Two high-severity vulnerabilities have been disclosed in widely used Ubiquiti software components—UCRM Client Signup Plugin and the...
XSS
GitLab has issued urgent security updates for its Community Edition (CE) and Enterprise Edition (EE), addressing a...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited...
CERT Polska has sounded the alarm after uncovering a spear phishing campaign that targeted Polish organizations using...
The Jenkins community has issued a high-severity security advisory for a newly disclosed vulnerability in the Gatling...
Broadcom has released important updates addressing three newly disclosed vulnerabilities in VMware NSX, all of which expose...
Splunk Inc., a leader in data analytics and security monitoring, has issued security advisories for two newly...
Hitachi Energy has issued a cybersecurity advisory warning of multiple vulnerabilities impacting its Asset Suite product—a widely...
Argo CD, the widely adopted GitOps continuous delivery tool for Kubernetes, has issued a high-severity security advisory...
In a revelation for web security, researchers from Tsinghua University have exposed two novel, off-path attacks —...
Grafana Labs issued an unscheduled security release—Grafana 12.0.0+security-01—alongside patches for all supported versions, addressing a high-severity cross-site...
Palo Alto Networks has issued a security advisory for a reflected cross-site scripting (XSS) vulnerability, tracked as...
Broadcom has issued a security advisory addressing four newly discovered vulnerabilities in several VMware products, including ESXi,...
Security researcher Navy Titanium have released a technical deep-dive uncovering three severe vulnerabilities affecting pfSense, the popular...
Researchers have disclosed a reflected cross-site scripting (XSS) vulnerability in Label Studio, an open-source data labeling tool...
Jenkins, a popular open-source automation server, is a crucial tool for many development and operations teams. A...
ESET researchers have exposed a covert cyberespionage campaign, dubbed Operation RoundPress, believed to be orchestrated by the...
JPCERT/CC has issued a vulnerability note disclosing multiple security flaws in a-blog cms, a popular content management...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a risk evaluation advisory detailing several high-severity...
GitLab has issued a security advisory urging users to upgrade their self-managed GitLab installations immediately. The advisory...
Grafana Labs has issued security updates for multiple product versions, addressing one high and two medium-severity vulnerabilities...
A security vulnerability has been identified in TP-Link WR841N routers, posing a risk to users. The vulnerability...