Atlassian has disclosed a critical arbitrary file access vulnerability affecting eight products, including Jira, Confluence, and Bitbucket. Tracked as CVE-2026-21589,…
Microsoft has released September 2026 V2 security updates to fix an Exchange Server flaw that lets authenticated attackers access other…
Red Hat has fixed a high-impact vulnerability in Red Hat Satellite that could allow a low-privileged authenticated user to access…
Multiple security flaws in cPanel & WHM could let attackers run malicious scripts in an administrator’s browser session or execute…
A critical vulnerability in Capacitor for Android and iOS could let a malicious link opened inside an affected mobile app…
The Apache Software Foundation released Apache HTTP Server 2.4.69 on October 1, 2026, addressing security flaws that could enable code…
Fortinet has warned that attackers are actively exploiting a critical FortiMail zero-day vulnerability, putting exposed email security systems at risk.…
Multiple newly disclosed vulnerabilities in OWASP ModSecurity could let attackers bypass web application firewall protections by exploiting parsing differences, malformed…
A critical vulnerability in MikroTik RouterOS could allow unauthenticated remote attackers to execute arbitrary code with root-level privileges or trigger…
OpenSSL has released security updates for a high-severity vulnerability that could expose heap memory as plaintext during Datagram Transport Layer…