Apple fixes two Webkit Vulnerabilities

Apple fixes two Webkit Vulnerabilities

Apple has rolled out emergency patches across its ecosystem to fix two WebKit zero-day vulnerabilities, CVE-2025-43529 and CVE-2025-14174, that were already being exploited in highly targeted attacks against iPhone and…
CISA adds Chrome ans Sierra Bugs to KEV Catalog

CISA adds Chrome ans Sierra Bugs to KEV Catalog

CISA has added two high‑impact vulnerabilities—CVE‑2025‑14174 in Google Chromium and CVE‑2018‑4063 in Sierra Wireless AirLink ALEOS—to the Known Exploited Vulnerabilities (KEV) catalog after confirming active exploitation in the wild. Under…
GeoServer CVE-2025-58360 added to CISA KEV

GeoServer CVE-2025-58360 added to CISA KEV

Why this vulnerability matters CVE-2025-58360 is a recently disclosed XML External Entity (XXE) vulnerability in OSGeo GeoServer that has now been added to the CISA Known Exploited Vulnerabilities (KEV) catalog,…
Google Fixes two Medium Severity Bugs in Chrome

Google Fixes two Medium Severity Bugs in Chrome

Google Chrome recently addressed two medium-severity vulnerabilities, CVE-2025-14372 and CVE-2025-14373, in its Stable channel update to version 143.0.7499.109, released around December 9-10, 2025. These flaws affect browsers prior to this…