Technology & Cybersecurity Intelligence

Tech News Hub

Curated security alerts, vulnerabilities, operating-system updates, cloud and AI news, and vendor advisories from trusted sources.

Last updated 29 Aug 2026, 8:00 PM
Next refresh Pending schedule
Automatically refreshed twice daily
Tech News: CVE-2020-16846: SaltStack Salt
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-16846: SaltStack Salt

SaltStack Salt allows an unauthenticated user with network access to the Salt API to use shell injections to run code on the Salt API…

CISA KEV
Tech News: CVE-2019-8394: Zoho ManageEngine
Critical Vulnerabilities Actively Exploited Critical

CVE-2019-8394: Zoho ManageEngine

Zoho ManageEngine ServiceDesk Plus (SDP) contains an unspecified vulnerability that allows remote users to upload files via login page customization. Required action: Apply updates…

CISA KEV
Tech News: CVE-2017-9248: Progress ASP.NET AJAX and Sitefinity
Critical Vulnerabilities Actively Exploited Critical

CVE-2017-9248: Progress ASP.NET AJAX and Sitefinity

Progress Telerik UI for ASP.NET AJAX and Sitefinity have a cryptographic weakness in Telerik.Web.UI.dll that can be exploited to disclose encryption keys (Telerik.Web.UI.DialogParametersEncryptionKey and/or…

CISA KEV
Tech News: CVE-2021-22005: VMware vCenter Server
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-22005: VMware vCenter Server

VMware vCenter Server contains a file upload vulnerability in the Analytics service that allows a user with network access to port 443 to execute…

CISA KEV
Tech News: CVE-2016-3643: SolarWinds Virtualization Manager
Critical Vulnerabilities Actively Exploited Critical

CVE-2016-3643: SolarWinds Virtualization Manager

SolarWinds Virtualization Manager allows for privilege escalation through leveraging a misconfiguration of sudo. Required action: Apply updates per vendor instructions.

CISA KEV
Tech News: CVE-2020-8599: Trend Micro Apex One and OfficeScan
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-8599: Trend Micro Apex One and OfficeScan

Trend Micro Apex One and OfficeScan server contain a vulnerable EXE file that could allow a remote attacker to write data to a path…

CISA KEV
Tech News: CVE-2020-11651: SaltStack Salt
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-11651: SaltStack Salt

SaltStack Salt contains an authentication bypass vulnerability in the salt-master process ClearFuncs due to improperly validating method calls. The vulnerability allows a remote user…

CISA KEV
Tech News: CVE-2020-10189: Zoho ManageEngine
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-10189: Zoho ManageEngine

Zoho ManageEngine Desktop Central contains a file upload vulnerability that allows for unauthenticated remote code execution. Required action: Apply updates per vendor instructions.

CISA KEV
Tech News: CVE-2019-18988: TeamViewer Desktop
Critical Vulnerabilities Actively Exploited Critical

CVE-2019-18988: TeamViewer Desktop

TeamViewer Desktop allows for bypass of remote-login access control because the same AES key is used for different customers' installations. If an attacker were…

CISA KEV
Tech News: CVE-2020-3950: VMware Multiple Products
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-3950: VMware Multiple Products

VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of setuid binaries…

CISA KEV
Tech News: CVE-2021-35211: SolarWinds Serv-U
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-35211: SolarWinds Serv-U

SolarWinds Serv-U contains an unspecified memory escape vulnerability which can allow for remote code execution. Required action: Apply updates per vendor instructions.

CISA KEV
Tech News: CVE-2020-11652: SaltStack Salt
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-11652: SaltStack Salt

SaltStack Salt contains a path traversal vulnerability in the salt-master process ClearFuncs which allows directory access to authenticated users. Salt users who follow fundamental…

CISA KEV
Tech News: CVE-2021-40539: Zoho ManageEngine
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-40539: Zoho ManageEngine

Zoho ManageEngine ADSelfService Plus contains an authentication bypass vulnerability affecting the REST API URLs which allow for remote code execution. Required action: Apply updates…

CISA KEV
Tech News: CVE-2017-6327: Symantec Symantec Messaging Gateway
Critical Vulnerabilities Actively Exploited Critical

CVE-2017-6327: Symantec Symantec Messaging Gateway

Symantec Messaging Gateway contains an unspecified vulnerability which can allow for remote code execution. With the ability to perform remote code execution, an attacker…

CISA KEV
Tech News: CVE-2020-3992: VMware ESXi
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-3992: VMware ESXi

VMware ESXi OpenSLP contains a use-after-free vulnerability that allows an attacker residing in the management network with access to port 427 to perform remote…

CISA KEV
Tech News: CVE-2020-10148: SolarWinds Orion
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-10148: SolarWinds Orion

SolarWinds Orion API contains an authentication bypass vulnerability that could allow a remote attacker to execute API commands. Required action: Apply updates per vendor…

CISA KEV
Hi! I’m SanchitGurukul SaarthiNeed help finding something?