Technology & Cybersecurity Intelligence

Tech News Hub

Curated security alerts, vulnerabilities, operating-system updates, cloud and AI news, and vendor advisories from trusted sources.

Last updated 29 Aug 2026, 8:00 PM
Next refresh Pending schedule
Automatically refreshed twice daily
Tech News: CVE-2020-10987: Tenda AC1900 Router AC15 Model
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-10987: Tenda AC1900 Router AC15 Model

Tenda AC1900 Router AC15 Model contains an unspecified vulnerability that allows remote attackers to execute system commands via the deviceName POST parameter. Required action:…

CISA KEV
Tech News: CVE-2021-21972: VMware vCenter Server
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-21972: VMware vCenter Server

VMware vCenter Server vSphere Client contains a remote code execution vulnerability in a vCenter Server plugin which allows an attacker with network access to…

CISA KEV
Tech News: CVE-2021-20021: SonicWall SonicWall Email Security
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-20021: SonicWall SonicWall Email Security

SonicWall Email Security contains an improper privilege management vulnerability that allows an attacker to create an administrative account by sending a crafted HTTP request…

CISA KEV
Tech News: CVE-2018-2380: SAP Customer Relationship Management (CRM)
Critical Vulnerabilities Actively Exploited Critical

CVE-2018-2380: SAP Customer Relationship Management (CRM)

SAP Customer Relationship Management (CRM) contains a path traversal vulnerability that allows an attacker to exploit insufficient validation of path information provided by users.…

CISA KEV
Tech News: CVE-2020-29583: Zyxel Multiple Products
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-29583: Zyxel Multiple Products

Zyxel firewalls (ATP, USG, VM) and AP Controllers (NXC2500 and NXC5500) contain a use of hard-coded credentials vulnerability in an undocumented account ("zyfwp") with…

CISA KEV
Tech News: CVE-2021-31755: Tenda AC11 Router
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-31755: Tenda AC11 Router

Tenda AC11 devices contain a stack buffer overflow vulnerability in /goform/setmac which allows attackers to execute code via a crafted post request. Required action:…

CISA KEV
Tech News: CVE-2020-3952: VMware vCenter Server
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-3952: VMware vCenter Server

VMware vCenter Server contains an information disclosure vulnerability in the VMware Directory Service (vmdir) when the Platform Services Controller (PSC) does not correctly implement…

CISA KEV
Tech News: CVE-2020-10199: Sonatype Nexus Repository
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-10199: Sonatype Nexus Repository

Sonatype Nexus Repository contains an unspecified vulnerability that allows for remote code execution. Required action: Apply updates per vendor instructions.

CISA KEV
Tech News: CVE-2020-16846: SaltStack Salt
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-16846: SaltStack Salt

SaltStack Salt allows an unauthenticated user with network access to the Salt API to use shell injections to run code on the Salt API…

CISA KEV
Tech News: CVE-2019-8394: Zoho ManageEngine
Critical Vulnerabilities Actively Exploited Critical

CVE-2019-8394: Zoho ManageEngine

Zoho ManageEngine ServiceDesk Plus (SDP) contains an unspecified vulnerability that allows remote users to upload files via login page customization. Required action: Apply updates…

CISA KEV
Tech News: CVE-2017-9248: Progress ASP.NET AJAX and Sitefinity
Critical Vulnerabilities Actively Exploited Critical

CVE-2017-9248: Progress ASP.NET AJAX and Sitefinity

Progress Telerik UI for ASP.NET AJAX and Sitefinity have a cryptographic weakness in Telerik.Web.UI.dll that can be exploited to disclose encryption keys (Telerik.Web.UI.DialogParametersEncryptionKey and/or…

CISA KEV
Tech News: CVE-2021-22005: VMware vCenter Server
Critical Vulnerabilities Actively Exploited Critical

CVE-2021-22005: VMware vCenter Server

VMware vCenter Server contains a file upload vulnerability in the Analytics service that allows a user with network access to port 443 to execute…

CISA KEV
Tech News: CVE-2016-3643: SolarWinds Virtualization Manager
Critical Vulnerabilities Actively Exploited Critical

CVE-2016-3643: SolarWinds Virtualization Manager

SolarWinds Virtualization Manager allows for privilege escalation through leveraging a misconfiguration of sudo. Required action: Apply updates per vendor instructions.

CISA KEV
Tech News: CVE-2020-8599: Trend Micro Apex One and OfficeScan
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-8599: Trend Micro Apex One and OfficeScan

Trend Micro Apex One and OfficeScan server contain a vulnerable EXE file that could allow a remote attacker to write data to a path…

CISA KEV
Tech News: CVE-2020-11651: SaltStack Salt
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-11651: SaltStack Salt

SaltStack Salt contains an authentication bypass vulnerability in the salt-master process ClearFuncs due to improperly validating method calls. The vulnerability allows a remote user…

CISA KEV
Tech News: CVE-2020-10189: Zoho ManageEngine
Critical Vulnerabilities Actively Exploited Critical

CVE-2020-10189: Zoho ManageEngine

Zoho ManageEngine Desktop Central contains a file upload vulnerability that allows for unauthenticated remote code execution. Required action: Apply updates per vendor instructions.

CISA KEV
Hi! I’m SanchitGurukul SaarthiNeed help finding something?