📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global apt Critical Infrastructure, Telecommunications HIGH 5h Global apt Government and Intelligence HIGH 5h Global vulnerability Web Services and Content Management CRITICAL 8h Global apt Multiple sectors HIGH 9h Global supply_chain Software Development and Technology CRITICAL 11h Global ransomware Multiple sectors CRITICAL 11h Global malware Information Technology / Enterprise HIGH 12h Global supply_chain Software Development / Technology HIGH 14h Global general Multiple sectors HIGH 14h Global supply_chain Software Development and Supply Chain Security LOW 15h Global apt Critical Infrastructure, Telecommunications HIGH 5h Global apt Government and Intelligence HIGH 5h Global vulnerability Web Services and Content Management CRITICAL 8h Global apt Multiple sectors HIGH 9h Global supply_chain Software Development and Technology CRITICAL 11h Global ransomware Multiple sectors CRITICAL 11h Global malware Information Technology / Enterprise HIGH 12h Global supply_chain Software Development / Technology HIGH 14h Global general Multiple sectors HIGH 14h Global supply_chain Software Development and Supply Chain Security LOW 15h Global apt Critical Infrastructure, Telecommunications HIGH 5h Global apt Government and Intelligence HIGH 5h Global vulnerability Web Services and Content Management CRITICAL 8h Global apt Multiple sectors HIGH 9h Global supply_chain Software Development and Technology CRITICAL 11h Global ransomware Multiple sectors CRITICAL 11h Global malware Information Technology / Enterprise HIGH 12h Global supply_chain Software Development / Technology HIGH 14h Global general Multiple sectors HIGH 14h Global supply_chain Software Development and Supply Chain Security LOW 15h
📅 Daily Security Digest — Friday, March 20, 2026

🇸🇦 Saudi Cyber Daily Digest

All security vulnerabilities, threats, and news aggregated today from trusted sources — continuously updated

Friday, March 20, 2026 Today
20 CVEs
17 Threats
0 News
7 Critical
5 CISA KEV
🛡 Security Vulnerabilities (CVE)
20 vulnerabilities
CVE-2025-32432
Craft CMS Remote Code Execution via Code Injection Vulnerability
01:52 KSA
CRITICAL CVSS 9.8 ⚠ CISA KEV
Craft CMS Craft CMS — CVE-2025-32432 Craft CMS contains a code injection vulnerability that allows a remote attacker to execute arbitrary code. Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use…
CVE-2025-43510
Apple Multiple Products Improper Locking Vulnerability (CVE-2025-43510)
01:52 KSA
CRITICAL CVSS 9.8 ⚠ CISA KEV
Apple Multiple Products — CVE-2025-43510 Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to cause unexpected changes in memory shared between processes. Required Action: Apply mitigations pe…
CVE-2025-43520
Apple Multiple OS Buffer Overflow - Kernel Memory Write (CVE-2025-43520)
01:52 KSA
CRITICAL CVSS 9.8 ⚠ CISA KEV
Apple Multiple Products — CVE-2025-43520 Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory. Required Action: Apply mitigati…
CVE-2025-54068
Laravel Livewire Unauthenticated Remote Code Injection Vulnerability
01:52 KSA
CRITICAL CVSS 9.8 ⚠ CISA KEV
Laravel Livewire — CVE-2025-54068 Laravel Livewire contain a code injection vulnerability that could allow unauthenticated attackers to achieve remote command execution in specific scenarios. Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01…
CVE-2025-31277
Apple Safari and OS Buffer Overflow - CVE-2025-31277
01:52 KSA
CRITICAL CVSS 9.8 ⚠ CISA KEV
Apple Multiple Products — CVE-2025-31277 Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corruption. Required Action: Apply mitigatio…
CVE-2026-33136
WeGIA Reflected XSS in listar_memorandos_ativos.php sccd Parameter
05:45 KSA
CRITICAL CVSS 9.3 CWE-79
WeGIA is a web manager for charitable institutions. Versions 3.6.6 and below have a Reflected Cross-Site Scripting (XSS) vulnerability in the listar_memorandos_ativos.php endpoint. An attacker can inject arbitrary JavaScript or HTML tags into the sccd GET parameter, which is then…
CVE-2026-33135
