Adobe Acrobat Extension Flaw Could Expose WhatsApp Web Chats
CVE-2026-48294 in Adobe Acrobat for Chrome could expose rendered WhatsApp Web chats.…
WordPress wp2shell CVE-2026-63030: Update to 7.0.2 Now
CVE-2026-63030 (wp2shell) gives anonymous attackers a route to code execution in WordPress…
CVE-2026-53412: Update Zoom for Windows to Block Account Takeover
CVE-2026-53412 is a critical Zoom Workplace for Windows flaw that may allow…
Joomla Page Builder RCE Flaws Added to CISA KEV: Check for Web Shells
CISA added exploited JoomShaper SP Page Builder and PageBuilder CK flaws to…
Onelogon Netlogon Attack: Check AD Allow-Lists Now
Onelogon shows how legacy Netlogon allow-lists can expose Active Directory accounts. Learn…
Flowise Chatflow RCE
Flowise CVE-2026-40933 can turn a malicious chatflow import into server-side command execution.…
7-Zip CVE-2026-48095 Fix
CVE-2026-48095 is a 7-Zip NTFS handler heap overflow fixed in 7-Zip 26.01.…
UniFi OS Patch Guide
Ubiquiti patched five UniFi OS vulnerabilities, including three CVSS 10 critical flaws.…
MiniPlasma Windows Zero-Day PoC Gives Local Users SYSTEM Access
A public MiniPlasma proof-of-concept shows local privilege escalation to SYSTEM on fully…
Anthropic Mythos Helped Build a macOS M5 Kernel Exploit
Calif says researchers used Anthropic’s Mythos Preview to build a local macOS…
Avada Builder CVEs Put WordPress Sites at File Read and SQLi Risk
Avada Builder patched two WordPress vulnerabilities that could expose server files or…
FunnelKit Checkout Skimmer Hits WooCommerce Payment Pages
Attackers are abusing vulnerable FunnelKit/Funnel Builder installations to inject checkout skimmers into…
