Anavem
Languagefr

#zero-day-exploit

14 articles

News14

Dark data center with server racks illuminated by red warning lights
Critical
VulnerabilitiesCVE-2026-41940

CVE-2026-41940: Critical cPanel Zero-Day Exploited for Months

A critical authentication bypass vulnerability in cPanel and WHM has been actively exploited since February 2026.

April 30, 01:40 PM5 min
Government building with security barriers under stormy evening sky
High
Vulnerabilities

CISA Orders Federal Agencies to Patch Windows Zero-Day

CISA adds actively exploited Windows privilege escalation vulnerability to its Known Exploited Vulnerabilities catalog, mandating federal agency patches.

April 29, 12:29 PM5 min
Dark server room with red warning lights illuminating server racks
Critical
Vulnerabilities

1,300+ SharePoint Servers Remain Unpatched Against Active Exploits

Over 1,300 Microsoft SharePoint servers exposed online stay vulnerable to a spoofing flaw actively exploited in ongoing attacks.

April 22, 08:53 AM4 min
Computer monitor displaying Microsoft Defender security warnings in dark environment
High
Vulnerabilities

Microsoft Defender Zero-Days Under Active Attack

Threat actors are exploiting three zero-day vulnerabilities in Microsoft Defender to escalate privileges on compromised Windows systems.

April 17, 03:21 PM5 min
Computer monitor showing Windows Defender security alerts in darkened office setting
High
Vulnerabilities

Microsoft Defender Hit by Second Zero-Day in Two Weeks

Security researcher releases proof-of-concept exploit for new Microsoft Defender zero-day dubbed RedSun, marking second critical flaw disclosed this month.

April 16, 10:19 PM5 min
Server room with illuminated racks and warning lights indicating security updates
Critical
Security Updates

Microsoft Patches 161 CVEs in Record-Breaking April Update

Microsoft's April 2026 Patch Tuesday addresses 161 vulnerabilities including an actively exploited SharePoint zero-day, marking the second-largest patch release ever.

April 14, 08:14 PM5 min
Computer screen showing PDF document with security warning overlay and keyboard
High
VulnerabilitiesCVE-2026-34621

Adobe Patches Zero-Day CVE-2026-34621 in Emergency Update

Adobe released an emergency Acrobat Reader security update fixing CVE-2026-34621, actively exploited since December 2025.

April 13, 05:37 PM5 min
Computer screen showing PDF security warning dialog with red alert notification
Critical
VulnerabilitiesCVE-2026-34621

Adobe Patches Critical Acrobat Reader Zero-Day Under Attack

Adobe released emergency patches for CVE-2026-34621, a critical Acrobat Reader vulnerability actively exploited by attackers worldwide.

April 12, 06:25 AM5 min
Computer screen showing PDF document with security warning overlays and dramatic lighting
Critical
Vulnerabilities

Adobe Reader Zero-Day Exploited via Malicious PDFs Since December

Attackers have been exploiting a zero-day vulnerability in Adobe Reader through weaponized PDF documents since December 2025.

April 9, 11:22 AM5 min
Dark server room with red emergency lighting illuminating computer infrastructure
Critical
Cyber Attacks

Storm-1175 Deploys Zero-Day Exploits in Medusa Ransomware Attacks

Microsoft warns that China-based Storm-1175 cybercriminal group is deploying zero-day and n-day exploits in high-velocity Medusa ransomware campaigns targeting organizations worldwide.

April 6, 06:56 PM5 min
Server rack with red emergency lighting and unplugged network cable
Critical
VulnerabilitiesCVE-2026-35616

Fortinet Patches Critical FortiClient EMS Zero-Day Under Attack

Fortinet released emergency patches for CVE-2026-35616, a critical FortiClient EMS vulnerability actively exploited by attackers worldwide.

April 5, 08:45 PM5 min
Server racks illuminated by red emergency lighting in dark data center
Critical
VulnerabilitiesCVE-2026-21643

Fortinet FortiClient EMS Hit by Active Zero-Day Attacks

Attackers are actively exploiting CVE-2026-21643, a critical remote code execution vulnerability in Fortinet's FortiClient EMS platform.

March 30, 09:48 AM5 min
CISA Orders Federal Agencies to Patch Zimbra Zero-Day
Critical
Vulnerabilities

CISA Orders Federal Agencies to Patch Zimbra Zero-Day

CISA adds actively exploited Zimbra Collaboration Suite vulnerability to its Known Exploited Vulnerabilities catalog, mandating federal agency patches.

March 18, 08:57 PM5 min
Server rack with red emergency lighting and unplugged network cable
Critical
Vulnerabilities

Interlock Ransomware Exploits Cisco FMC Zero-Day Since January

Interlock ransomware gang has been actively exploiting a critical Cisco Secure Firewall Management Center zero-day vulnerability in attacks since late January 2026.

March 18, 05:53 PM5 min