Security researchers at Wordfence have issued an urgent warning about an actively exploited authentication bypass vulnerability in...
privilege escalation
IBM has released fixes for three security vulnerabilities affecting its IBM Security Verify Access and IBM Verify...
A detailed exploit analysis of CVE-2023-4921 (CVSS 7.8) reveals how a subtle use-after-free flaw in the Linux...
A newly disclosed vulnerability in the Zabbix Agent and Agent 2 for Windows could allow local attackers...
Security researcher StreyPaws has published an in-depth analysis of CVE-2025-38352, a Time-of-Check to Time-of-Use (TOCTOU) race condition...
Security researcher Huyinhao has published a deep-dive analysis of CVE-2025-21701, a newly disclosed Linux kernel vulnerability rated...
The Red Hat Security team has disclosed a serious vulnerability in Red Hat OpenShift AI, a platform...
NVIDIA has issued a security bulletin addressing multiple vulnerabilities across the NVIDIA App for Windows and the...
The FreeIPA Team has released a security advisory addressing a critical privilege escalation vulnerability (CVE-2025-7493) that could...
A newly disclosed local privilege escalation vulnerability, CVE-2025-41244, has been exploited as a zero-day in the wild,...
Broadcom has released patches addressing three vulnerabilities in VMware Aria Operations and VMware Tools, with severities ranging...
Proof-of-concept exploit code is now publicly available online for a zero-day flaw in iOS/iPadOS, macOS, tvOS, watchOS,...
Yarix’s Incident Response Team (YIR) has published an in-depth analysis of a targeted intrusion that leveraged an...
Researchers from ETH Zurich have unveiled Phoenix, a new Rowhammer attack that successfully bypasses in-DRAM mitigations in...
The PyInstaller project has released fixes for a local privilege escalation vulnerability that affected applications packaged with...
The CERT Coordination Center (CERT/CC) has issued a vulnerability note warning of two critical local security flaws...
NVIDIA has released a software update for its NVDebug tool, addressing three high-severity vulnerabilities (CVE-2025-23342, CVE-2025-23343, and...
FortiGuard Labs has uncovered a sophisticated phishing campaign that deploys a new Remote Access Trojan (RAT) dubbed...
Apple has patched a critical security vulnerability in macOS Sequoia, tracked as CVE-2025-24204 (CVSS 9.8), that could...
The GNU Guix team has issued a critical security advisory warning users to immediately update their systems...
Renowned operating system developer Canonical has announced that the upcoming Ubuntu 25.10 release will replace the long-standing...
MediaTek has published its September 2025 Product Security Bulletin, disclosing several high- and medium-severity vulnerabilities affecting a...