WeGIA Reflected XSS in novo_memorandoo.php sccs Parameter
05:45 KSA
CRITICAL CVSS 9.3 CWE-79
WeGIA is a web manager for charitable institutions. Versions 3.6.6 and below have a Reflected Cross-Site Scripting (XSS) vulnerability in the novo_memorandoo.php endpoint. An attacker can inject arbitrary JavaScript into the sccs GET parameter, which is directly echoed into the H…
CVE-2026-2421
The ilGhera Carta Docente for WooCommerce plugin for WordPress is vulnerable to Path Traversal in all versions up to, an
05:45 KSA
MEDIUM CVSS 6.5 CWE-22
The ilGhera Carta Docente for WooCommerce plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.5.0 via the 'cert' parameter of the 'wccd-delete-certificate' AJAX action. This is due to insufficient file path validation before performing a f…
CVE-2026-4472
A security vulnerability has been detected in itsourcecode Online Frozen Foods Ordering System 1.0. This vulnerability a
05:45 KSA
MEDIUM CVSS 6.3 CWE-74
A security vulnerability has been detected in itsourcecode Online Frozen Foods Ordering System 1.0. This vulnerability affects unknown code of the file /admin/admin_edit_supplier.php. The manipulation of the argument Supplier_Name leads to sql injection. The attack can be initiat…
CVE-2026-4476
A vulnerability was found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. The impacted element is an unknown fun
05:45 KSA
MEDIUM CVSS 6.3 CWE-287
A vulnerability was found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. The impacted element is an unknown function of the file home/web/ipc of the component CGI Endpoint. Performing a manipulation results in missing authentication. Access to the local network is requir…
CVE-2026-4485
A vulnerability has been found in itsourcecode College Management System 1.0. The impacted element is an unknown functio
05:45 KSA
MEDIUM CVSS 6.3 CWE-74
A vulnerability has been found in itsourcecode College Management System 1.0. The impacted element is an unknown function of the file /admin/search_student.php. The manipulation of the argument Search leads to sql injection. The attack is possible to be carried out remotely. The …
CVE-2026-4500
A vulnerability was identified in bagofwords1 bagofwords up to 0.0.297. This impacts the function generate_df of the fil
05:45 KSA
MEDIUM CVSS 6.3 CWE-74
A vulnerability was identified in bagofwords1 bagofwords up to 0.0.297. This impacts the function generate_df of the file backend/app/ai/code_execution/code_execution.py. Such manipulation leads to injection. The attack may be launched remotely. The exploit is publicly available …
CVE-2026-4505
A vulnerability has been found in eosphoros-ai DB-GPT up to 0.7.5. This issue affects the function module_plugin.refresh
05:45 KSA
MEDIUM CVSS 6.3 CWE-284
A vulnerability has been found in eosphoros-ai DB-GPT up to 0.7.5. This issue affects the function module_plugin.refresh_plugins of the file packages/dbgpt-serve/src/dbgpt_serve/agent/hub/controller.py of the component FastAPI Endpoint. Such manipulation leads to unrestricted upl…
CVE-2026-4506
A vulnerability was found in Mindinventory MindSQL up to 0.2.1. Impacted is the function ask_db of the file mindsql/core
05:45 KSA
MEDIUM CVSS 6.3 CWE-74
A vulnerability was found in Mindinventory MindSQL up to 0.2.1. Impacted is the function ask_db of the file mindsql/core/mindsql_core.py. Performing a manipulation results in code injection. The attack can be initiated remotely. The exploit has been made public and could be used.…
CVE-2026-4507
A vulnerability was determined in Mindinventory MindSQL up to 0.2.1. The affected element is the function ask_db of the
05:45 KSA
MEDIUM CVSS 6.3 CWE-74
A vulnerability was determined in Mindinventory MindSQL up to 0.2.1. The affected element is the function ask_db of the file mindsql/core/mindsql_core.py. Executing a manipulation can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclo…
CVE-2026-32844
XinLiangCoder php_api_doc through commit 1ce5bbf contains a reflected cross-site scripting vulnerability in list_method.
