CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
Cybersecurity News
PoC Released: CVE-2024-13159 (CVSS 9.8) in Ivanti EPM Poses Severe Security Threat
Image: Horizon3.aiSecurity researcher Zach Hanley (@hacks_zach) of Horizon3.ai published the technical details and a proof-of-concept (PoC) exploit code for CVE-2024-13159, a critical vulnerability in ...
-
Cybersecurity News
CVE-2025-1128: Everest Forms Plugin Exposes 100,000+ WordPress Sites to Complete Takeover
A severe security vulnerability, tracked as CVE-2025-1128, has been uncovered in the popular WordPress plugin, Everest Forms, placing over 100,000 websites at immediate risk of complete compromise. Th ...
-
Cybersecurity News
Critical Mattermost Flaws (CVE-2025-20051, CVE-2025-24490, CVE-2025-25279) Expose Systems to File Read and SQL Injection Attacks
Mattermost, an open-source platform for team communication and collaboration, has addressed three critical security vulnerabilities affecting its Boards plugin. The vulnerabilities, identified as CVE- ...
-
Cybersecurity News
OpenAI Purges ChatGPT Accounts: China and North Korea Weaponizing AI for Propaganda
OpenAI has confirmed that it has begun blocking accounts linked to Chinese and North Korean users who have been leveraging ChatGPT to monitor and influence social media discourse.While OpenAI has not ...
-
Cybersecurity News
CISA Flags Actively Exploited Security Vulnerabilities in Adobe ColdFusion and Oracle Agile PLM
Cybersecurity and Infrastructure Security Agency (CISA) has added two critical security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, signaling active exploitation in the wild. ...
-
Cybersecurity News
From Confluence Vulnerability (CVE-2023-22527) to LockBit Encryption: A Rapid Attack Chain
LockBit ransom note | Image: The DFIR ReportSecurity researchers at The DFIR Report have uncovered a highly coordinated attack that leveraged a critical remote code execution (RCE) vulnerability in Co ...
-
Dark Reading
Zero-Day Bug Pops Up in Parallels Desktop for Mac
Source: Gil C via ShutterstockThe latest version of Parallels Desktop virtualization software for macOS contains an unpatched zero-day vulnerability allowing root access, and a proof-of-concept exploi ...
-
Cyber Security News
Threat Actors Stealing Users Browser Fingerprints To Bypass Security Measures & Impersonate Users
A sophisticated cybercriminal campaign leveraging stolen browser fingerprints to bypass fraud detection systems and impersonate legitimate users has been uncovered by cybersecurity researchers. Dubbed ...
-
The Hacker News
New Malware Campaign Uses Cracked Software to Spread Lumma and ACR Stealer
Endpoint Security / Vulnerability Cybersecurity researchers are warning of a new campaign that leverages cracked versions of software as a lure to distribute information stealers like Lumma and ACR St ...
-
TheCyberThrone
CISA adds Oracle PLM and Adobe ColdFusion flaws to its KEV
The Cybersecurity and Infrastructure Security Agency (CISA) has recently added two significant vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog. These vulnerabilities, affecting Ad ...