Skip to main content

Coverage

Vulnerabilities

903 articles on vulnerability disclosures and exploits

Advertisement

VU
HIGH
Vulnerabilities

CVE-2024-28995: SolarWinds Serv-U Path Traversal Exploited — Patch Now

SolarWinds patches CVE-2024-28995, a high-severity path traversal flaw in Serv-U exploited in the wild. Learn how to detect and mitigate this file disclosure risk.

Runtime Rebel Intel
3 min read·Jun 8, 2026
VU
INFO
Vulnerabilities

Emphere Raises $2.1M to Advance AI-Powered Vulnerability Remediation

Emphere secures $2.1M in seed funding to scale its AI-driven platform, focusing on automating the remediation of security vulnerabilities in software code.

Runtime Rebel Intel
4 min read·Jun 7, 2026
VU
CRITICAL
Vulnerabilities

CVE-2024-3300: Critical Everest Forms Pro Bypass Leads to Site Takeover

Hackers are actively exploiting an authentication bypass in the Everest Forms Pro WordPress plugin (CVE-2024-3300). Update immediately to prevent takeover.

Runtime Rebel Intel
4 min read·Jun 6, 2026
SolarWinds Serv-U DoS Vulnerability CVE-2026-28318 Added to CISA KEV
HIGH
Vulnerabilities

SolarWinds Serv-U DoS Vulnerability CVE-2026-28318 Added to CISA KEV

CISA adds CVE-2026-28318 to its KEV catalog following active exploitation of a high-severity DoS vulnerability in SolarWinds Serv-U file server software.

Runtime Rebel Intel
3 min read·Jun 6, 2026
Bright Data SDK: Smart TVs Used as AI Web-Scraping Proxies
MEDIUM
Threat Intel

Bright Data SDK: Smart TVs Used as AI Web-Scraping Proxies

Smart TVs and iOS apps are being converted into web-scraping exit nodes via embedded SDKs, fueling residential proxy networks used by AI companies.

Runtime Rebel Intel
3 min read·Jun 6, 2026
VU
HIGH
Vulnerabilities

CVE-2026-28318: SolarWinds Serv-U Uncontrolled Resource Consumption Exploit

CISA warns of active exploitation of CVE-2026-28318, an uncontrolled resource consumption flaw in SolarWinds Serv-U. Immediate patching is critical for all organizations.

Runtime Rebel Intel
4 min read·Jun 5, 2026
VU
HIGH
Vulnerabilities

CVE-2024-28995: SolarWinds Serv-U Exploit Leads to Server Crashes

CISA warns of active exploitation of SolarWinds Serv-U CVE-2024-28995. Attackers are leveraging this directory traversal flaw to crash vulnerable servers.

Runtime Rebel Intel
3 min read·Jun 5, 2026
SU
INFO
Supply Chain

OWASP CVE Lite CLI: Strengthening Supply Chain Security for Developers

OWASP's CVE Lite CLI provides a fast, local method for developers to identify vulnerable dependencies and mitigate supply chain risks early in development.

Runtime Rebel Intel
4 min read·Jun 5, 2026
VU
CRITICAL
Vulnerabilities

Cisco Catalyst SD-WAN Manager RCE via CVE-2024-20468 — Patch Now

Cisco warns of a high-severity zero-day vulnerability in Catalyst SD-WAN Manager, tracked as CVE-2024-20468, currently exploited for root privilege escalation.

Runtime Rebel Intel
3 min read·Jun 5, 2026
CVE-2026-3300: Critical RCE in Everest Forms Pro — Patch Now
CRITICAL
Vulnerabilities

CVE-2026-3300: Critical RCE in Everest Forms Pro — Patch Now

Attackers are exploiting CVE-2026-3300 in Everest Forms Pro up to 1.9.12 to achieve RCE. Learn how to protect your WordPress site from full compromise.

Runtime Rebel Intel
3 min read·Jun 5, 2026
VU
CRITICAL
Vulnerabilities

Critical Fortinet, Apache, Cisco IOS XE Vulnerabilities: Patch & Monitor

Alert: New critical vulnerabilities impact FortiClient, FortiNAC, and Apache products. Cisco IOS XE continues to face active exploitation. Urgent patching is required.

Runtime Rebel Intel
5 min read·Jun 5, 2026
DA
HIGH
Data Breach

DentaQuest Data Breach: 2.6 Million Accounts Exposed via MOVEit

DentaQuest confirms a massive data breach impacting 2.6 million users following the exploitation of a critical MOVEit Transfer vulnerability.

Runtime Rebel Intel
3 min read·Jun 4, 2026