The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned on Thursday that a high-severity Apache ActiveMQ vulnerability patched earlier this month is now actively exploited […]
A critical vulnerability in Nginx UI with Model Context Protocol (MCP) support is now being exploited in the wild for full server takeover without authentication. […]
A serious security issue in the Marimo Python notebook platform was quickly taken advantage of by hackers, starting only 10 hours after the vulnerability was […]
Attackers have been leveraging a previously unknown vulnerability in Adobe Reader through malicious PDFs, with activity dating back to at least December. Security researcher Haifei […]
Cybercriminals are taking advantage of a critical vulnerability, identified as CVE-2025-59528, in Flowise, an open-source platform that allows users to visually create LLM apps and […]
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has mandated that government entities apply fixes to their Citrix NetScaler systems for an actively exploited security […]
The Cybersecurity and Infrastructure Security Agency (CISA) has directed U.S. federal agencies to apply patches for three iOS security weaknesses. These flaws are being actively […]
On Monday, the U.S. government’s Cybersecurity and Infrastructure Security Agency (CISA) included a medium-risk security issue affecting Wing FTP in its list of Known Exploited […]
A critical zero-day vulnerability in the User Registration & Membership plugin for WordPress (CVE-2026-1492) is currently being exploited to create unauthorized administrator accounts. The flaw allows unauthenticated […]
Google has confirmed that a high-severity security flaw, CVE-2026-21385 (CVSS score 7.8), in an open-source Qualcomm graphics component is being exploited in the wild. The vulnerability was disclosed as […]
© Bulletproof Servers. All rights reserved.