// 2 CRITICAL · 4 ZERO-DAY · 9 CVE · 6 EXPLOIT · 1 ADVISORY IN THE LAST 24H
VULNCRITICAL

Progress Software Patches High-Severity Command Injection in Kemp LoadMaster (ZDI-26-319)

An authenticated command injection vulnerability in the customLocation parameter of Kemp LoadMaster carries a CVSS score of 8.8. While…

May 27, 2026views - 164

CYBERSECZERO-DAY

YellowKey: Microsoft Issues Emergency Mitigations for BitLocker Bypass

Microsoft issued temporary mitigations on May 20 for CVE-2026-45585, a BitLocker bypass vulnerability exploited through the Windows Re…

May 25, 2026views - 303

CYBERSECZERO-DAY

Trend Micro: CISA Adds Exploited Apex One Zero-Day to KEV Catalog with June 4 Deadline

CVE-2026-34926 affects on-premise Apex One installations. This directory traversal zero-day is under active exploitation, prompting CI…

May 25, 2026views - 200

CYBERSEC

DocketWise Data Breach: 143,480 Impacted via Third-Party Repository Exposure

Legal-tech platform DocketWise has notified 143,480 individuals of a data breach involving cloned third-party repositories. The incide…

May 25, 2026views - 152

CYBERSEC

The Oncology Institute Discloses Patient Data Breach Linked to Third-Party Vendor

The Oncology Institute (TOI) confirmed in an SEC filing that unauthorized actors accessed patient data through a third-party software…

May 25, 2026views - 169

VULNCVE

CISA Adds Critical Langflow Vulnerability (CVE-2025-34291) to KEV Catalog Following Active Exploitation

CISA has added CVE-2025-34291, a critical origin validation flaw in the Langflow platform, to its Known Exploited Vulnerabilities cata…

May 24, 2026views - 179