Recent Advisories

Severity ID Title Vendor Product Date Type
NONE IMPERVABLOG:D82...

Imperva Named a Leader in KuppingerCole’s Leadership Compass 2025 for Web Application and API Protection_IMPERVABLOG:D820ED5FE7198F416777857E16DEDA06

In the latest 2025 KuppingerCole Leadership Compass for Web Application and API Protection (WAAP), Imperva has once again secured a Leadership posi...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:B80...

A Perfect Storm: DDoS Attack Hits Turkish Luxury Retailer During Fall Collection Launch_IMPERVABLOG:B80276C5E1CC818D61C3BDCBFA535BD1

When high-stakes events meet unprecedented attack volumes, disruption can be devastating. A Turkish luxury retail platform experienced this firstha...

N/A N/A IMPERVABLOG
HIGH 8.9 IMPERVABLOG:609...

CVE-2025-62725: From “docker compose ps” to System Compromise_IMPERVABLOG:60999244835ED88136CF4FB08F8E160D

Docker Compose powers millions of workflows, from CI/CD runners and local development stacks to cloud workspaces and enterprise build pipelines. It...

N/A N/A IMPERVABLOG
CRITICAL 9.8 IMPERVABLOG:F67...

CVE-2025-61882: Imperva Customers Protected Against Critical Oracle EBS Zero-Day RCE_IMPERVABLOG:F67CE10F1C282EBF524B9D36E6BBB3E2

_TL;DR: In early October 2025, Oracle released an emergency security alert addressing CVE-2025-61882, a high-severity unauthenticated remote code e...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:401...

Rethinking DDoS Defense: Why Scale Isn’t the Only Metric That Matters_IMPERVABLOG:401392DE4A169F5A7033FF28681A2E86

In recent months, headlines have drawn attention to record-breaking DDoS attacks, often measured in terabits per second (Tbps) and accompanied by d...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:F1B...

Another Critical RCE Discovered in a Popular MCP Server_IMPERVABLOG:F1B708A58189B8C6452086DA47CE0027

Artificial Intelligence development is moving faster than secure coding practices, and attackers are taking notice. Imperva Threat Research recentl...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:E22...

Imperva Enhances Client-Side Protection to Help You Stay Ahead of PCI-DSS Compliance_IMPERVABLOG:E223187E3556F3B7A338FF64E264038C

When the latest PCI DSS 4.0 requirements came into full effect in March 2025, organizations processing cardholder data faced new obligations to pro...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:2DE...

Securing the Journey: Cybersecurity Challenges in the Tourism Industry_IMPERVABLOG:2DE801B5B0A6B3CFACE0CDB696E92B92

This weekend is World Tourism Day, a celebration of the global travel industry and the cultural, economic, and social connections it fosters. Howev...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:BDC...

KuppingerCole 2025: Why Thales is a Market Leader in API Security_IMPERVABLOG:BDCB0B05DB0CDEA52B9ADB56EA7715AD

APIs are the backbone of modern applications connecting critical microservices and enabling enterprises to turn data into context-aware business lo...

N/A N/A IMPERVABLOG
NONE IMPERVABLOG:7AB...

The API Battleground: Why APIs are the new frontline—and how to stop the stealthiest attacks_IMPERVABLOG:7AB4DB42542CC59500AD954092DBF7A4

APIs used to be the quiet backstage crew that made apps feel magical. Now attackers have learned the script — they walk onstage, deliver perfectly ...

N/A N/A IMPERVABLOG