Anthropic Model Context Protocol (MCP) Inspector Remote Code Execution Vulnerability (CVE-2025-49596) A critical remote code execution vulnerability has been discovered in Anthropic’s open‑source tool, MCP Inspector, which is widely used by... 04/07/2025 Qualys-Threat-Protect
Cisco Unified Communications Manager Static SSH Credentials Vulnerability (CVE-2025-20309) Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) are vulnerable to a... 04/07/2025 Qualys-Threat-Protect
WingFTP Critical Remote Code Execution Vulnerability (CVE-2025-47812) Julien Ahrens from RCE Security discovered a critical security vulnerability impacting WingFTP. Tracked as CVE-2025-47812, the vulnerability has a CVSS... 03/07/2025 Qualys-Threat-Protect
Google Addresses Zero-day Vulnerability impacting Chrome Browser (CVE-2025-6554) Chrome browser is vulnerable to a security vulnerability being exploited in the wild. Tracked as CVE-205-6554, this is a type... 02/07/2025 Qualys-Threat-Protect
Cisco Identity Services Engine Unauthenticated Remote Code Execution Vulnerabilities (CVE-2025-20281 & CVE-2025-20282) Cisco addresses two critical severity vulnerabilities impacting Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC). Tracked as... 27/06/2025 Qualys-Threat-Protect
Citrix NetScaler ADC and NetScaler Gateway Vulnerability Exploited in Denial-of-Service Attacks (CVE-2025-6543) Citrix released a security update to address the vulnerability impacting NetScaler appliances. Tracked as CVE-2025-6543, successfully exploiting the memory overflow... 27/06/2025 Qualys-Threat-Protect
PoC Released for Notepad++ Privilege Escalation Vulnerability (CVE-2025-49144) Notepad++ is vulnerable to a privilege escalation vulnerability that may allow unprivileged users to gain SYSTEM-level privileges through insecure executable... 26/06/2025 Qualys-Threat-Protect
Veeam Backup and Replication Multiple Vulnerabilities (CVE-2025-23121, CVE-2025-24286, & CVE-2025-24287) Veeam released a security advisory to address three vulnerabilities impacting its domain-joined Backup and replication systems. Tracked as CVE-2025-23121, CVE-2025-24286,... 19/06/2025 Qualys-Threat-Protect
Microsoft Patch Tuesday, June 2025 Security Update Review Microsoft’s June 2025 Patch Tuesday has landed, addressing a new batch of critical and important vulnerabilities across Windows and enterprise... 11/06/2025 Qualys-Threat-Protect
ConnectWise ScreenConnect Command Injection Vulnerability Added to CISA KEV (CVE-2025-3935) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned users about a high-severity vulnerability impacting ConnectWise ScreenConnect, tracked as CVE-2025-3935.... 05/06/2025 Qualys-Threat-Protect