Security researcher D3vil has uncovered and weaponized a kernel-level Use-After-Free (UAF) vulnerability—CVE-2025-38001—within the Linux networking stack. The...
Vulnerability
Juniper Networks, a cornerstone in enterprise-grade network security, has issued a critical alert for a Missing Authorization...
Security researcher Filip Dragović has been credited by Microsoft for uncovering CVE-2025-48799, a local privilege escalation (LPE)...
HPE Aruba Networking has issued a critical security advisory for its Instant On Access Points, urging users...
The Apache Software Foundation has released critical updates for Apache Tomcat 9, addressing three newly disclosed denial-of-service...
MongoDB Inc. has issued patches for two newly discovered vulnerabilities affecting multiple versions of its server software....
Redis, the beloved in-memory data store powering millions of real-time applications, has just patched a critical vulnerability...
A newly discovered vulnerability in the Linux kernel has been assigned CVE-2025-38089, affecting systems running Network File...
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added a high-severity vulnerability in Google Chrome...
Netflix Conductor, the powerful microservices orchestration engine used to automate complex workflows, has been found vulnerable to...
The Electron team has published a new security advisory addressing two significant vulnerabilities that could impact a...
In the golden age of remote gaming and self-hosted services, Sunshine has emerged as a popular and...
D-Link Corporation has issued a security advisory urging all users of the legacy DIR-815 wireless router to...
MongoDB, one of the most widely used NoSQL databases, disclosures a vulnerability—CVE-2025-6710—that allows for a pre-authentication denial-of-service...
The Guix project has issued a critical security advisory detailing two newly discovered vulnerabilities in guix-daemon—CVE-2025-46415 and...
A critical vulnerability discovered in CentOS Web Panel (CWP), a widely-used open-source server management platform. Tracked as...
The open-source Git service Gogs, known for its simplicity and ease of deployment, disclosures two severe security...
Two high-impact security advisories have been released for the pbkdf2 npm package—an essential utility in the JavaScript...
A new vulnerability, tracked as CVE-2025-49144, has been discovered in Notepad++ version 8.8.1 that allows local privilege...
A newly disclosed vulnerability in Python’s tarfile module—CVE-2025-4517—has exposed a critical security risk that allows attackers to...
A critical security vulnerability has been uncovered in Pterodactyl, the popular open-source game server management panel. Tracked...
A recently disclosed vulnerability, tracked as CVE-2025-50054, affects certain versions of the OpenVPN Windows kernel driver (ovpn-dco-win)...