A critical authentication bypass vulnerability in Fortinet’s FortiOS and FortiProxy products (CVE-2024-55591 and CVE-2025-24472) is actively exploited by ransomware operators to hijack enterprise networks....
Denmark’s Centre for Cybersecurity (CFCS) has elevated the cyber threat level for the telecommunications sector from “medium” to “high” in its latest assessment, citing...
The OSV (Open Source Vulnerabilities) initiative has launched OSV-Scanner V2.0.0, marking a significant leap in open-source vulnerability management.
This release integrates OSV-SCALIBR’s capabilities into...
A chain of vulnerabilities in Kentico Xperience CMS 13 allows unauthenticated attackers to execute arbitrary code on unpatched systems.
The flaws - including two...
A critical remote code execution (RCE) vulnerability (CVE-2025-24016) has been identified in Wazuh, a widely used open-source security information and event management (SIEM) platform....