The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity vulnerability affecting N-able N-central to its Known Exploited Vulnerabilities (KEV)…
A maximum-severity command injection vulnerability in on-premises versions of Arista VeloCloud Orchestrator (VCO) is being actively exploited. Tracked as CVE-2026-16812 with a…
Check Point has released security updates to address multiple vulnerabilities in its Security Management and Multi-Domain Management (MDSM) products, including a critical…
active exploitationauthentication bypassCheck PointCheck Point Gaia Portal
A high-severity path traversal vulnerability in the open-source developer platform Windmill, tracked as CVE-2026-29059 (CVSS 7.5), is under active exploitation. The flaw…
A critical remote code execution vulnerability in Microsoft SharePoint Server, CVE-2026-50522 (CVSS 9.8), is being actively exploited in the wild following the…
active exploitationCISACVE-2026-32201CVE-2026-45659
Multiple critical vulnerabilities in Microsoft SharePoint Server (Subscription Edition, 2019, and 2016) are being actively exploited, including CVE-2026-50522, CVE-2026-56164, and CVE-2026-58644.
active exploitationCVE-2026-50522CVE-2026-56164CVE-2026-58644
Security researcher Chaotic Eclipse (aka Nightmare-Eclipse) has released a proof-of-concept (PoC) exploit called LegacyHive, targeting a Windows User Profile Service (ProfSvc) arbitrary…
CVE-2023-24489 is an unauthenticated vulnerability in Citrix ShareFile Storage Zones Controller that was actively exploited in 2023. CISA flagged it as exploited,…
SharePoint Server is a web-based collaboration platform by Microsoft. Multiple critical vulnerabilities (CVE-2026-56164, CVE-2026-32201, CVE-2026-45659, CVE-2026-55040) were patched in July 2026, with…
active exploitationcollaborationSharePoint Servervulnerability