appsec.fyi · Sources

securityaffairs.com

11 curated AppSec resources from securityaffairs.com across 3 topics on appsec.fyi.

securityaffairs.com

Resources curated from this publisher and indexed across appsec.fyi topic pages. Last item added: 2026-04-17.

Date Added Resource Excerpt
2026-04-17 2026U.S. CISA adds a flaw in Apache ActiveMQ to its Known Exploited Vulnerabilities catalogRCEU.S. CISA adds a flaw in Apache ActiveMQ to its Known Exploited Vulnerabilities catalog https://ift.tt/sTWqk05
2026-04-15 2026Microsoft Patch Tuesday for April 2026 fixed actively exploited SharePoint zero-dayRCEMicrosoft Patch Tuesday for April 2026 fixed actively exploited SharePoint zero-day https://ift.tt/748uoFH
2026-04-11 2026CVE-2026-39987: Marimo RCE exploited in hours after disclosureRCECVE-2026-39987: Marimo RCE exploited in hours after disclosure https://ift.tt/RhDdNo9
2026-04-07 2026Attackers exploit critical Flowise flaw CVE-2025-59528 for remote code executionRCEAttackers exploit critical Flowise flaw CVE-2025-59528 for remote code execution https://ift.tt/NkQgYPo
2026-04-06 2026Attackers Exploit RCE Flaw as 14000 F5 BIG-IP APM Instances Remain ExposedRCEAttackers Exploit RCE Flaw as 14,000 F5 BIG-IP APM Instances Remain Exposed https://ift.tt/9Z4q1fW
2026-04-02 2026Critical Fortinet FortiClient EMS flaw exploited for Remote Code ExecutionRCECritical Fortinet FortiClient EMS flaw exploited for Remote Code Execution https://ift.tt/NpS734o
2026-03-21 2026PolyShell flaw exposes Magento and Adobe Commerce to file upload attacksXSSPolyShell flaw exposes Magento and Adobe Commerce to file upload attacks https://ift.tt/Vn64pI0
2026-03-19 2026Russian APT targets Ukraine via Zimbra XSS flaw CVE-2025-66376XSSRussian APT targets Ukraine via Zimbra XSS flaw CVE-2025-66376 https://ift.tt/fiP24sx
2025-03-18 2025ChatGPT SSRF bug quickly becomes a favorite attack vectorSSRFThe ChatGPT SSRF bug has become a popular attack vector due to its vulnerability. SSRF (Server-Side Request Forgery) allows attackers to make requests from a server, potentially accessing sensitive information or executing malicious actions. This bug's exploitation poses a significant security risk, making it a favorite target for attackers seeking unauthorized access to systems.
2025-03-13 2025Experts warn of a coordinated surge in the exploitation attempts of SSRF vulnerabilitiesSSRFExperts are cautioning about a rise in coordinated exploitation attempts targeting SSRF vulnerabilities. This warning highlights the increasing threat posed by attackers who are actively seeking to exploit these vulnerabilities. It underscores the importance of addressing and securing SSRF vulnerabilities to prevent potential breaches and protect systems from malicious activities.
2024-12-10 2024SAP fixed critical SSRF flaw in NetWeaver NetWeaverSSRFSAP addressed a critical Server-Side Request Forgery (SSRF) vulnerability in NetWeaver, a popular software platform. The flaw could potentially allow attackers to manipulate server requests and access sensitive information. SAP released a fix to address this security issue, aiming to prevent unauthorized access and protect the integrity of NetWeaver systems. It is crucial for users to promptly apply the patch to safeguard their systems from potential exploitation.