#vulnerabilities
74 stories taggedvulnerabilities · page 4 of 5.

Hackers Start Breaking Into ServiceNow AI Platform Through Critical Flaw CVE-2026-6875
Attackers are exploiting a pre-authentication bug in ServiceNow's flagship platform just days after patches shipped, researchers confirm.

Google Patches Seven Memory Safety Bugs in Chrome 150, Three Rated Critical
All seven flaws were found internally or by researchers, not by criminals. But history says patch fast anyway.

Claude Mythos: A New Frontier in AI Cybersecurity
Anthropic's Claude Mythos is finding vulnerabilities at a scale no human team can match. Whether that speed helps defenders more than attackers is the question nobody can answer yet.

CISA sounds alarm on SharePoint Server flaws being used to break in right now
The US cyber agency says attackers are chaining three unpatched holes in self-hosted SharePoint to bypass logins, run code and stay hidden. Nearly 10,000 servers sit exposed online.

SAP Fixes Critical NetWeaver Bug That Lets Logged-In Users Corrupt Memory
The July 2026 patch batch closes CVE-2026-44747, a 9.9-rated flaw in the ABAP application server that could expose or alter company data.

Microsoft ships Windows 10 KB5099539 as record 570-flaw Patch Tuesday lands
The July 2026 update patches two actively exploited zero-days and quietly extends free security fixes for home users into 2027.

Microsoft ships fixes for 570 flaws in July, including two bugs already used in attacks
The July 2026 Patch Tuesday is the largest on record, driven partly by an AI system Microsoft is using to hunt bugs in Windows.

Microsoft Ships July 2026 Patch Tuesday: 571 Fixes, Better AirPods Pairing, and a Quieter Widgets Panel
The mandatory Windows 11 update rolls up months of security holes and finally tames Bluetooth pairing gremlins. Here is what it actually changes on your PC.

Adobe Rushes Out Fixes for 88 Security Flaws, Eight of Them Critical in ColdFusion
Two weeks after hackers exploited a separate ColdFusion flaw within hours of its disclosure, Adobe is back with another urgent patch batch covering a dozen products.

Seven Security Flaws Fixed in VMware Avi Load Balancer, One Rated Critical
Broadcom has patched a critical flaw that lets attackers break into a core networking component without a password, plus six more serious bugs found by two outside researchers.

SAP Patches Critical Flaws in NetWeaver, Approuter, and Commerce Cloud
Three SAP products used by thousands of businesses carried serious security holes. Patches are now available, and anyone running the affected software should move fast.

US Cyber Agency Flags Two Joomla Add-On Flaws Already Being Exploited
CISA says attackers are actively abusing critical bugs in the iCagenda and Balbooa extensions, both carrying the maximum severity score.

Six bugs in U-Boot bootloader open the door to hidden firmware attacks
Researchers found flaws in the open-source code that starts up millions of embedded devices, from routers to industrial kit. Fixes are out.

Six New Bugs in U-Boot Could Let Attackers Hijack Devices at Startup
Binarly researchers found flaws in the tiny program that boots routers, cameras and server chips. Two of them could let intruders run their own code before the device even wakes up.

Ubiquiti Rushes Fixes for a 10-out-of-10 Flaw Across UniFi Gear
The networking vendor patched serious holes in UniFi Connect, Talk, Access, Protect and the underlying UniFi OS. One bug scores a perfect 10 on the severity scale.