Security
Headlines
HeadlinesLatestCVEs

Headline

CISA Adds CrushFTP Vulnerability to KEV Catalog Following Confirmed Active Exploitation

A recently disclosed critical security flaw impacting CrushFTP has been added by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) to its Known Exploited Vulnerabilities (KEV) catalog after reports emerged of active exploitation in the wild. The vulnerability is a case of authentication bypass that could permit an unauthenticated attacker to take over susceptible instances. It has

The Hacker News
#vulnerability#auth#The Hacker News

The Hacker News: Latest News

Russian Hackers Exploit Email and VPN Vulnerabilities to Spy on Ukraine Aid Logistics