Critical vulnerabilities in WordPress and Zyxel GS1900 switches stand out today, with active exploitation placing web servers and network infrastructure at risk. New supply chain and phishing threats target academia and npm users, while AI-driven malware and SaaS misuse add complexity for defenders. Immediate patching and incident reviews are urged for exposed assets.