Five new security flaws impacting Oracle, Microsoft, Apple, and Kentico offerings have been included in the Cybersecurity and Infrastructure Security Agency's Known Exploited Vulnerabilities catalog, with federal agencies urged to remediate the issues by Nov. 10, The Hacker News reports.
BleepingComputer reports that updates have been issued by Gladinet for a local file inclusion flaw impacting its CentreStack business solution, tracked as CVE-2025-11371, which has been leveraged in zero-day intrusions since late September.
Intrusions with Cisco SNMP bug facilitate Linux rootkit deployment Older Linux systems have been compromised with rootkits in attacks involving the exploitation of a high-severity Cisco IOS and IOS XE Simple Network Management Protocol vulnerability, tracked as CVE-2025-20352, part of the Operation Zero Disco campaign, reports Security Affairs.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.