Microsoft released an emergency Office patch to fix an actively exploited zero-day flaw that lets attackers bypass security ...
The news this week has struck at the very foundation of WhatsApp's existence. A massive class-action lawsuit filed in San ...
Microsoft released out-of-band patches for an actively exploited Microsoft Office zero-day, CVE-2026-21509, a security ...
A new vulnerability database has launched in the EU, in a bid to reduce dependence on the U.S. program. Here's what you need ...
Fortinet released updates for an actively exploited FortiOS SSO authentication bypass flaw, CVE-2026-24858, now listed by ...
On January 19, 2026, a security researcher, Kyu Neushwaistein (a.k.a. Carlos Cortes Alvarez), reported an 11-year-old ...
Microsoft has finally addressed a serious zero-day vulnerability affecting multiple Office versions. However, not all users ...
A coordinated campaign has been observed targeting a recently disclosed critical-severity vulnerability that has been present ...
Exploit code has been published for CVE-2025-64155, a critical command injection vulnerability affecting Fortinet FortiSIEM ...
The GCVE program emerged in response to broader concerns about resilience, sustainability, and potential single points of failure in the existing CVE program, explains Haiman Wong, fellow, ...
By the time of CVE's launch, ISS (later acquired by IBM) maintained a fully public VDB, as of August 1997. A company I helped found, Repent Security Inc., also offered a commercial subscription to a ...
To exploit the vulnerability, an attacker would need either system access or be able to convince a user to open a malicious ...