TL;DR Canonical shipped fixes for CVE-2026-11386 in USN-8555-1 on July 16, 2026. This Ubuntu Pro Client vulnerability...
Arbitrary Code Execution
TL;DR Red Hat disclosed a critical HPLIP vulnerability, tracked as CVE-2026-14544, with a CVSS score of 9.8....
TL;DR Palo Alto Networks disclosed a PAN-OS buffer overflow tracked as CVE-2026-0288. It sits in the User-ID...
TL;DR Foxit shipped Foxit PDF Reader 2026.1.2 and PDF Editor 2026.1.2 for Windows. The release fixes 28...
TL;DR CVE-2026-48282, a critical CVSS 10 ColdFusion arbitrary code execution vulnerability, is under active attack. Hackers are...
TL;DR Researchers disclosed two UltraVNC repeater vulnerabilities in the tool’s HTTP admin server. One allows arbitrary code...
TL;DR Adobe shipped fixes for 11 Adobe ColdFusion vulnerabilities on 30 June 2026. Six earn a perfect...
A serious CodeIgniter vulnerability has put many PHP web applications at risk. Tracked as CVE-2026-48062, the flaw...
Insufficient Access Controls inside Mistral API OpenStack Mistral workflow service users must address a critical security vulnerability...
Time-series data is the backbone of countless modern applications, from financial tickers to IoT monitoring. However, a...
As a pure JavaScript implementation of Google’s Protocol Buffers, protobuf.js is a foundational component for Node.js and...
NVIDIA has released two significant security updates addressing high-severity vulnerabilities across its DALI and Triton Inference Server...
Netwrix has issued an urgent security advisory following an internal review that uncovered multiple high-severity vulnerabilities in...
A high-severity security flaw has been identified in ingress-nginx, a widely used Ingress controller for Kubernetes clusters....
Security researchers at Proofpoint Threat Research have detailed a novel exploitation method dubbed CursorJack, which targets the...
A critical security vulnerability has been identified in ingress-nginx, the widely used Ingress controller for Kubernetes. Tracked...
Apple has issued an emergency security update for its entire mobile ecosystem, racing to close a critical...
A quartet of critical vulnerabilities has been discovered in SandboxJS, a library designed to isolate and secure...
A high-severity vulnerability in the Forcepoint One DLP Client has been disclosed, revealing a method for attackers...
Ideally, text editors are passive tools—you open a file, edit it, and save it. But a new...
The CERT Coordination Center (CERT/CC) has issued a vulnerability note highlighting two severe security flaws in Lite...
Google has released an important security update for Chrome Stable Channel, addressing a high-severity vulnerability in the...