Recent Advisories

Severity ID Title Vendor Product Date Type
NONE 317E7C82-DB8A-

Apache-Shiro-RememberMe-RCE_317E7C82-DB8A-5733-AC2A-587546CDD299

No description provided...

N/A N/A GITHUBEXPLOIT
NONE 3D01EEDF-77BF-

Vulnerability-Exploit-Correlation-Engine_3D01EEDF-77BF-59C4-B3FF-BA52FA9A53AD

Vulnerability-Exploit-Correlation-Engine Passive-analysis CLI tool that ingests Nmap XML output or raw service banners, queries the NIST NVD API fo...

N/A N/A GITHUBEXPLOIT
NONE TALOSBLOG:57890...

The time of much patching is coming_TALOSBLOG:5789026EF53D30E3F9C3E6C8927FC37B

![The time of much patching is coming](https://storage.ghost.io/c/af/a0/afa04ee3-414f-4481-8d23-7e7c146f192e/content/images/2026/05/threat_source-1...

N/A N/A TALOSBLOG
NONE HACKREAD:BA57F3...

Fake Job Interview Apps Drop JobStealer Malware on Windows and macOS_HACKREAD:BA57F366CF1C1D01D9B515571AC2FED7

Hackers are using Fake interview apps to spread JobStealer malware on macOS and Windows to steal crypto wallets, browser data, and passwords.

N/A N/A HACKREAD
NONE PACKETSTORM:221083

📄 Apache HertzBeat 1.8.0 Remote Command Execution_PACKETSTORM:221083

Apache HertzBeat version 1.8.0 suffers from a remote command execution vulnerability via the scriptCommand parameter in a monitoring template defin...

N/A N/A PACKETSTORM
NONE 03A79318-D4D5-

Banking-Application-Vulnerable_03A79318-D4D5-5EF6-81EB-D60A0E1DE54F

No description provided...

N/A N/A GITHUBEXPLOIT
NONE 8B64167D-6441-

cyber-security-project-_8B64167D-6441-5D29-B112-05E65CB35E45

cyber-security-project- A Vulnerability Scanner is a cybersecurity tool designed to identify security weaknesses in systems, networks, or web appli...

N/A N/A GITHUBEXPLOIT
NONE MS:CVE-2026-41615

Microsoft Authenticator Information Disclosure Vulnerability_MS:CVE-2026-41615

Exposure of sensitive information to an unauthorized actor in Microsoft Authenticator allows an unauthorized attacker to disclose information over ...

N/A N/A MSCVE
NONE MS:CVE-2026-42897

Microsoft Exchange Server Spoofing Vulnerability_MS:CVE-2026-42897

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker t...

N/A N/A MSCVE
NONE THN:7E008AC2F41...

Stealer Backdoor Found in 3 Node-IPC Versions Targeting Developer Secrets_THN:7E008AC2F41F8784721A7FC21B43DBC0

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhTj2m9-HHmDEDzKIsalsJ_HJcwcUsIFajvcpTLP9QMyqS9F_JroTH7lXeOGZFuO6j6F-RzbIo1kBIQ0udSFQ...

N/A N/A THN