Ubiquiti has issued an urgent security advisory following the discovery of two significant vulnerabilities within its UniFi...
Path Traversal
Security researchers have exposed a devastating vulnerability in TinaCMS, a popular headless content management system used by...
Apache Livy, the essential bridge that allows web and mobile applications to interact seamlessly with Apache Spark...
The WordPress security team has issued an urgent call to action following the release of WordPress 6.9.2...
Budibase, the popular open-source low-code platform designed for building internal business applications, has released critical security patches...
Vitess is a cloud-native horizontally-scalable distributed database system that is built around MySQL. It allows organizations to...
With over 18 million downloads, basic-ftp is a cornerstone utility for Node.js developers, offering a robust, Promise-based...
IT monitoring environments relying on Centreon face a severe threat this week as two critical vulnerabilities have...
ASUSTOR has released an urgent security statement detailing multiple critical and high-severity vulnerabilities affecting its ASUSTOR Data...
Calibre, the highly popular, cross-platform e-book manager utilized by readers worldwide to view, convert, edit, and catalog...
A triple threat of security vulnerabilities has been uncovered in Gogs, the popular self-hosted Git service known...
A maximum-severity vulnerability has been uncovered in a core Kubernetes storage component, leaving nodes wide open to...
A critical vulnerability has been discovered in the unstructured library, a powerhouse tool used by developers to...
A critical vulnerability in one of the world’s most popular file archivers has become a favorite weapon...
A critical vulnerability has been discovered in jsPDF, one of the most popular JavaScript libraries for generating...
Apache Kyuubi, the distributed gateway designed to provide secure, serverless SQL access to massive data lakes, has...
A critical security vulnerability has been discovered in AdonisJS, a popular full-stack Node.js web framework known for...
Network-attached storage giant QNAP has issued a sweeping set of security advisories, patching critical vulnerabilities that could...
GNU Wget2, the modern successor to the ubiquitous command-line download tool, has been hit with a double...
A routine malware investigation has spiraled into the discovery of a widespread “smash-and-grab” campaign targeting the developer...
SonicWall has released security updates addressing two vulnerabilities in its Email Security appliances, including one that could...
The Docker Compose project has disclosed a high-severity path traversal vulnerability tracked as CVE-2025-62725 (CVSS v4 8.9),...