SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open Discover and Remediate Critical Vulnerabilities in One Place
Discover and Remediate Critical Vulnerabilities in One Place

CVE Research

Discover and Remediate Critical Vulnerabilities in One Place

“According to a study by EdgeScan, organizations take a total of 60 days to remediate critical vulnerabilities.”

Apr 30, 2026 • 2 min read

Open Metasploit Module: Fitnesse Wiki Remote Command Execution

Metasploit Module: Fitnesse Wiki Remote Command Execution

CVE Research

Metasploit Module: Fitnesse Wiki Remote Command Execution

SecPod Research Team member (Veerendra G.G) wrote Metasploit module for Fitnesse Wiki Remote Command Execution Vulnerability.

Apr 30, 2026 • 3 min read

Open Double Zero-day Attack: Microsoft Exchange Servers Under Active Exploitation! – Apply New Mitigations
Double Zero-day Attack: Microsoft Exchange Servers Under Active Exploitation! – Apply New Mitigations

CVE Research

Double Zero-day Attack: Microsoft Exchange Servers Under Active Exploitation! – Apply New Mitigations

Apr 30, 2026 • 3 min read

Open Microsoft August 2021 Patch Tuesday Addresses 44 CVEs, Including Three Zero-Days
Microsoft August 2021 Patch Tuesday Addresses 44 CVEs, Including Three Zero-Days

CVE Research

Microsoft August 2021 Patch Tuesday Addresses 44 CVEs, Including Three Zero-Days

Microsoft has released August Patch Tuesday security updates with a total of 44 vulnerabilities in the family of Windows and Mac operating systems and related products. In the release by Microsoft, 7 were rated as Critical and 37 as Important. Hence, the products covered in August’s security update ...

Apr 30, 2026 • 5 min read

Open Apple Has Addressed A Zero-Day Vulnerability Which Is Being Actively Exploited In The Wild
Apple Has Addressed A Zero-Day Vulnerability Which Is Being Actively Exploited In The Wild

CVE Research

Apple Has Addressed A Zero-Day Vulnerability Which Is Being Actively Exploited In The Wild

This year, Apple released security updates for their third zero-day vulnerability. Apple addresses a zero-day vulnerability in its Feb 2022 update. However, the affected software processes maliciously crafted web content, leading to arbitrary code execution in WebKit, which is a component included i...

Apr 30, 2026 • 2 min read

Open High-Severity Remote Code Execution Vulnerability in Google Chrome
High-Severity Remote Code Execution Vulnerability in Google Chrome

CVE Research

High-Severity Remote Code Execution Vulnerability in Google Chrome

A high-severity ‘use-after-free vulnerability tracked as CVE-2020-6492 with a CVSSv3 base score of 8.3 exists in WebGL [Web Graphics Library] component of the Google Chrome web browser that could be used to execute arbitrary code in the context of the browser process.

Apr 30, 2026 • 2 min read

Open SolarWinds Releases Updates to Address Vulnerability Exploited by SUPERNOVA Malware
SolarWinds Releases Updates to Address Vulnerability Exploited by SUPERNOVA Malware

CVE Research

SolarWinds Releases Updates to Address Vulnerability Exploited by SUPERNOVA Malware

SolarWinds has released an advisory on 27th December 2020 to address the vulnerability being exploited by SUPERNOVA malware. The vulnerability resides in the SolarWinds Orion API, making it vulnerable to an authentication bypass that can further lead to remote code execution. The vulnerability has b...

Apr 30, 2026 • 2 min read

Open Cloud-based Vulnerability Scanning with SanerNow
Cloud-based Vulnerability Scanning with SanerNow

CVE Research

Cloud-based Vulnerability Scanning with SanerNow

Twenty years ago, the talks of cloud technology were still in their inception. But today, it has taken over the world and completely revolutionized how everything works, especially in the vulnerability management solution tech space, where the impact is obvious.

Apr 30, 2026 • 4 min read

Open VMware vCenter Servers Under Active Attack, Patch Now!
VMware vCenter Servers Under Active Attack, Patch Now!

CVE Research

VMware vCenter Servers Under Active Attack, Patch Now!

VMware, the virtualization giant, has patched 19 vulnerabilities, including one critical vulnerability, ten important vulnerabilities, and eight moderate vulnerabilities, in its latest security advisory VMSA-2021-0020. The vulnerabilities tracked as CVE-2021-21991, CVE-2021-21992, CVE-2021-21993, CV...

Apr 30, 2026 • 2 min read