Security Intelligence
Feed

Real-time CVE tracking, exploit analysis, and vulnerability intelligence curated for security professionals.

399 New today
67,173 Total advisories
Live Monitoring

Daily Security Trends (Last 14 Days)

3
Jun 18
352
Jun 19
56
Jun 20
104
Jun 21
317
Jun 22
294
Jun 23
355
Jun 24
376
Jun 25
386
Jun 26
53
Jun 27
318
Jun 28
284
Jun 29
427
Jun 30
42
Jul 1
Critical
High
Medium
Low

Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.8 CVE-2025-15666

Open Asset Import Library Assimp Model File SceneCombiner.cpp Copy heap-based overflow_CVE-2025-15666

A security vulnerability has been detected in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function Assimp::...

Open Asset Import Library Assimp 5.4.0 CVE
NONE THN:B4D7A1F379A...

Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery_THN:B4D7A1F379A5B964A3E344EE5A2CEAE2

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjXEaR4unJmt3rBY1LzI0Gq_veoF7Qzi-yPQNUcoR2oNV802lQ4MZAviyeq7bBh73PLAyp1quTozDq0ki_zm_...

N/A N/A THN
NONE THN:C46AE7905BE...

Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts_THN:C46AE7905BE451EB6EFAFFDF0134A46D

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjlhMdp0ML_DO3inv2zhyphenhyphenoZ9CmB1ESRBbVh_YHPol3serW7D4zTsXPGVjF62GhEcvamH6fmTs0Z...

N/A N/A THN
MEDIUM 6.4 CVE-2026-9107

Kali Forms <= 2.4.13 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'kaliforms_field_components' Parameter_CVE-2026-9107

The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'meta[kaliforms_fie...

wpchill Kali Forms — Contact Form & Drag-and-Drop Builder CVE
CRITICAL 9.8 CVE-2026-7840

UltraVNC repeater HTTP server global buffer overflow via long URI (pre-auth RCE)_CVE-2026-7840

UltraVNC repeater through 1.8.2.2 contains a global buffer overflow in its embedded HTTP administration server. The functions wi_senderr() and wi_r...

uvnc UltraVNC 1.8.2.2 CVE
CRITICAL 9.1 CVE-2026-7839

UltraVNC repeater ships hardcoded default admin password allowing unauthenticated admin access_CVE-2026-7839

UltraVNC repeater through 1.8.2.2 initializes the HTTP administration server with a hardcoded default password. In repeater/webgui/settings.c:197, ...

uvnc UltraVNC CVE
HIGH 8.8 CVE-2026-7838

UltraVNC viewer heap buffer overflow via integer overflow in RFB connection-failure reason length_CVE-2026-7838

UltraVNC viewer through 1.8.2.2 contains an integer overflow leading to a heap buffer overflow in the RFB protocol failure-response parsing path. I...

uvnc UltraVNC CVE
HIGH 7.5 CVE-2026-7831

UltraVNC viewer off-by-one stack overflow in ServerInit desktop name parsing_CVE-2026-7831

UltraVNC viewer through 1.8.2.2 contains an off-by-one stack buffer overflow in the RFB ServerInit message handler. In vncviewer/ClientConnection.c...

uvnc UltraVNC CVE
HIGH 7.4 CVE-2026-7830

UltraVNC MS-Logon II uses 64-bit Diffie-Hellman and seeded libc rand() enabling credential interception_CVE-2026-7830

UltraVNC through 1.8.2.2 uses inadequate cryptography in the MS-Logon II authentication scheme (rfbUltraVNC_MsLogonIIAuth). In rfb/dh.cpp the Diffi...

uvnc UltraVNC CVE