A critical security vulnerability has been discovered in AdonisJS, a popular full-stack Node.js web framework known for...
Path Traversal
Network-attached storage giant QNAP has issued a sweeping set of security advisories, patching critical vulnerabilities that could...
GNU Wget2, the modern successor to the ubiquitous command-line download tool, has been hit with a double...
A routine malware investigation has spiraled into the discovery of a widespread “smash-and-grab” campaign targeting the developer...
SonicWall has released security updates addressing two vulnerabilities in its Email Security appliances, including one that could...
The Docker Compose project has disclosed a high-severity path traversal vulnerability tracked as CVE-2025-62725 (CVSS v4 8.9),...
Atlassian has released patches addressing a high-severity Path Traversal vulnerability (CVE-2025-22167) affecting Jira Software Data Center and...
Recently, GreyNoise observed a sudden and highly coordinated wave of exploitation attempts targeting CVE-2021-43798, a Grafana path...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a new security advisory warning about two serious...
Nagios XI, one of the most widely used IT infrastructure monitoring solutions, has been found vulnerable to...
QNAP has released a security advisory addressing multiple vulnerabilities affecting the QVR firmware on legacy VioStor NVR...
Security researchers at ESET have uncovered a zero-day path traversal vulnerability in the Windows version of WinRAR...
Samsung’s widely used MagicINFO 9 Server, a digital signage management platform, was found multi security vulnerabilities. Security...
The OpenJS Foundation has released important updates to Node.js 24.x, 22.x, and 20.x release lines, addressing two...
iemens has released a critical security advisory detailing multiple high-severity vulnerabilities affecting SINEC NMS, its flagship network...
Cymulate Research Labs has revealed Anthropic’s Filesystem MCP Server vulnerabilities. Two newly disclosed flaws—CVE-2025-53110 and CVE-2025-53109—exposes systems...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning users of multiple high-impact...
Security researcher TheHiker disclosured three serious vulnerabilities in InnoShop, an open-source eCommerce system built on Laravel 12....
A newly disclosed vulnerability in Python’s tarfile module—CVE-2025-4517—has exposed a critical security risk that allows attackers to...
Gjoko Krstic of Zero Science Lab has uncovered a critical path traversal vulnerability in Selea’s TARGA series...