Security researcher Matt Palmer has uncovered a critical vulnerability in the Lovable low-code platform, now tracked as...
Vulnerability Report
KUNBUS has issued a critical security advisory for its RevPi Webstatus application following the discovery of an...
Akamai’s Security Intelligence and Response Team (SIRT) has uncovered active exploitation of CVE-2025-24016, a critical remote code...
A severe vulnerability in the PayU CommercePro plugin for WordPress, which has over 5,000 active installations, allows...
QNAP Systems, Inc. has released patches addressing multiple high-severity vulnerabilities in its Qsync Central and File Station...
B. Braun Melsungen AG has issued a high-priority security advisory warning of three severe vulnerabilities affecting its...
CERT Polska has sounded the alarm after uncovering a spear phishing campaign that targeted Polish organizations using...
The Go team has rolled out versions 1.24.4 and 1.23.10, addressing three critical security vulnerabilities affecting core...
A critical vulnerability in AWS Amplify’s UI generation tool, @aws-amplify/codegen-ui, is putting developers—and their build pipelines—at serious...
Kaspersky researchers have uncovered a fresh wave of attacks exploiting CVE-2024-3721 to deploy a revamped variant of...
Nintendo’s recently launched Switch 2 console has already had a vulnerability discovered by enthusiasts. Security researcher David...
The Jenkins community has issued a high-severity security advisory for a newly disclosed vulnerability in the Gatling...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory warning of multiple high-impact...
Amazon has issued a security advisory for a memory corruption vulnerability in the widely used FreeRTOS-Plus-TCP stack....
In a recent security advisory, MIM Software Inc. disclosed a high-severity vulnerability, CVE-2025-1701, affecting the MIM Admin...
Weaponizing Group Policy: Custom Client-Side Extensions as a Stealthy Backdoor into Active Directory
Weaponizing Group Policy: Custom Client-Side Extensions as a Stealthy Backdoor into Active Directory
A newly published report by Antoine Cauchois, Staff Research Engineer at Tenable, reveals a stealthy persistence technique...
Hewlett Packard Enterprise (HPE) has issued a security advisory addressing multiple high-impact vulnerabilities in its Insight Remote...
In a stunningly fast-moving sequence of events, a serious vulnerability in the widely-used Roundcube webmail client—CVE-2025-49113—has been...
Cisco has issued advisories for two newly disclosed vulnerabilities affecting widely used enterprise software: Cisco Customer Collaboration...
A newly disclosed vulnerability in the Auth0 PHP SDK—a widely-used authentication toolkit with over 16 million downloads—poses...
Cisco has issued security advisories for two high-severity vulnerabilities—one in the Cisco Integrated Management Controller (IMC) and...