๐Ÿ“ฐ Dell Patches Critical 9.1 CVSS Flaw in Data Lakehouse Platform

Dell patches critical 9.1 CVSS vulnerability (CVE-2025-46608) in its Data Lakehouse platform. The flaw allows a remote, high-privileged attacker to gain elevated rights. Update to version 1.6.0.0 immediately! ๐Ÿšจ #Dell #Vulnerability #PatchNow #InfoSec

๐Ÿ”— https://cyber.netsecops.io/articles/dell-patches-critical-privilege-escalation-vulnerability-in-data-lakehouse/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

Dell Patches Critical 9.1 CVSS Flaw in Data Lakehouse Platform

Dell has patched a critical improper access control vulnerability (CVE-2025-46608) with a 9.1 CVSS score in its Data Lakehouse platform. Upgrade to version 1.6.0.0 is strongly recommended.

CyberNetSec.io

๐Ÿšจ Urgent patch alert: a 9.9/10 severity flaw (CVE-2025-42887) in #SAP Solution Manager allows code injection and full system takeover. Act now.

Read: https://hackread.com/sap-patch-cve-2025-42887-takeover-vulnerability/

#CyberSecurity #Vulnerability #ZeroDay #InfoSec #PatchNow

SAP Pushes Emergency Patch for 9.9 Rated CVE-2025-42887 After Full Takeover Risk

Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread

CISA confirms a high-severity Linux kernel flaw (CVE-2024-1086) is now exploited by ransomware gangs ๐Ÿ’€.

Local attackers can gain root access, enabling full system takeover and lateral movement โš ๏ธ.

Patching or mitigations recommended immediately ๐Ÿ›ก๏ธ.

๐Ÿ”— https://www.bleepingcomputer.com/news/security/cisa-linux-privilege-escalation-flaw-now-exploited-in-ransomware-attacks/

#TechNews #Linux #CyberSecurity #Ransomware #Vulnerability #Kernel #Infosec #DataSecurity #Security #PatchNow #OpenSource #DigitalSafety #Malware #ThreatIntel #SystemSecurity #ITSecurity #TechPolicy

CISA: High-severity Linux flaw now exploited by ransomware gangs

CISA confirmed on Thursday that a high-severity privilege escalation flaw in the Linux kernel is now being exploited in ransomware attacks.

BleepingComputer

๐Ÿ“ฐ CISA Adds Actively Exploited Gladinet and CWP Flaws to KEV Catalog

๐Ÿšจ CISA KEV UPDATE: Two new vulnerabilities in Gladinet (CVE-2025-11371) and CWP (CVE-2025-48703) are being actively exploited. Federal agencies must patch now under BOD 22-01. #KEV #PatchNow #CISA #Vulnerability

๐Ÿ”— https://cyber.netsecops.io/articles/cisa-adds-actively-exploited-gladinet-cwp-flaws-to-kev-catalog/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

CISA Adds Actively Exploited Gladinet and CWP Flaws to KEV Catalog

CISA has added two actively exploited vulnerabilities, CVE-2025-11371 in Gladinet and CVE-2025-48703 in CWP, to its KEV Catalog, mandating federal agencies to patch.

CyberNetSec.io

๐Ÿ“ฐ Google Patches Critical Zero-Click RCE Flaw in Android; Millions of Devices at Risk

๐Ÿšจ CRITICAL ANDROID FLAW! Google patches a zero-click RCE vulnerability (CVE-2025-48593). No user interaction needed for exploitation. Affects Android 13, 14, 15 & 16. Update your devices NOW! #Android #CyberSecurity #PatchNow

๐Ÿ”— https://cyber.netsecops.io/articles/google-patches-critical-android-zero-click-rce-vulnerability-cve-2025-48593/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

Google Patches Critical Zero-Click RCE Flaw in Android; Millions of Devices at Risk

Google's November 2025 Android update patches critical zero-click RCE flaw CVE-2025-48593 affecting Android 13-16. Users are urged to update immediately to prevent remote device compromise.

CyberNetSec.io

๐Ÿ“ฐ Australia Warns of 'BADCANDY' Malware Targeting Unpatched Cisco Devices

๐Ÿ‡ฆ๐Ÿ‡บ Australia's ASD warns of 'BADCANDY' malware attacks on Cisco IOS XE devices. Hackers are exploiting critical flaw CVE-2023-20198 to take over routers. 150+ devices infected in October alone. #Cisco #CyberSecurity #BADCANDY #PatchNow

๐Ÿ”— https://cyber.netsecops.io/articles/australian-government-warns-of-badcandy-malware-targeting-cisco-devices/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

Australia Warns of 'BADCANDY' Malware Targeting Unpatched Cisco Devices

The Australian Signals Directorate (ASD) warns of ongoing attacks deploying 'BADCANDY' malware on unpatched Cisco IOS XE devices by exploiting the critical vulnerability CVE-2023-20198.

CyberNetSec.io

๐Ÿ“ฐ CISA KEV Alert: XWiki RCE Flaw Actively Exploited for Cryptomining

๐Ÿšจ CISA KEV ALERT: Critical unauthenticated RCE flaw in XWiki (CVE-2025-24893, CVSS 9.8) is actively exploited in the wild for cryptomining. Federal agencies must patch now! โš ๏ธ #CVE #XWiki #CISA #KEV #PatchNow

๐Ÿ”— https://cyber.netsecops.io/articles/xwiki-rce-flaw-cve-2025-24893-added-to-cisa-kev-catalog-amid-active-exploitation/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

CISA KEV Alert: XWiki RCE Flaw Actively Exploited for Cryptomining

CISA adds critical XWiki RCE vulnerability CVE-2025-24893 (CVSS 9.8) to its KEV catalog due to active exploitation for cryptomining. Patch immediately.

CyberNetSec.io

CISA has added two new Dassault Systรจmes DELMIA Apriso vulnerabilities to the Known Exploited Vulnerabilities Catalog:
๐Ÿ›  CVE-2025-6204 โ€“ Code Injection
๐Ÿ›  CVE-2025-6205 โ€“ Missing Authorization
Both are under active exploitation and pose serious risks for manufacturing and enterprise networks.

CISAโ€™s BOD 22-01 mandates federal patching, but every org should act fast.

๐Ÿ’ฌ How do you prioritize KEV-listed vulnerabilities in your patching workflow? Follow @technadu for credible infosec updates.

#CISA #KEVCatalog #CyberSecurity #DELMIAApriso #DassaultSystemes #Vulnerability #PatchNow #InfoSec #CVE20256204 #CVE20256205 #ThreatIntel #CyberAwareness

๐Ÿ“ฐ CISA Mandates Patching for 5 New Actively Exploited Flaws in Apple, Microsoft, Oracle, and Kentico

CISA adds 5 new vulnerabilities to its KEV catalog! ๐Ÿšจ Flaws in Apple, Kentico, Microsoft & Oracle products are actively exploited. Federal agencies must patch by the deadline. #KEV #CISA #PatchNow #CyberSecurity

๐Ÿ”— https://cyber.netsecops.io/articles/cisa-adds-five-actively-exploited-vulnerabilities-to-kev-catalog/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

CISA Mandates Patching for 5 New Actively Exploited Flaws in Apple, Microsoft, Oracle, and Kentico

CISA has added five actively exploited vulnerabilities (CVE-2022-48503, CVE-2025-2746, CVE-2025-2747, CVE-2025-33073, CVE-2025-61884) to its KEV catalog, mandating patching for federal agencies.

CyberNetSec.io