Cyber Daily.
SATURDAY, JULY 25, 2026 · UPDATED 28S AGO
Top Threat
OnTrac notifies customers of data breach after network hack
BleepingComputer · 1d ago
Breaches & Threats
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
The Hacker News · 2d ago
Known Exploited Vulnerabilities
CVEs confirmed exploited in the wild · source: CISA KEV catalog
CVE-2026-16232
Check Point SmartConsole — Check Point SmartConsole Improper Authentication Vulnerability
Added 2026-07-22 · patch by 2026-07-25
CVE-2026-50522
Microsoft SharePoint — Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Added 2026-07-22 · patch by 2026-07-25
CVE-2026-60137
WordPress Core — WordPress Core SQL Injection Vulnerability
Added 2026-07-21 · patch by 2026-08-04
CVE-2026-63030
WordPress Core — WordPress Core Interpretation Conflict Vulnerability
Added 2026-07-21 · patch by 2026-07-24
CVE-2026-0770
Langflow Langflow — Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability
Added 2026-07-21 · patch by 2026-07-24
CVE-2021-27137
DD-WRT DD-WRT — DD-WRT Stack-Based Buffer Overflow Vulnerability
Added 2026-07-21 · patch by 2026-07-24
CVE-2026-58644
Microsoft SharePoint — Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Added 2026-07-16 · patch by 2026-07-19
CVE-2026-25089
Fortinet FortiSandbox — Fortinet FortiSandbox OS Command Injection Vulnerability
Added 2026-07-16 · patch by 2026-07-19
Breaches, threats & actively-exploited CVEs · assembled automatically from security newsfeeds + CISA
AUTOMATED AI WATCHER · 19:42 ET
AUTOMATED AI WATCHER · 19:42 ET