News

Activision has temporarily pulled the Microsoft Store version of Call of Duty: WWII from availability while it investigates security concerns. The company hasn’t shared much detail about the reason ...
Analysis of two arbitrary code execution vulnerabilities affecting WPS Office. Demystifying CVE-2024-7262 and CVE-2024-7263. Romain Dumont. 28 Aug 2024 • , 14 min. read.
"A vulnerability within the Veeam Updater component that allows an attacker to utilize a Man-in-the-Middle attack to execute arbitrary code on the affected appliance server with root-level permissions ...
Overview. Recently, NSFOCUS CERT detected that Elastic issued a security bulletin to fix the arbitrary code execution vulnerability caused by Elastic Kibana prototype contamination (CVE-2025-25014); ...
CVE-2025-6554 is the fourth zero-day vulnerability in Chrome to be addressed by Google since the start of the year after ...
Multiple security vulnerabilities currently exist in HP Support Assistant software, which could enable remote attackers to execute arbitrary code on a vulnerable machine running Windows operating ...
The flaw allows attackers to bypass the Web Content sandbox that Apple’s Safari browser uses to isolate web content from the rest of a system and execute arbitrary code on a target system. The issue ...
A misconfigured default in the MCP inspector tool allows attackers to execute arbitrary commands via CSRF and legacy browser ...
NEWS BRIEF. An unnamed threat actor claims that a zero-day vulnerability found within Fortinet's FortiGate firewalls can be exploited remotely, allowing the attacker to execute arbitrary code ...
A high-severity vulnerability in GitHub Enterprise Server could have allowed remote attackers to execute arbitrary code.
An actively exploited type confusion vulnerability in the Google Chrome web browser needs immediate attention from users ...
A patch has been released for a newly discovered vulnerability in RARLAB’s WinRAR software that could allow hackers to ...