Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Vulnerability Disclosure

20 articles

SC Media Vulnerability Disclosure Apple May 15

Researchers bypass Apple's M5 security with AI-powered macOS exploit

Researchers from Calif utilized Anthropic's Mythos Preview AI to chain two previously unknown bugs and several techniques, ultimately creating a functional e...

SC Media →

SC Media Vulnerability Disclosure WordPress May 15

WordPress Funnel Builder vulnerability exploited to steal payment data

The vulnerability in the Funnel Builder plugin, used by over 40,000 websites, allows unauthenticated attackers to modify global settings via an unprotected c...

SC Media →

BleepingComputer Vulnerability Disclosure Oracle WordPress May 15

Funnel Builder WordPress plugin bug exploited to steal credit cards

A critical vulnerability in the Funnel Builder plugin for WordPress is being actively exploited to inject malicious JavaScript snippets into WooCommerce chec...

BleepingComputer →

The Hacker News Vulnerability Disclosure Amazon May 15

Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and Persistence

Cybersecurity researchers have disclosed a set of four security flaws in OpenClaw that could be chained to achieve data theft, privilege escalation, and pers...

T1548 T1041

The Hacker News →

The Record Vulnerability Disclosure Cisco May 15

CISA orders all federal agencies to patch exploited bug in Cisco SD-WAN systems by Sunday

Cisco released a patch for the vulnerability on Thursday, writing in an advisory that it could “allow an unauthenticated, remote attacker to bypass authentic...

The Record →

GBHackers Vulnerability Disclosure Google Linux May 15

Google Project Zero Details Pixel 10 Zero-Click Exploit Chain

A powerful zero-click exploit chain for the Pixel 10 that can take an attacker from a remote Dolby decoding bug to full kernel control through a single vulne...

GBHackers →

GBHackers Vulnerability Disclosure Microsoft May 15

Hackers Exploit OAuth Device Flow to Steal Microsoft 365 Tokens

Hackers are rapidly weaponizing a little-known Microsoft authentication feature to hijack enterprise accounts, as device code phishing surges across the thre...

T1566

GBHackers →

CSO Online Vulnerability Disclosure Cisco May 15

Cisco warns of an actively exploited SD-WAN flaw with max severity

Cisco has disclosed a max-severity authentication bypass vulnerability affecting its Catalyst SD-WAN Controller and Catalyst SD-WAN Manager platforms, warnin...

T1556

CSO Online →

SC Media Vulnerability Disclosure Linux May 15

New Linux privilege escalation flaw ‘Fragnesia’ disclosed; PoC available

Fragnesia is at least the fourth privilege escalation flaw affecting Linux systems disclosed in the last three weeks.

T1548

SC Media →

GBHackers Vulnerability Disclosure Microsoft May 15

Microsoft Warns HPE Operations Agent Abused in Malware-Free Attacks

Microsoft has revealed a stealthy intrusion campaign where attackers bypassed traditional malware and exploits, instead abusing trusted enterprise tools to s...

GBHackers →

Help Net Security Vulnerability Disclosure Linux May 15

Rocky Linux launches opt-in security repository for urgent fixes

Rocky Linux has introduced a Security Repository that allows the distribution to ship urgent security fixes ahead of upstream Enterprise Linux when public ex...

Help Net Security →

GBHackers Vulnerability Disclosure May 15

TeamPCP Hackers Exploit CI/CD Pipelines to Steal Cloud Credentials

A financially motivated threat group known as TeamPCP is aggressively targeting modern software supply chains, abusing trusted CI/CD pipelines to steal sensi...

T1195

GBHackers →

GBHackers Vulnerability Disclosure May 15

Hackers Exploit Scheduled Tasks for Persistence in FrostyNeighbor Attacks

Hackers linked to the long-running FrostyNeighbor cyber‑espionage group have intensified attacks against Ukrainian government organizations, deploying update...

T1053

GBHackers →

Exploit Database Vulnerability Disclosure Microsoft May 15

[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution

Remote Sunrise Helper for Windows 2026.

T1190

Exploit Database →

SC Media Vulnerability Disclosure VMware Broadcom May 14

Broadcom patches high-severity VMware Fusion flaw allowing local privilege escalation

The vulnerability is a time-of-check time-of-use (TOCTOU) flaw affecting operations performed by a SETUID binary.

T1548 T1068

SC Media →

SC Media Vulnerability Disclosure F5 May 14

Critical 'NGINX Rift' vulnerability discovered, present for 18 years

The vulnerability, with a CVSS v4 score of 9.2, resides in the ngx_http_rewrite_module and affects a significant portion of internet infrastructure due to NG...

SC Media →

BleepingComputer Vulnerability Disclosure WordPress May 14

Hackers exploit auth bypass flaw in Burst Statistics WordPress plugin

Hackers are leveraging a critical authentication bypass vulnerability in the WordPress plugin Burst Statistics to obtain admin-level access to websites. [.

T1556

BleepingComputer →

CSO Online Vulnerability Disclosure Linux May 14

Meet Fragnesia, the third Linux kernel vulnerability in a month

Linux admins reeling from handling last month’s CopyFail and last week’s Dirty Frag kernel vulnerabilities have a new headache to deal with: Fragnesia. “This...

CSO Online →

Wordfence Blog Vulnerability Disclosure Intel WordPress May 14

Wordfence Intelligence Weekly WordPress Vulnerability Report (May 4, 2026 to May 10, 2026)

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were that contributed to WordPres...

Wordfence Blog →

The Hacker News Vulnerability Disclosure Palo Alto Networks May 14

ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ Stories

Everything is still on fire. This week feels dumb in the worst way — bad links, weak checks, fake help desks, shady forum posts, and people turning supply ch...

T1195

The Hacker News →

«Previous page 1 ... 15 16 17 18 19 ... 31 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA