The maintainers of Django, the high-level Python web framework that powers some of the internet’s largest sites,...
Vulnerability Report
CISA Warns: Critical Iskra iHUB Flaw (CVE-2025-13510) Allows Unauthenticated Smart Metering Takeover
CISA Warns: Critical Iskra iHUB Flaw (CVE-2025-13510) Allows Unauthenticated Smart Metering Takeover
A critical security vacuum has been discovered in smart metering infrastructure, potentially leaving utility networks exposed to...
A critical security flaw in a popular WordPress plugin has triggered a massive wave of exploitation attempts,...
The maintainers of Angular, the popular platform for building mobile and desktop web applications, have released an...
A high-severity vulnerability, tracked as CVE‐2025‐12183, has been disclosed in the popular lz4-java compression library, exposing applications...
The OpenVPN project has released a crucial security update with the launch of version 2.7_rc2, addressing a...
Google has released the Android Security Bulletin for December 2025, detailing a slate of vulnerabilities affecting the...
A significant security vulnerability has been identified in nopCommerce, a popular open-source ecommerce platform that serves as...
The Apache Software Foundation has issued an important advisory regarding a significant Denial of Service (DoS) vulnerability...
Qualcomm has released a substantial security update for December 2025, addressing 11 distinct vulnerabilities across its chipset...
A critical vulnerability has been unearthed in Apache bRPC, an industrial-grade RPC framework widely used to power...
Devolutions has released urgent security updates for its flagship self-hosted password management solution, Devolutions Server, addressing three...
The maintainers of GeoServer have issued an important security advisory regarding a high-severity vulnerability that could allow...
The Apache Software Foundation has issued a critical security advisory for Apache Kvrocks, a distributed key-value NoSQL...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a new mandate for federal agencies to secure...
A new report from Kaspersky Labs reveals that despite being over two decades old, the NTLM authentication...
Apache SkyWalking, the widely adopted open-source Application Performance Monitoring (APM) system used for distributed systems in Cloud...
A critical remote code execution (RCE) vulnerability has been discovered in the Ray framework, putting AI and...
A sophisticated new cyber espionage campaign has been uncovered by Zscaler Threat Hunting, revealing how a Russia-aligned...
A critical security warning has been issued for users of Twonky Server, the popular media server software...