05:45 KSA
MEDIUM CVSS 6.1 CWE-79
XinLiangCoder php_api_doc through commit 1ce5bbf contains a reflected cross-site scripting vulnerability in list_method.php that allows remote attackers to execute arbitrary JavaScript in a victim's browser by injecting malicious code through the f parameter. Attackers can craft …
CVE-2026-33129
H3 is a minimal H(TTP) framework. Versions 2.0.1-beta.0 through 2.0.0-rc.8 contain a Timing Side-Channel vulnerability i
05:45 KSA
MEDIUM CVSS 5.9 CWE-208
H3 is a minimal H(TTP) framework. Versions 2.0.1-beta.0 through 2.0.0-rc.8 contain a Timing Side-Channel vulnerability in the requireBasicAuth function due to the use of unsafe string comparison (!==). This allows an attacker to deduce the valid password character-by-character by…
CVE-2026-33051
Craft CMS is a content management system (CMS). In versions 5.9.0-beta.1 through 5.9.10, the revision/draft context menu
05:45 KSA
MEDIUM CVSS 5.4 CWE-79
Craft CMS is a content management system (CMS). In versions 5.9.0-beta.1 through 5.9.10, the revision/draft context menu in the element editor renders the creator’s fullName as raw HTML due to the use of Template::raw() combined with Craft::t() string interpolation. A low-privile…
CVE-2026-3550
The RockPress plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.0.17.
05:45 KSA
MEDIUM CVSS 5.3 CWE-862
The RockPress plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.0.17. This is due to missing capability checks on multiple AJAX actions (rockpress_import, rockpress_import_status, rockpress_last_import, rockpress_reset_import, and…
CVE-2026-4496
A vulnerability was found in sigmade Git-MCP-Server up to 785aa159f262a02d5791a5d8a8e13c507ac42880. Affected by this vul
05:45 KSA
MEDIUM CVSS 5.3 CWE-77
A vulnerability was found in sigmade Git-MCP-Server up to 785aa159f262a02d5791a5d8a8e13c507ac42880. Affected by this vulnerability is the function child_process.exec of the file src/gitUtils.ts of the component show_merge_diff/quick_merge_summary/show_file_diff. The manipulation …
⚠️ Threat Intelligence
17 threats
rss:The Hacker News
23:54 KSA
HIGH vulnerability
<strong>Apple Warns Older iPhones Vulnerable to Coruna, DarkSword Exploit Kit Attacks</strong> Apple warns users of outdated iOS versions about web-based attacks using Coruna and DarkSword exploit kits. These sophisticated exploit kits deliver malicious web content targeting vul…
rss:The Hacker News
22:43 KSA
CRITICAL ddos
<strong>DoJ Disrupts 3 Million-Device IoT Botnets Behind Record 31.4 Tbps Global DDoS Attacks</strong> The U.S. Department of Justice disrupted command-and-control infrastructure for multiple IoT botnets including AISURU, Kimwolf, JackSkid, and Mossad, which controlled 3 million…
rss:The Hacker News
22:43 KSA
CRITICAL vulnerability
<strong>Magento PolyShell Flaw Enables Unauthenticated Uploads, RCE and Account Takeover</strong> A critical vulnerability in Magento's REST API, dubbed PolyShell, allows unauthenticated attackers to upload malicious executables, execute remote code, and take over accounts. This…
rss:The Hacker News
22:43 KSA
HIGH phishing
<strong>The Importance of Behavioral Analytics in AI-Enabled Cyber Attacks</strong> Cybercriminals are leveraging AI to create sophisticated phishing campaigns with personalized emails, deepfakes, and adaptive malware that bypass traditional security defenses. This evolution req…
rss:The Hacker News
21:36 KSA
MEDIUM malware
<strong>Google Adds 24-Hour Wait for Unverified App Sideloading to Reduce Malware and Scams</strong> Google introduces mandatory 24-hour waiting period for Android sideloading from unverified developers to reduce malware and scam installations. This security enhancement aims to …
rss:The Hacker News
21:36 KSA
CRITICAL vulnerability
<strong>Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of Disclosure</strong> Critical vulnerability CVE-2026-33017 in Langflow (CVSS 9.3) was exploited within 20 hours of disclosure, demonstrating rapid weaponization of authentication bypass flaws. The m…
