Update 3: Piotr Karwasz, a member of the Apache Software Foundation, stated that this alert re-covers an...
Deserialization
Update: Microsoft updated its safety alert on August 21, 2026. Initially, the report marked the bug as...
TL;DR Splunk fixed 17 vulnerabilities across its apps and add-ons on August 19, 2026. The worst, CVE-2026-76404,...
TL;DR Jenkins patched a critical Jenkins vulnerability, CVE-2026-70426, that bypasses the JEP-200 deserialization filter. Attackers with Agent/Connect...
TL;DR OpenAM 16.1.2 patches four security flaws in the open-source access management server. Three of these OpenAM...
TL;DR OpenDJ 5.1.2 fixes four security flaws in the open-source LDAP directory server. The two most severe...
TL;DR The Apache Fory project disclosed four vulnerabilities on July 21, 2026. Three carry an important rating,...
TL;DR A critical FastJson RCE vulnerability, CVE-2026-16723, carries a CVSS score of 9.0. Full technical details and...
TL;DR Researcher Kirill Firsov disclosed a fastjson RCE on July 19, 2026. It affects fastjson 1.2.68 through...
TL;DR CVE-2026-50522 is a critical SharePoint RCE flaw rated CVSS 9.8. Researchers report active exploitation attempts, and...
TL;DR Metabase has patched three critical flaws in its H2 database handling. Two carry CVE IDs and...
TL;DR Researchers have published full technical details and proof-of-concept code for a SharePoint remote code execution flaw....
TL;DR CISA added a Microsoft SharePoint vulnerability to its Known Exploited Vulnerabilities catalog on 1 July 2026....
Unauthenticated RCE hits iba industrial software A critical iba deserialization vulnerability could let remote attackers run arbitrary...
NVIDIA has issued an urgent fix for its NeMo Framework, the popular open-source toolkit for building generative...
Attackers are already abusing a critical Jenkins RCE vulnerability in the wild. Tracked as CVE-2026-53435, the flaw...
The Apache MINA project has issued a high-priority security release to address two critical vulnerabilities that were...
Apache MINA is widely recognized as a foundational network application framework, designed to help users easily develop...
A critical vulnerability has been disclosed in Pipecat, the popular open-source Python framework used to build voice...
OpenAM, the widely-deployed open-source access management solution, is facing a critical security challenge following the discovery of...
A critical vulnerability has been uncovered in the OpenTelemetry Instrumentation for Java, a popular tool used by...
Maintainers of Apache Camel, the widely adopted open-source framework that empowers you to quickly and easily integrate...