CISA is retiring a weekly vulnerability bulletin it has published since 2004.
Hunt.io found an exposed server packed with evidence of ownCloud and WordPress intrusions against Philippine targets.
CISA flags a critical Gitea code injection bug that attackers are using to drop crypto miners on exposed servers.
Two exploited TrueConf Server flaws land on CISA's KEV list as Head Mare is caught delivering a poisoned installer.
CISA added an actively exploited Ray AI framework flaw to its KEV catalog, citing evidence of active exploitation in the…
Federal agencies have days to patch an exploited Progress ADC bug that drew hundreds of attack attempts.
CISA warns of active exploitation of CVE-2026-58644 and three other SharePoint flaws, urging federal agencies to patch within a week.
CISA adds two actively exploited flaws to its KEV catalog, including a critical Langflow vulnerability exploited by Iranian state hackers…