Skip to main content
Severity: 38 articles
CVE-2026-42897 High Patched

CVE-2026-42897: Microsoft Exchange Server XSS in Outlook Web Access

Microsoft · Exchange Server · CVSS 8 ·

A reflected cross-site scripting vulnerability in Exchange Server's Outlook Web Access (OWA) enables arbitrary JavaScript execution in victim browsers, facilitating session hijacking and credential theft under specific interaction conditions.

CVE-2024-38094 High Patched

CVE-2024-38094: Microsoft SharePoint Server — Remote Code Execution

Microsoft · SharePoint Server · CVSS 7.2 ·

A high-severity deserialization vulnerability in Microsoft SharePoint Server allows an authenticated attacker with Site Owner permissions to execute arbitrary code on the server, exploited in the wild for persistent access and network reconnaissance in targeted intrusion campaigns.

CVE-2025-29824 High Patched

CVE-2025-29824: Windows CLFS — Zero-Day Privilege Escalation

Microsoft · Windows (CLFS Driver) · CVSS 7.8 ·

A high-severity use-after-free vulnerability in the Windows Common Log File System (CLFS) driver allows local attackers to escalate privileges to SYSTEM, actively exploited as a zero-day by ransomware operators before Microsoft's April 2025 Patch Tuesday.

CVE-2024-50623 High Patched

CVE-2024-50623: Cleo Harmony/VLTrader — Unrestricted File Upload and Download RCE

Cleo · Harmony / VLTrader / LexiCom · CVSS 8.8 ·

A high-severity unrestricted file upload and download vulnerability in Cleo's Harmony, VLTrader, and LexiCom MFT products allows remote attackers to execute arbitrary commands, serving as the precursor exploit chain to the more critical CVE-2024-55956 zero-day exploitation campaign.

CVE-2025-0282 Critical Patched

CVE-2025-0282: Ivanti Connect Secure — Stack Overflow Zero-Day RCE

Ivanti · Connect Secure / Policy Secure / Neurons for ZTA · CVSS 9 ·

A critical stack-based buffer overflow in Ivanti Connect Secure allows unauthenticated remote attackers to execute arbitrary code, exploited as a zero-day in targeted campaigns before Ivanti's January 2025 advisory, following the pattern of prior Ivanti VPN zero-day exploitation.

CVE-2024-55956 Critical Patched

CVE-2024-55956: Cleo MFT — Unrestricted File Upload to RCE

Cleo · Harmony / VLTrader / LexiCom · CVSS 9.8 ·

A critical unrestricted file upload vulnerability in Cleo's managed file transfer products (Harmony, VLTrader, LexiCom) allows unauthenticated attackers to upload and execute arbitrary code, exploited by the Clop ransomware group in a wave of targeted data theft attacks.

CVE-2024-21893 High Patched

CVE-2024-21893: Ivanti Connect Secure — SSRF to Authentication Bypass

Ivanti · Connect Secure / Policy Secure · CVSS 8.2 ·

A server-side request forgery vulnerability in Ivanti Connect Secure and Policy Secure's SAML component allows unauthenticated attackers to access restricted resources, exploited as part of a multi-CVE attack chain targeting government and enterprise VPN infrastructure.

CVE-2023-7028 Critical Patched

CVE-2023-7028: GitLab — Account Takeover via Email Reset

GitLab · GitLab CE/EE · CVSS 10 ·

A critical account takeover vulnerability in GitLab CE/EE allows unauthenticated attackers to send password reset emails to arbitrary email addresses, enabling complete account hijacking without user interaction, including of administrator accounts.

CVE-2022-26134 Critical Patched

CVE-2022-26134: Atlassian Confluence — OGNL Injection RCE

Atlassian · Confluence Server / Data Center · CVSS 9.8 ·

A critical OGNL injection vulnerability in Atlassian Confluence Server and Data Center allows unauthenticated attackers to execute arbitrary commands via crafted HTTP requests, exploited as a zero-day in targeted attacks before patch availability.

CVE-2024-29824 Critical Patched

CVE-2024-29824: Ivanti EPM — SQL Injection to RCE

Ivanti · Endpoint Manager (EPM) · CVSS 9.6 ·

A critical SQL injection vulnerability in Ivanti Endpoint Manager's Core server allows unauthenticated attackers on the same network to execute arbitrary code via the DAS component, confirmed as actively exploited by CISA in September 2024.

CVE-2023-42793 Critical Patched

CVE-2023-42793: JetBrains TeamCity — Pre-Auth Authentication Bypass

JetBrains · TeamCity · CVSS 9.8 ·

A critical pre-authentication bypass in JetBrains TeamCity allows unauthenticated attackers to create admin tokens and gain full server control, exploited by APT29 and North Korean actors in supply chain intrusion campaigns targeting software development pipelines.

