Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Vulnerability Disclosure

20 articles

The Hacker News Vulnerability Disclosure Amazon NEW 2h ago

Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and Persistence

Cybersecurity researchers have disclosed a set of four security flaws in OpenClaw that could be chained to achieve data theft, privilege escalation, and pers...

T1548 T1041

The Hacker News →

The Record Vulnerability Disclosure Cisco NEW 2h ago

CISA orders all federal agencies to patch exploited bug in Cisco SD-WAN systems by Sunday

Cisco released a patch for the vulnerability on Thursday, writing in an advisory that it could “allow an unauthenticated, remote attacker to bypass authentic...

The Record →

GBHackers Vulnerability Disclosure Google Linux NEW 3h ago

Google Project Zero Details Pixel 10 Zero-Click Exploit Chain

A powerful zero-click exploit chain for the Pixel 10 that can take an attacker from a remote Dolby decoding bug to full kernel control through a single vulne...

GBHackers →

GBHackers Vulnerability Disclosure Microsoft NEW 3h ago

Hackers Exploit OAuth Device Flow to Steal Microsoft 365 Tokens

Hackers are rapidly weaponizing a little-known Microsoft authentication feature to hijack enterprise accounts, as device code phishing surges across the thre...

T1566

GBHackers →

CSO Online Vulnerability Disclosure Cisco NEW 4h ago

Cisco warns of an actively exploited SD-WAN flaw with max severity

Cisco has disclosed a max-severity authentication bypass vulnerability affecting its Catalyst SD-WAN Controller and Catalyst SD-WAN Manager platforms, warnin...

T1556

CSO Online →

SC Media Vulnerability Disclosure Linux NEW 5h ago

New Linux privilege escalation flaw ‘Fragnesia’ disclosed; PoC available

Fragnesia is at least the fourth privilege escalation flaw affecting Linux systems disclosed in the last three weeks.

T1548

SC Media →

GBHackers Vulnerability Disclosure Microsoft NEW 5h ago

Microsoft Warns HPE Operations Agent Abused in Malware-Free Attacks

Microsoft has revealed a stealthy intrusion campaign where attackers bypassed traditional malware and exploits, instead abusing trusted enterprise tools to s...

GBHackers →

Help Net Security Vulnerability Disclosure Linux 6h ago

Rocky Linux launches opt-in security repository for urgent fixes

Rocky Linux has introduced a Security Repository that allows the distribution to ship urgent security fixes ahead of upstream Enterprise Linux when public ex...

Help Net Security →

GBHackers Vulnerability Disclosure 9h ago

TeamPCP Hackers Exploit CI/CD Pipelines to Steal Cloud Credentials

A financially motivated threat group known as TeamPCP is aggressively targeting modern software supply chains, abusing trusted CI/CD pipelines to steal sensi...

T1195

GBHackers →

GBHackers Vulnerability Disclosure 10h ago

Hackers Exploit Scheduled Tasks for Persistence in FrostyNeighbor Attacks

Hackers linked to the long-running FrostyNeighbor cyber‑espionage group have intensified attacks against Ukrainian government organizations, deploying update...

T1053

GBHackers →

Exploit Database Vulnerability Disclosure Microsoft 16h ago

[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution

Remote Sunrise Helper for Windows 2026.

T1190

Exploit Database →

SC Media Vulnerability Disclosure VMware Broadcom 16h ago

Broadcom patches high-severity VMware Fusion flaw allowing local privilege escalation

The vulnerability is a time-of-check time-of-use (TOCTOU) flaw affecting operations performed by a SETUID binary.

T1548 T1068

SC Media →

SC Media Vulnerability Disclosure F5 16h ago

Critical 'NGINX Rift' vulnerability discovered, present for 18 years

The vulnerability, with a CVSS v4 score of 9.2, resides in the ngx_http_rewrite_module and affects a significant portion of internet infrastructure due to NG...

SC Media →

BleepingComputer Vulnerability Disclosure WordPress 18h ago

Hackers exploit auth bypass flaw in Burst Statistics WordPress plugin

Hackers are leveraging a critical authentication bypass vulnerability in the WordPress plugin Burst Statistics to obtain admin-level access to websites. [.

T1556

BleepingComputer →

CSO Online Vulnerability Disclosure Linux 19h ago

Meet Fragnesia, the third Linux kernel vulnerability in a month

Linux admins reeling from handling last month’s CopyFail and last week’s Dirty Frag kernel vulnerabilities have a new headache to deal with: Fragnesia. “This...

CSO Online →

Wordfence Blog Vulnerability Disclosure Intel WordPress 21h ago

Wordfence Intelligence Weekly WordPress Vulnerability Report (May 4, 2026 to May 10, 2026)

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were that contributed to WordPres...

Wordfence Blog →

The Hacker News Vulnerability Disclosure Palo Alto Networks 23h ago

ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ Stories

Everything is still on fire. This week feels dumb in the worst way — bad links, weak checks, fake help desks, shady forum posts, and people turning supply ch...

T1195

The Hacker News →

Cisco Advisories Vulnerability Disclosure Cisco 1d ago

Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability

May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the Cisco Catalyst SD-WAN C...

T1556

Cisco Advisories →

Cisco Advisories Vulnerability Disclosure Cisco 1d ago

Cisco Crosswork Network Controller and Cisco Network Services Orchestrator Advisory

Following the initial publication of the Security Advisory about a denial of service (DoS) condition in Cisco Crosswork Network Controller and Cisco Network ...

T1498

Cisco Advisories →

BleepingComputer Vulnerability Disclosure F5 1d ago

18-year-old NGINX vulnerability allows DoS, potential RCE

An 18-year-old flaw in the NGINX open-source web server, discovered using an autonomous scanning system, can be exploited for denial of service and, under ce...

T1190 T1498

BleepingComputer →

1 2 3 ... 15 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA