| Jan 13, 2023 Flash Notice: Microsoft Patch Tuesday Addresses 11 Critical Vulnerabilities & 1 Zero-Day Microsoft recently released its Patch Tuesday fixes which included a patch for an actively exploited zero-day vulnerability, CVE-2023-21674.
| Jan 11, 2023 Flash Notice: High-Severity JsonWebToken Library Vulnerability A vulnerability was found in the open source JsonWebToken (JWT) library that could allow an attacker to achieve remote code execution on a server.
| Jan 6, 2023 Flash Notice: High-Severity Fortinet Vulnerabilities Impact FortiTester and FortiADC Two high-severity vulnerabilities (CVE-2022-35845 and CVE-2022-39947) were found in Fortinet’s FortiADC and FortiTester.
| Jan 5, 2023 Flash Notice: Zoho Manage Engine Vulnerability - Patch Now This week, Zoho disclosed a critical security vulnerability (CVE-2022-47523) impacting some of their ManageEngine products.
| Dec 29, 2022 Flash Notice: Critical Linux Kernel Vulnerability Can Lead to Remote Code Execution This week, VMware patched a critical vulnerability (CVE-2022-31705) impacting ESXi, Workstation, Cloud Foundation, and Fusion.
| Dec 16, 2022 Flash Notice: Critical VMware Vulnerabilities This week, VMware patched a critical vulnerability (CVE-2022-31705) impacting ESXi, Workstation, Cloud Foundation, and Fusion.
| Dec 15, 2022 Flash Notice: Critical Remote Code Execution Vulnerability Found in SPNEGO An RCE Vulnerability found in the common Windows Protocol SPNEGO NEGOEX has been upgraded from a 3.1 CVSS score to an 8.1.
| Dec 14, 2022 Flash Notice: Critical Citrix Zero-Day Exploited by Attackers A critical zero-day vulnerability (CVE-2022-27518) was found in Citrix ADC and Gateway. It is an unauthenticated remote code execution vulnerability.
| Dec 13, 2022 Flash Notice: Critical Fortinet Zero-Day Vulnerability Exploited in the Wild A critical zero-day vulnerability (CVE-2022-42475) was found in multiple versions of Fortinet’s FortiOS SSL-VPN.
| Dec 7, 2022 Flash Notice: Google Patches Actively Exploited Zero-Day A zero-day vulnerability impacting all browser versions of Google Chrome (including Opera & Microsoft Edge) is being actively exploited by threat actors.