Vulnerabilities Archives – SecurityWeek Cybersecurity News, Insights & Analysis
- Hundreds of N-able N-central Instances Affected by Exploited Vulnerabilitiesby Ionut Arghire on August 18, 2025 at 12:17 pm
More than 870 N-able N-central instances have not been patched against CVE-2025-8875 and CVE-2025-8876, two exploited vulnerabilities. The post Hundreds of N-able N-central Instances Affected by Exploited Vulnerabilities appeared first on SecurityWeek.
- Watch Now: CodeSecCon – Where Software Security’s Next Chapter Unfolds (Virtual Event)by SecurityWeek News on August 16, 2025 at 1:37 pm
CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained. The post Watch Now: CodeSecCon – Where Software Security’s Next Chapter Unfolds (Virtual Event) appeared first on SecurityWeek.
- Cisco Patches Critical Vulnerability in Firewall Management Platformby Eduard Kovacs on August 15, 2025 at 7:45 am
Cisco has released over 20 advisories as part of its August 2025 bundled publication for ASA, FMC and FTD products. The post Cisco Patches Critical Vulnerability in Firewall Management Platform appeared first on SecurityWeek.
- Vulnerabilities in Xerox Print Orchestration Product Allow Remote Code Executionby Eduard Kovacs on August 14, 2025 at 1:47 pm
Path traversal and XXE injection flaws allowing unauthenticated remote code execution have been patched in Xerox FreeFlow Core. The post Vulnerabilities in Xerox Print Orchestration Product Allow Remote Code Execution appeared first on SecurityWeek.
- CISA Warns of Attacks Exploiting N-able Vulnerabilitiesby Eduard Kovacs on August 14, 2025 at 12:29 pm
CISA reported becoming aware of attacks exploiting CVE-2025-8875 and CVE-2025-8876 in N-able N-central on the day they were patched. The post CISA Warns of Attacks Exploiting N-able Vulnerabilities appeared first on SecurityWeek.
- ‘MadeYouReset’ HTTP2 Vulnerability Enables Massive DDoS Attacksby Eduard Kovacs on August 14, 2025 at 11:11 am
The new DDoS attack vector, which involves HTTP/2 implementation flaws, has been compared to Rapid Reset. The post ‘MadeYouReset’ HTTP2 Vulnerability Enables Massive DDoS Attacks appeared first on SecurityWeek.
- Chipmaker Patch Tuesday: Many Vulnerabilities Addressed by Intel, AMD, Nvidiaby Eduard Kovacs on August 13, 2025 at 12:29 pm
Intel, AMD and Nvidia have published security advisories describing vulnerabilities found recently in their products. The post Chipmaker Patch Tuesday: Many Vulnerabilities Addressed by Intel, AMD, Nvidia appeared first on SecurityWeek.
- Fortinet, Ivanti Release August 2025 Security Patchesby Eduard Kovacs on August 13, 2025 at 9:19 am
Fortinet and Ivanti have published new security advisories for their August 2025 Patch Tuesday updates. The post Fortinet, Ivanti Release August 2025 Security Patches appeared first on SecurityWeek.
- Adobe Patches Over 60 Vulnerabilities Across 13 Productsby Eduard Kovacs on August 13, 2025 at 4:36 am
Adobe’s security updates fix vulnerabilities in Commerce, Substance, InDesign, FrameMaker, Dimension and other products. The post Adobe Patches Over 60 Vulnerabilities Across 13 Products appeared first on SecurityWeek.
- Microsoft Patches Over 100 Vulnerabilitiesby Eduard Kovacs on August 13, 2025 at 3:47 am
Microsoft’s August 2025 Patch Tuesday updates address critical vulnerabilities in Windows, Office, and Hyper-V. The post Microsoft Patches Over 100 Vulnerabilities appeared first on SecurityWeek.