A high-severity security flaw has been identified in ingress-nginx, a widely used Ingress controller for Kubernetes clusters....
Vulnerability Report
Security researchers at Proofpoint Threat Research have detailed a novel exploitation method dubbed CursorJack, which targets the...
A critical-severity security flaw has been identified in Spring Security, the industry-standard framework for securing Java-based enterprise...
Security researchers have identified two distinct vulnerabilities within the widely used Spring Framework, affecting both Spring MVC...
Google has announced a significant security update for the Chrome stable channel, addressing a staggering 26 security...
Security researchers at Arctic Wolf have issued an urgent warning after observing a spike in malicious activity...
The Jenkins project has released a critical security advisory addressing multiple vulnerabilities that could lead to full...
Atlassian has sounded the alarm for users of its Bamboo Data Center, uncovering a high-severity Remote Code...
A critical-severity vulnerability has been identified in jsPDF, the popular JavaScript library used by developers worldwide to...
Security researchers have identified two severe vulnerabilities in Langflow, the popular visual framework for building AI-powered agents....
Ubiquiti has issued an urgent security advisory following the discovery of two significant vulnerabilities within its UniFi...
The Cybersecurity and Infrastructure Security Agency (CISA) has officially expanded its Known Exploited Vulnerabilities (KEV) Catalog, adding...
A newly discovered vulnerability, dubbed RegPwn, has pulled back the curtain on a significant security gap in...
Schneider Electric has exposed the curtain on two significant vulnerabilities affecting critical infrastructure tools. From remote terminal...
ConnectWise recently issued a critical security update for its ScreenConnect platform, addressing a significant vulnerability that could...
The Qualys Threat Research Unit has detailed a new Local Privilege Escalation (LPE) vulnerability, tracked as CVE-2026-3888,...
A critical vulnerability has been identified in a key component of Oracle’s open-source portfolio, potentially handing the...
Security researchers have issued a dual-threat alert for developers utilizing the Spring AI framework, a popular tool...
Cybersecurity researchers at Bishop Fox have released a technical deep-dive into a critical vulnerability affecting FortiClient EMS,...
Security researchers have issued a high-priority alert for users of File Browser, a popular open-source self-hosted cloud...