Citrix Warns of Active Exploitation: CVE-2025-7775 in NetScaler ADC/Gateway A critical memory overflow bug in NetScaler ADC/Gateway is being exploited in the wild. It can lead to remote code... 27/08/2025 Qualys-Threat-Protect
Apple Addressed Zero-day Vulnerability Impacting iOS, iPadOS, and macOS (CVE-2025-43300) Apple has released updates to address a vulnerability that is being exploited in the wild. Tracked as CVE-2025-43300, the vulnerability impacts... 22/08/2025 Qualys-Threat-Protect
Cisco Secure Firewall Management Center Software RADIUS Remote Code Execution Vulnerability (CVE-2025-20265) Cisco addressed a critical severity vulnerability impacting its Secure Firewall Management Center Software. Tracked as CVE-2025-20265, the vulnerability has a... 19/08/2025 Qualys-Threat-Protect
Microsoft Patch Tuesday, August 2025 Security Update Review It’s the second Tuesday of August, and Microsoft has rolled out its latest security updates. Microsoft’s August 2025 Patch Tuesday... 13/08/2025 Qualys-Threat-Protect
WinRAR Path Traversal Vulnerability Exploited in the Wild (CVE-2025-8088) WinRAR released a security patch to address a vulnerability allowing attackers to hijack user extraction processes and plant malicious files... 12/08/2025 Qualys-Threat-Protect
Trend Micro Apex One (On-Prem) Zero-day Vulnerabilities Exploited in the Wild (CVE-2025-54948 & CVE-2025-54987) Threat actors are exploiting two vulnerabilities impacting Trend Micro Apex One (on-prem) devices. Tracked as CVE-2025-54948 & CVE-2025-54987, the vulnerabilities... 07/08/2025 Qualys-Threat-Protect
Adobe Experience Manager Forms on JEE Zero-day Vulnerabilities (CVE-2025-54253 & CVE-2025-54254) Adobe released an emergency update to address two zero-day vulnerabilities (CVE-2025-54253 & CVE-2025-54254) impacting Adobe Experience Manager (AEM) Forms on... 07/08/2025 Qualys-Threat-Protect
PaperCut NG/MF Vulnerability added to CISA KEV and Active Exploitation (CVE-2023-2533) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a high-severity vulnerability to its Known Exploitable Vulnerabilities Catalog, urging users to... 30/07/2025 Qualys-Threat-Protect
CrushFTP Authentication Bypass Vulnerability Exploited in the Wild (CVE-2025-54309) CrushFTP warned its users about active exploitation of a zero-day vulnerability tracked as CVE-2025-54309. Successful exploitation of this vulnerability may... 22/07/2025 Qualys-Threat-Protect
Microsoft SharePoint Server Zero-day Vulnerability Exploited in the Wild (CVE-2025-53770) Microsoft released patches for an actively exploited vulnerability impacting SharePoint Server. Tracked as CVE-2025-53770, the vulnerability was part of an... 22/07/2025 Qualys-Threat-Protect