The open-source Git service Gogs, known for its simplicity and ease of deployment, disclosures two severe security...
XSS
Two high-severity vulnerabilities have been disclosed in widely used Ubiquiti software componentsβUCRM Client Signup Plugin and the...
GitLab has issued urgent security updates for its Community Edition (CE) and Enterprise Edition (EE), addressing a...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited...
CERT Polska has sounded the alarm after uncovering a spear phishing campaign that targeted Polish organizations using...
The Jenkins community has issued a high-severity security advisory for a newly disclosed vulnerability in the Gatling...
Broadcom has released important updates addressing three newly disclosed vulnerabilities in VMware NSX, all of which expose...
Splunk Inc., a leader in data analytics and security monitoring, has issued security advisories for two newly...
Hitachi Energy has issued a cybersecurity advisory warning of multiple vulnerabilities impacting its Asset Suite productβa widely...
Argo CD, the widely adopted GitOps continuous delivery tool for Kubernetes, has issued a high-severity security advisory...
In a revelation for web security, researchers from Tsinghua University have exposed two novel, off-path attacks β...
Grafana Labs issued an unscheduled security releaseβGrafana 12.0.0+security-01βalongside patches for all supported versions, addressing a high-severity cross-site...
Palo Alto Networks has issued a security advisory for a reflected cross-site scripting (XSS) vulnerability, tracked as...
Broadcom has issued a security advisory addressing four newly discovered vulnerabilities in several VMware products, including ESXi,...
Security researcher Navy Titanium have released a technical deep-dive uncovering three severe vulnerabilities affecting pfSense, the popular...
Researchers have disclosed a reflected cross-site scripting (XSS) vulnerability in Label Studio, an open-source data labeling tool...
Jenkins, a popular open-source automation server, is a crucial tool for many development and operations teams. A...
ESET researchers have exposed a covert cyberespionage campaign, dubbed Operation RoundPress, believed to be orchestrated by the...
JPCERT/CC has issued a vulnerability note disclosing multiple security flaws in a-blog cms, a popular content management...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a risk evaluation advisory detailing several high-severity...