Attackers are actively exploiting CVE-2026-9586, an unauthenticated SQL injection vulnerability in the Sangoma Switchvox VoIP platform that can lead to remote code execution.
An SQL injection vulnerability in the All-in-One WP Migration and Backup plugin for WordPress could allow unauthenticated attackers to execute remote code and take control of affected websites.
A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create ...
Ransomware resilience requires more than backups or endpoint detection alone. Acronis outlines six capabilities MSPs should ...
Dropbox is warning some users that an unauthorized party accessed their accounts by exploiting a flaw in Lenovo's email ...
Microsoft is investigating an issue causing the Defender for Office 365 security software to mistakenly block access to ...
A California federal grand jury has indicted a Russian national for his role in a phishing campaign that infected thousands ...
International law enforcement agencies and private partners have seized Sality malware infrastructure in a joint action ...
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers discovered multiple ways to ...
Phishing actors are abusing the legitimate Faronics Deploy endpoint-management platform to gain remote administrative control ...
Aesto LLC, operating as Aesto Health, disclosed that a data breach discovered recently affects more than 9.5 million individuals.
Threat actors are exploiting an unauthenticated remote code execution vulnerability (CVE-2026-0768) in Langflow, an ...