The developers behind Open WebUI, an open-source and self-hosted AI interface framework, have issued a security advisory...
rce
The CERT Coordination Center (CERT/CC) has issued a vulnerability note highlighting two severe security flaws in Lite...
The Apache Software Foundation (ASF) has released an important security update for Apache OFBiz, its open-source enterprise...
Microsoft has released its November 2025 Patch Tuesday, addressing a total of 68 vulnerabilities, including a high-priority...
Today, SAP released its latest batch of Security Patch Day updates, delivering 18 new security notes and...
Critical Synology BeeStation Zero-Day (CVE-2025-12686) Found at Pwn2Own Allows Remote Code Execution
Critical Synology BeeStation Zero-Day (CVE-2025-12686) Found at Pwn2Own Allows Remote Code Execution
Synology has released an urgent security update for its BeeStation OS, patching a zero-day vulnerability (CVE-2025-12686) that...
A critical vulnerability in Calibre, the popular cross-platform e-book manager, allows arbitrary code execution when an attacker...
The LangGraph project, a powerful, low-level orchestration framework trusted by major tech companies for building stateful AI...
Cisco has released urgent security updates to address two critical vulnerabilities in its Unified Contact Center Express...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilitiesβCVE-2025-11371 in Gladinet CentreStack and...
A newly disclosed critical vulnerability (CVE-2025-11953, CVSS 9.8) in the React Native Community CLI exposes developers to...
A critical-severity Local File Inclusion (LFI) flaw in the popular WordPress plugin ShopLentor β WooCommerce Builder for...
Redis, the worldβs leading in-memory data platform, has issued an urgent patch addressing a high-severity vulnerability (CVE-2025-62507,...
The AhnLab Security Intelligence Center (ASEC) has confirmed that the Kinsing threat actor β also known as...
The strongSwan Team has disclosed a critical heap-based buffer overflow vulnerability (CVE-2025-62291) in the EAP-MSCHAPv2 plugin used...
The Cybersecurity and Infrastructure Security Agency (CISA) has added two critical Dassault Systèmes DELMIA Apriso vulnerabilities to...
Researchers at Kaspersky uncovered a sophisticated espionage campaign exploiting a zero-day vulnerability in Google Chrome and delivering...
Security researchers have disclosed a high-severity vulnerability, tracked as CVE-2025-10680 (CVSS 8.8), affecting OpenVPN 2.7_alpha1 through 2.7_beta1...
The Apache Software Foundation has released multiple security patches for Apache Tomcat, addressing three newly disclosed vulnerabilities...
The OpenWrt Project has patched two high-severity vulnerabilities affecting its Linux-based firmware for embedded devices. The flaws,...