Weekly Vulnerability Recap - Sept. 11, 2023
Android, Apple, Apache, Cisco and Microsoft are among the names reporting security flaws in the last week, and some are under attack.
Stay updated with breaking news from Actively Exploited. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
Android, Apple, Apache, Cisco and Microsoft are among the names reporting security flaws in the last week, and some are under attack.
A WinRar zero-day vulnerability tracked as CVE-2023-38831 was actively exploited to install malware when clicking on harmless files in an archive, allowing the hackers to breach online cryptocurrency trading accounts.
US-based IT software company Ivanti warned customers today that a critical Sentry API authentication bypass vulnerability is being exploited in the wild.
Microsoft disclosed today an unpatched zero-day security bug in multiple Windows and Office products exploited in the wild to gain remote code execution via malicious Office documents.
CISA ordered federal agencies today to patch a high-severity Arm Mali GPU kernel driver privilege escalation flaw added to its list of actively exploited vulnerabilities and addressed with this month's Android security updates.