A critical vulnerability has been discovered in jsPDF, one of the most popular JavaScript libraries for generating...
Path Traversal
Apache Kyuubi, the distributed gateway designed to provide secure, serverless SQL access to massive data lakes, has...
A critical security vulnerability has been discovered in AdonisJS, a popular full-stack Node.js web framework known for...
Network-attached storage giant QNAP has issued a sweeping set of security advisories, patching critical vulnerabilities that could...
GNU Wget2, the modern successor to the ubiquitous command-line download tool, has been hit with a double...
A routine malware investigation has spiraled into the discovery of a widespread “smash-and-grab” campaign targeting the developer...
SonicWall has released security updates addressing two vulnerabilities in its Email Security appliances, including one that could...
The Docker Compose project has disclosed a high-severity path traversal vulnerability tracked as CVE-2025-62725 (CVSS v4 8.9),...
Atlassian has released patches addressing a high-severity Path Traversal vulnerability (CVE-2025-22167) affecting Jira Software Data Center and...
Recently, GreyNoise observed a sudden and highly coordinated wave of exploitation attempts targeting CVE-2021-43798, a Grafana path...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a new security advisory warning about two serious...
Nagios XI, one of the most widely used IT infrastructure monitoring solutions, has been found vulnerable to...
QNAP has released a security advisory addressing multiple vulnerabilities affecting the QVR firmware on legacy VioStor NVR...
Security researchers at ESET have uncovered a zero-day path traversal vulnerability in the Windows version of WinRAR...
Samsung’s widely used MagicINFO 9 Server, a digital signage management platform, was found multi security vulnerabilities. Security...
The OpenJS Foundation has released important updates to Node.js 24.x, 22.x, and 20.x release lines, addressing two...
iemens has released a critical security advisory detailing multiple high-severity vulnerabilities affecting SINEC NMS, its flagship network...
Cymulate Research Labs has revealed Anthropic’s Filesystem MCP Server vulnerabilities. Two newly disclosed flaws—CVE-2025-53110 and CVE-2025-53109—exposes systems...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning users of multiple high-impact...
Security researcher TheHiker disclosured three serious vulnerabilities in InnoShop, an open-source eCommerce system built on Laravel 12....