websites
Actively Exploited Bugs
Hackers Abuse WordPress Plugin Flaw (CVE-2023-6000) to Infect 3,300 Websites
Hackers are compromising WordPress sites by taking advantage of a WordPress plugin flaw found in outdated versions of the Popup ...
Magnet Goblin Hackers Exploit 1-day Vulnerabilities to Deploy NerbianRAT Linux Malware
Actively Exploited Bugs
Magnet Goblin Hackers Exploit 1-day Vulnerabilities to Deploy NerbianRAT Linux Malware
The Magnet Goblin hackers, driven by financial motives, use 1-day vulnerabilities to breach servers and install custom Linux malware NerbianRAT ...
Joomla Fixes Critical XSS Vulnerabilities in Joomla CMS
Actively Exploited Bugs
Joomla Fixes Critical XSS Vulnerabilities in Joomla CMS
The open-source project responsible for maintaining Joomla, a widely used content management system, has released a patch to address Critical ...
Critical RCE bugs Found in SolarWinds Access Rights Manager (ARM)
Actively Exploited Bugs
Critical RCE bugs Found in SolarWinds Access Rights Manager (ARM)
SolarWinds has successfully addressed multiple critical RCE bugs that were present in its Access Rights Manager (ARM) solution. Access Rights ...
Microsoft Critical Exchange Bug Exploited as ‘zero-day’
Actively Exploited Bugs
Microsoft Critical Exchange Bug Exploited as ‘zero-day’
Microsoft has issued an updated security advisory, warning about a critical vulnerability in Exchange Server. The Microsoft critical Exchange bug ...
Roundcube Email Server Bug Actively Exploited in Attacks: CISA Issues Advisory
Actively Exploited Bugs
Roundcube Email Server Bug Actively Exploited in Attacks: CISA Issues Advisory
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding a recently detected vulnerability in Roundcube email servers. ...
New Fortinet RCE flaw in SSL VPN Exploited in the Wild
Actively Exploited Bugs
New Fortinet RCE flaw in SSL VPN Exploited in the Wild
Fortinet has issued a warning regarding a serious vulnerability in FortiOS SSL VPN. This Fortinet RCE flaw, identified as CVE-2024-21762 ...
CISA Confirms New Fortinet RCE Bug Being Actively Exploited
Actively Exploited Bugs
CISA Confirms New Fortinet RCE Bug Being Actively Exploited
Today, the Cybersecurity and Infrastructure Security Agency (CISA) has confirmed the active exploitation of a critical remote code execution (RCE) ...
Ivanti Reveals Second Connect Secure zero-day Exploit, Urges Immediate Patching
Actively Exploited Bugs
Ivanti Reveals Second Connect Secure zero-day Exploit, Urges Immediate Patching
Today, Ivanti issued a warning regarding two additional Connect Secure zero-day exploits that are affecting Connect Secure, Policy Secure, and ...
Linux glibc Flaw Lets Attackers Exploit Root Access on Major Linux Distros
Actively Exploited Bugs
Linux glibc Flaw Lets Attackers Exploit Root Access on Major Linux Distros
A newly discovered vulnerability in the GNU C Library (glibc) enables attackers to gain root access on default configurations of ...