Scroll down for the latest news and information covering vulnerability management.
Subscribe to our weekly newsletter for the latest in industry news, expert insights, dedicated information security content and online events.
Pillar Security discovered two new critical vulnerabilities in n8n that could lead to supply chain compromise, credential harvesting and complete takeover attacks
CISA has added a critical CVE in SolarWinds Web Help Desk to its KEV Catalog
Sonatype warns that open source threats became industrialized with a surge in malicious packages in 2025
Security flaw in RealHomes CRM plugin allowed file uploads; patches released for 30,000+ sites
A new service, the Global Cybersecurity Vulnerability Enumeration (GCVE), offers an alternative to the US-led CVE
2 security vulnerabilities in the Chainlit framework expose risks from web flaws in AI applications