UK business critical CVEs

Donald McCallum

Problem Manager & Specialist POD Leader
Kyocera Cyber

With over 20 years in the industry, Donald heads up our Cyber Security team.

Top vulnerabilities in the UK this month

Active exploitation of vulnerability affecting Oracle E-Business Suite

The NCSC is encouraging UK organisations to take immediate action to mitigate a vulnerability (CVE-2025-61882) affecting Oracle E-Business Suite.

Active exploitation of vulnerability affecting Microsoft Office SharePoint Server products in the UK

The NCSC is encouraging UK organisations to take immediate action to mitigate a vulnerability (CVE-2025-53770) affecting Microsoft SharePoint Server products.

Critical GitHub Copilot Vulnerability Let Attackers Exfiltrate Source Code From Private Repos

CSN reports on a critical vulnerability in GitHub Copilot Chat, rated 9.6 on the CVSS scale, could have allowed attackers to exfiltrate source code and secrets from private repositories silently.

New Android Malware ClayRat Mimic as WhatsApp, Google Photos to Attack Users

CSN reports on a sophisticated Android spyware campaign dubbed ClayRat has emerged as one of the most concerning mobile threats of 2025, masquerading as popular applications including WhatsApp, Google Photos, TikTok, and YouTube to infiltrate devices and steal sensitive user data.

OneDrive Vulnerability Lets Websites Access All User Files

CyberPress highlights critical A critical vulnerability in Microsoft’s OneDrive File Picker that exposes millions of users to potential data breaches.

Security researchers estimate that hundreds of popular applications are affected by this vulnerability, including widely-used platforms such as ChatGPT, Slack, Trello, and ClickUp.

NetScaler ADC and NetScaler Gateway Security Bulletin

Citrix issue critical bulletin for customers to update their netscaler instances

Under attack? Get help from THE Cyber team.

Cyber Blog.

Cyber Solutions.

Managed Security Operations Centre.

Our state-of-the-art AI powered and hyper-automated Managed Security Operations Centre (MSOC) is the ultimate solution for robust cyber defence.

Managed Endpoint Detection and Response.

Protect your business against the latest cyberthreats with our Managed Endpoint Detection and Response (M-EDR) service.

Managed Phising Defence.

Our managed service tackles the challenges faced by IT teams in educating and maintaining cyber security awareness within organisations.