HubSpot has issued a security advisory regarding a critical flaw in its Jinjava template engine, which powers...
Vulnerability Report
A newly disclosed vulnerability in Fortraβs GoAnywhere Managed File Transfer (MFT) platform has been assigned CVE-2025-10035, carrying...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a new security advisory warning about two serious...
Jenkins, one of the most widely used open-source automation servers, has released a new security advisory addressing...
Google has released a Stable Channel update to version 140.0.7339.185/.186 for Windows and Mac, and 140.0.7339.185 for...
The Taiwan Computer Emergency Response Team / Coordination Center (TWCERT/CC) has issued a security advisory warning of...
Researchers from ETH Zurich have unveiled Phoenix, a new Rowhammer attack that successfully bypasses in-DRAM mitigations in...
Security researcher Volticks has published a deep technical writeup on CVE-2025-21692, a vulnerability in the Linux kernelβs...
WatchGuard has issued a security advisory addressing a critical vulnerability in its Fireware OS, tracked as CVE-2025-9242...
NVIDIA has released a software update addressing multiple high- and critical-severity vulnerabilities in its Triton Inference Server,...
HPE Aruba Networking has released patches addressing multiple high- and medium-severity vulnerabilities in its EdgeConnect SD-WAN Gateways,...
A newly disclosed vulnerability in the Kubernetes C# client has been assigned CVE-2025-9708 with a CVSS score...
A newly disclosed vulnerability in the Linux kernelβs KSMBD subsystem has been assigned CVE-2025-38501, allowing remote attackers...
Hackers are exploiting a critical authentication bypass vulnerability in the Case Theme User plugin, a WordPress plugin...
The Spring team has disclosed two related vulnerabilitiesβCVE-2025-41248 and CVE-2025-41249βthat affect Spring Security and the Spring Framework....
In a recent deep-dive analysis, security researcher BitsByWill examined two critical Linux kernel vulnerabilitiesβCVE-2023-52440 and CVE-2023-4130βboth impacting...
Samsung has released security updates to patch a critical zero-day vulnerability actively exploited against Android devices. Tracked...
The open-source generative AI development platform FlowiseAI, widely used for building AI agents and LLM workflows, has...
The Taiwan Computer Emergency Response Team (TWCERT/CC) has issued a vulnerability note warning of two critical security...
The rise of large language model (LLM) applications has made frameworks like LangChain and its ports foundational...