A high-severity Roundcube Webmail vulnerability patched in May is now being actively exploited in attacks, according to the Canadian Centre for Cyber Security.
Threat actors are actively exploiting a critical SQL injection vulnerability in Roundcube Webmail that can be triggered without authentication.
Roundcube Webmail SQL injection flaw CVE-2026-48842 is actively exploited, urging users to update vulnerable installations.
Spread the loveWe’ve all heard the buzz about AI, from optimizing supply chains to crafting compelling marketing copy. But there’s a darker side emerging, and it’s hitting online retailers where it ...
Security firms Check Point, Kaspersky, and Tanium have each patched severe vulnerabilities in their products, including RCE flaws.
How does prompt injection work in AI agents? It happens when an agent can't distinguish a developer's instructions from text hidden in a webpage, email, ...
Cisco warns attackers are exploiting a previously unknown flaw, CVE-2026-76461, rated 9.8 out of 10.0, to run arbitrary ...
AI has accelerated time-to-exploit – and that’s why security teams need to mitigate risk before a permanent patch gets ...
A public proof-of-concept (PoC) exploit has been released for CVE-2026-23980, a SQL injection vulnerability affecting Apache ...
A public PoC for a SQL injection flaw in Apache Superset versions before 6.0.0 could allow authenticated read-level users to trigger error-based SQL injection.
Cisco released emergency patches for a critical vulnerability in its Secure Email Gateway appliance that could allow ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results