Vulnerability

Node.js Vulnerability Enables Attackers to Crash Processes and Disrupt ServicesNode.js Vulnerability Enables Attackers to Crash Processes and Disrupt Services

Node.js Vulnerability Enables Attackers to Crash Processes and Disrupt Services

Node.js project has released a critical security update addressing several vulnerabilities that could allow attackers to crash server processes and…

2 weeks ago
New Adobe Photoshop Vulnerability Enables Arbitrary Code ExecutionNew Adobe Photoshop Vulnerability Enables Arbitrary Code Execution

New Adobe Photoshop Vulnerability Enables Arbitrary Code Execution

Adobe has released critical security updates addressing three high-severity vulnerabilities (CVE-2025-30324, CVE-2025-30325, CVE-2025-30326) in Photoshop 2024 and 2025 that could…

3 weeks ago
Severe Adobe Illustrator Flaw Allows Remote Code ExecutionSevere Adobe Illustrator Flaw Allows Remote Code Execution

Severe Adobe Illustrator Flaw Allows Remote Code Execution

Adobe has issued an urgent security update for its widely used graphic design software, Adobe Illustrator, following the discovery of…

3 weeks ago
Critical Vulnerability in Windows Remote Desktop Gateway Allows Denial-of-Service AttacksCritical Vulnerability in Windows Remote Desktop Gateway Allows Denial-of-Service Attacks

Critical Vulnerability in Windows Remote Desktop Gateway Allows Denial-of-Service Attacks

Microsoft has disclosed two critical vulnerabilities in its Remote Desktop Gateway (RDG) service, posing significant risks to organizational networks. CVE-2025-26677…

3 weeks ago
Critical Microsoft Outlook Flaw Enables Remote Execution of Arbitrary CodeCritical Microsoft Outlook Flaw Enables Remote Execution of Arbitrary Code

Critical Microsoft Outlook Flaw Enables Remote Execution of Arbitrary Code

Newly disclosed vulnerability in Microsoft Outlook (CVE-2025-32705) permits attackers to execute arbitrary code on compromised systems through a memory corruption…

3 weeks ago
Microsoft Defender Vulnerability Allows Unauthorized Privilege GainMicrosoft Defender Vulnerability Allows Unauthorized Privilege Gain

Microsoft Defender Vulnerability Allows Unauthorized Privilege Gain

Newly disclosed vulnerability in Microsoft Defender for Endpoint (CVE-2025-26684) exposes systems to local privilege escalation attacks by exploiting improper handling…

3 weeks ago
Microsoft Alerts on AD CS Flaw Enabling Remote Denial-of-Service AttacksMicrosoft Alerts on AD CS Flaw Enabling Remote Denial-of-Service Attacks

Microsoft Alerts on AD CS Flaw Enabling Remote Denial-of-Service Attacks

Microsoft has issued a security advisory for a newly identified vulnerability in Active Directory Certificate Services (AD CS), tracked as…

3 weeks ago
Windows CLFS Zero-Day Vulnerability Actively Exploited in the WildWindows CLFS Zero-Day Vulnerability Actively Exploited in the Wild

Windows CLFS Zero-Day Vulnerability Actively Exploited in the Wild

Microsoft has disclosed two critical security vulnerabilities in the Windows Common Log File System (CLFS) Driver that are currently being…

3 weeks ago
Critical Samsung MagicINFO 9 Server Flaw Allows Arbitrary File WritesCritical Samsung MagicINFO 9 Server Flaw Allows Arbitrary File Writes

Critical Samsung MagicINFO 9 Server Flaw Allows Arbitrary File Writes

Samsung’s SmartTV and digital signage ecosystem faces renewed cybersecurity scrutiny following the disclosure of a critical path traversal vulnerability (CVE-2025-4632)…

3 weeks ago
Windows Ancillary for WinSock 0-Day Vulnerability Actively Exploited to Gain Admin AccessWindows Ancillary for WinSock 0-Day Vulnerability Actively Exploited to Gain Admin Access

Windows Ancillary for WinSock 0-Day Vulnerability Actively Exploited to Gain Admin Access

Microsoft has confirmed active exploitation of a critical privilege escalation vulnerability in the Windows Ancillary Function Driver for WinSock, tracked…

3 weeks ago