CVE-2023-0669 High Patched

CVE-2023-0669: GoAnywhere MFT — Pre-Auth Remote Code Execution

Fortra (formerly HelpSystems) · GoAnywhere MFT · CVSS 7.2 ·

A high-severity pre-authentication remote code execution vulnerability in Fortra's GoAnywhere Managed File Transfer was exploited as a zero-day by the Cl0p ransomware group, compromising over 130 organisations before a patch was available.

CVE-2022-47986 Critical Patched

CVE-2022-47986: IBM Aspera Faspex — YAML Deserialization RCE

IBM · Aspera Faspex · CVSS 9.8 ·

A critical YAML deserialization vulnerability in IBM Aspera Faspex's API allows unauthenticated remote attackers to execute arbitrary code, exploited by ransomware groups within days of public disclosure via a pre-authentication attack path.

CVE-2024-4577 Critical Patched

CVE-2024-4577: PHP CGI — Argument Injection RCE on Windows

PHP Group · PHP (CGI mode on Windows) · CVSS 9.8 ·

A critical argument injection vulnerability in PHP-CGI on Windows allows unauthenticated remote attackers to execute arbitrary PHP code by exploiting how PHP handles Unicode character conversion in CGI mode, affecting XAMPP and other common Windows PHP deployments.

CVE-2023-48788 Critical Patched

CVE-2023-48788: Fortinet FortiClientEMS — SQL Injection to RCE

Fortinet · FortiClientEMS · CVSS 9.8 ·

A critical SQL injection vulnerability in Fortinet FortiClientEMS allows unauthenticated remote attackers to execute arbitrary commands via crafted requests to the management server, with active exploitation confirmed by multiple threat intelligence sources.

CVE-2024-23113 Critical Patched

CVE-2024-23113: Fortinet FortiOS — Format String RCE

Fortinet · FortiOS / FortiProxy / FortiPAM / FortiWeb · CVSS 9.8 ·

A critical format string vulnerability in Fortinet FortiOS, FortiProxy, FortiPAM, and FortiWeb's fgfmd daemon allows unauthenticated remote attackers to execute arbitrary commands via specially crafted requests to the FGFM protocol.

CVE-2021-44228 Critical Patched

CVE-2021-44228: Log4Shell — Apache Log4j Remote Code Execution

Apache Software Foundation · Log4j 2 · CVSS 10 ·

A critical JNDI injection vulnerability in Apache Log4j 2 allows unauthenticated remote code execution by logging a specially crafted string, affecting an enormous portion of the Java application ecosystem and triggering one of the most urgent security responses in history.

CVE-2023-34362 Critical Patched

CVE-2023-34362: MOVEit Transfer — SQL Injection to RCE

Progress Software · MOVEit Transfer · CVSS 9.8 ·

A critical SQL injection vulnerability in Progress Software MOVEit Transfer allows unauthenticated attackers to escalate privileges and achieve remote code execution, exploited at massive scale by the Cl0p ransomware group in a wave of data theft affecting thousands of organisations.

CVE-2023-4966 Critical Patched

CVE-2023-4966: Citrix NetScaler Bleed — Session Token Leak

Citrix · NetScaler ADC / NetScaler Gateway · CVSS 9.4 ·

A critical information disclosure vulnerability in Citrix NetScaler ADC and Gateway allows unauthenticated attackers to retrieve session tokens from device memory, enabling session hijacking without requiring any credentials.

CVE-2023-27997 Critical Patched

CVE-2023-27997: Fortinet FortiGate SSL-VPN — Pre-Auth Heap Overflow RCE

Fortinet · FortiOS / FortiProxy · CVSS 9.8 ·

A critical heap-based buffer overflow in Fortinet FortiOS and FortiProxy SSL-VPN allows pre-authentication remote attackers to execute arbitrary code, actively exploited by multiple threat actors including ransomware groups and nation-state APTs.

CVE-2023-22515 Critical Patched

CVE-2023-22515: Atlassian Confluence — Privilege Escalation to Admin

Atlassian · Confluence Data Center and Server · CVSS 10 ·

A critical privilege escalation vulnerability in Atlassian Confluence Data Center and Server allows unauthenticated attackers to create administrator accounts by accessing a restricted endpoint, exploited as a zero-day in targeted attacks.

CVE-2024-21762 Critical Patched

CVE-2024-21762: Fortinet FortiOS SSL VPN — Out-of-Bounds Write RCE

Fortinet · FortiOS · CVSS 9.6 ·

A critical out-of-bounds write vulnerability in Fortinet FortiOS SSL VPN allows unauthenticated remote attackers to achieve arbitrary code execution via specially crafted HTTP requests, with active exploitation observed in CISA KEV.

No articles match the selected filter.