Aggregator
CVE-2026-24880 | Apache Tomcat up to 11.0.18 HTTP Request request smuggling
CVE-2026-29146 | Apache Tomcat up to 7.0.109/8.5.100/9.0.115/10.1.52/11.0.18 EncryptInterceptor reliance on obfuscation or encryption of security-relevant inputs without integrity checking
CVE-2026-34971 | bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 WebAssembly Config::wasm_memory64 out-of-bounds (GHSA-jhxm-h53p-jm7w)
FCC proposes new rule to further crackdown on illegal robocalls
Healthcare IT solutions provider ChipSoft hit by ransomware attack
CVE-2026-35207 | linuxdeepin dde-control-center/deepin-deepinid-plugin prior 5.9.9/6.1.80 Deepinid Cloud Service certificate validation (GHSA-jf2h-4vqc-3jgc)
CVE-2026-34942 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 array index (GHSA-jxhv-7h78-9775)
CVE-2026-34941 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 out-of-bounds (GHSA-hx6p-xpx3-jvvv)
CVE-2026-39911 | hashgraph guardian up to 3.5.0 Environment Variable exposure of resource
CVE-2026-39315 | unjs unhead up to 2.1.12 safe.ts useHeadSafe incomplete blacklist (GHSA-95h2-gj7x-gx9w)
CVE-2026-5329 | Rapid7 Velociraptor up to 0.74.6/0.75.6/0.76.1 Client Monitoring Message handler input validation
Is Your Liquibase Community Project Ready for the AI Era?
AI is stress-testing database infrastructure. Teams using Liquibase Community face scaling challenges that only Liquibase Secure can solve.
The post Is Your Liquibase Community Project Ready for the AI Era? appeared first on Security Boulevard.
The Gentleman
You must login to view this content
Malicious PDF reveals active Adobe Reader zero-day in the wild
Qualcomm security advisory – April 2026 monthly rollup (AV26-335)
[un]prompted 2026 – Zeal Of The Convert: Taming Shai-Hulud With AI
Author, Creator & Presenter: Rami McCarthy, Principal Security Researcher At Wiz
Our thanks to [un]prompted for publishing their Creators, Authors and Presenter’s outstanding [un]prompted 2026 AI Security Practitioner content on the Organizations' YouTube Channel.
The post [un]prompted 2026 – Zeal Of The Convert: Taming Shai-Hulud With AI appeared first on Security Boulevard.
Modernizing Nexus Repository: Moving Beyond OrientDB
If you're running Sonatype Nexus Repository or Sonatype Nexus Repository Community Edition (formerly known as Nexus Repository OSS) on OrientDB, you're operating on a legacy database architecture that is no longer aligned with current security and platform requirements.
The post Modernizing Nexus Repository: Moving Beyond OrientDB appeared first on Security Boulevard.