Apple has released emergency security updates to address a zero-day vulnerability, CVE-2025-24085, that is actively being exploited. The vulnerability affects iOS, iPadOS, macOS, tvOS, watchOS, and visionOS and has been patched. This highlights the constant threat of zero-day exploits and the importance of promptly applying security updates.
VMware addressed five vulnerabilities in its Aria Operations product (formerly VMware vRealize Operations). These vulnerabilities could allow privilege escalation and Cross-Site Scripting (XSS) attacks. The vulnerabilities range in severity, emphasizing the importance of promptly installing security patches for cloud management platforms. This highlights the need for continuous security updates and robust vulnerability management in enterprise software.