A critical vulnerability in Calibre, the popular cross-platform e-book manager, allows arbitrary code execution when an attacker...
rce
The LangGraph project, a powerful, low-level orchestration framework trusted by major tech companies for building stateful AI...
Cisco has released urgent security updates to address two critical vulnerabilities in its Unified Contact Center Express...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities—CVE-2025-11371 in Gladinet CentreStack and...
A newly disclosed critical vulnerability (CVE-2025-11953, CVSS 9.8) in the React Native Community CLI exposes developers to...
A critical-severity Local File Inclusion (LFI) flaw in the popular WordPress plugin ShopLentor – WooCommerce Builder for...
Redis, the world’s leading in-memory data platform, has issued an urgent patch addressing a high-severity vulnerability (CVE-2025-62507,...
The AhnLab Security Intelligence Center (ASEC) has confirmed that the Kinsing threat actor — also known as...
The strongSwan Team has disclosed a critical heap-based buffer overflow vulnerability (CVE-2025-62291) in the EAP-MSCHAPv2 plugin used...
The Cybersecurity and Infrastructure Security Agency (CISA) has added two critical Dassault Systèmes DELMIA Apriso vulnerabilities to...
Researchers at Kaspersky uncovered a sophisticated espionage campaign exploiting a zero-day vulnerability in Google Chrome and delivering...
Security researchers have disclosed a high-severity vulnerability, tracked as CVE-2025-10680 (CVSS 8.8), affecting OpenVPN 2.7_alpha1 through 2.7_beta1...
The Apache Software Foundation has released multiple security patches for Apache Tomcat, addressing three newly disclosed vulnerabilities...
The OpenWrt Project has patched two high-severity vulnerabilities affecting its Linux-based firmware for embedded devices. The flaws,...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert warning of multiple high-severity vulnerabilities affecting...
Microsoft has recently issued an emergency security update for enterprise Windows Server Update Services (WSUS) to address...
The Wordfence Threat Intelligence team has issued a new warning about the resurgence of large-scale attacks exploiting...
Security researcher Batuhan Er from HawkTrace has detailed a critical remote code execution (RCE) vulnerability in Microsoft...
The SUSE Rancher Security team has issued a critical advisory addressing a command injection and buffer overflow...
JPCERT/CC and the developer MOTEX Inc. have issued an urgent advisory for a critical remote code execution...
Researchers Ivan Fratric and Natalie Silvanovich from Google Project Zero have disclosed a critical 0-click vulnerability (CVE-2025-54957,...
Researchers at HiddenLayer have disclosed a critical arbitrary code execution vulnerability in the Keras 3 deep learning...