rss:The Hacker News
21:36 KSA
CRITICAL supply_chain
<strong>Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets</strong> Trivy vulnerability scanner was compromised for the second time in a month, with attackers hijacking 75 GitHub Actions tags to deploy malware targeting CI/CD pipeline secrets…
rss:Dark Reading
06:29 KSA
HIGH vulnerability
<strong>AI Conundrum: Why MCP Security Can&#039;t Be Patched Away</strong> Model Context Protocol (MCP) introduces architectural security vulnerabilities in Large Language Model environments that cannot be resolved through traditional patching methods. Researchers warn these ris…
rss:Dark Reading
06:29 KSA
CRITICAL ransomware
<strong>Interlock Ransomware Targets Cisco Enterprise Firewalls</strong> Interlock ransomware group exploited a critical Cisco firewall vulnerability weeks before public disclosure, demonstrating zero-day access capabilities. The gang specializes in double-extortion attacks and …
rss:Dark Reading
06:29 KSA
HIGH ransomware
<strong>Cyber OpSec Fail: Beast Gang Exposes Ransomware Server</strong> The Beast ransomware gang inadvertently exposed their central cloud server, revealing files that document their systematic tactics targeting network backups. This operational security failure provides insigh…
rss:Dark Reading
06:29 KSA
CRITICAL vulnerability
<strong>Patch Now: Oracle&#039;s Fusion Middleware Has Critical RCE Flaw</strong> Oracle Fusion Middleware contains a critical remote code execution vulnerability affecting Identity and Web Services Managers. Attackers can exploit this flaw without authentication when these serv…
rss:Malwarebytes Lab
05:41 KSA
HIGH malware
<strong>That “job brief” on Google Forms could infect your device</strong> Cybercriminals are using fake job offers distributed through Google Forms to deliver PureHVNC malware. This remote access trojan allows attackers to take complete control of infected devices, posing serio…
rss:Malwarebytes Lab
05:41 KSA
MEDIUM general
<strong>Could your face change what you pay? NYC wants limits on biometric tracking</strong> NYC lawmakers propose regulations to limit biometric tracking technologies that could enable surveillance-based pricing and customer profiling. This addresses privacy concerns and potent…
rss:CISA Advisories
05:20 KSA
HIGH phishing
<strong>Russian Intelligence Services Target Commercial Messaging Application Accounts</strong> CISA and FBI warn of ongoing phishing campaigns by Russian Intelligence Services targeting commercial messaging applications to bypass encryption and compromise accounts. These sophis…
rss:CISA Advisories
05:20 KSA
HIGH vulnerability
<strong>CISA Adds Five Known Exploited Vulnerabilities to Catalog</strong> CISA added five actively exploited vulnerabilities to its KEV Catalog, including critical flaws in Apple products and Craft CMS. Organizations must prioritize patching these vulnerabilities as they are be…
rss:Recorded Future
05:09 KSA
CRITICAL apt
<strong>The Iran War: What You Need to Know</strong> Insikt Group provides continuous tracking and threat analysis of cyber, physical, and geopolitical aspects of US-Israeli strikes on Iran. The report includes updated threat scenarios relevant to regional cybersecurity posture …
rss:Krebs on Securit
05:08 KSA
HIGH ddos
<strong>Feds Disrupt IoT Botnets Behind Huge DDoS Attacks</strong> U.S., Canadian, and German authorities dismantled four major botnets that compromised over 3 million IoT devices including routers and cameras. The operation disrupted infrastructure used to launch massive DDoS a…
📰 Cybersecurity News
0 articles
📰 No news aggregated today yet

This digest is updated automatically every day — Last updated: Friday, March 20, 2026
CVE Archive · Threats · News

📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.