Google revealed that its large language model (LLM)-assisted vulnerability discovery framework detected and reported a critical flaw...
Vulnerability
The Langflow project has issued an important security advisory regarding a newly discovered vulnerability that poses a...
A newly disclosed security flaw, tracked as CVE-2025-54370, has been identified in PhpSpreadsheet, a PHP-based library that...
Security researchers have disclosed two critical vulnerabilities in DataEase, an open-source business intelligence (BI) tool designed for...
The Cybersecurity and Infrastructure Security Agency (CISA) has added three new vulnerabilities to its Known Exploited Vulnerabilities...
TP-Link has issued a security advisory addressing a high-severity vulnerability (CVE-2025-8627) affecting its KP303 Smart Plug, warning...
Security researchers at Rapid7 have uncovered four serious vulnerabilities in Securden Unified Privileged Access Manager (PAM), a...
A high-severity zero-day vulnerability in Google Chrome’s V8 JavaScript engine, tracked as CVE-2025-5419, has been exposed, with...
Salesforce Security has announced the resolution of multiple vulnerabilities in Tableau Server, identified during a proactive security...
IBM has released a security bulletin addressing a severe vulnerability in its Jazz Team Server, a Java-based...
Plex Media Server (PMS) users are being urged to update their systems immediately after the discovery of...
The Directus project has disclosed a critical vulnerability tracked as CVE-2025-55746 (CVSS 9.3) that could allow unauthenticated...
A new report from Palo Alto Networks’ Unit 42 has shed light on an unusual and stealthy...
A critical security vulnerability has been disclosed in sha.js, a widely used JavaScript library that implements the...
A newly detailed report from Trend Micro has revealed how the Warlock ransomware group is weaponizing vulnerable...
Kudelski Security has published a detailed write-up of a critical vulnerability discovered in CodeRabbit, the most installed...
Red Canary has revealed a sophisticated attack campaign targeting cloud-based Linux systems through a critical remote code...
The widely used Apache Tika toolkit, a powerful library for detecting and extracting metadata and text from...
BI.ZONE Threat Intelligence uncovered a series of targeted cyber-espionage campaigns conducted by the Paper Werewolf (GOFFEE) cluster,...
A critical vulnerability in Docker Desktop has been disclosed, tracked as CVE-2025-9074 with a CVSSv4 severity score...
Apple has released urgent security updates to patch a zero-day vulnerability actively exploited in the wild, warning...
A newly disclosed security vulnerability in Plesk Obsidian, a widely used web hosting control panel, has been...