Aggregator
CVE-2026-0559 | MasterStudy LMS Plugin up to 3.7.11 on WordPress Shortcode stm_lms_courses_grid_display cross site scripting
CVE-2026-0693 | Allow HTML in Category Descriptions Plugin up to 1.2.4 on WordPress wp_kses_data cross site scripting
CVE-2026-0736 | Collect.chat Chatbot Plugin up to 2.4.8 on WordPress _inpost_head_script[synth_header_script] cross site scripting
Обновление Ivanti – это когда можно взломать компании по всему миру. Пароли даже не нужны
CVE-2026-27472 | SPIP up to 4.4.8 server-side request forgery (Nessus ID 299648)
CVE-2025-69725 | go-chi 5.2.2 redirect (Nessus ID 299650)
North Korean IT worker scam nets Ukrainian five-year sentence in the U.S.
Critical Jenkins Vulnerability Exposes Build Environments to XSS Attacks
Security Advisory has revealed multiple vulnerabilities in Jenkins Core, including a stored Cross-Site Scripting (XSS) flaw that could expose build environments to severe security risks. The issues, identified as CVE-2026-27099 and CVE-2026-27100, were responsibly disclosed under the Jenkins Bug Bounty Program sponsored by the European Commission. The most critical of the two, tracked as CVE-2026-27099, is a high-severity stored XSS vulnerability that impacts […]
The post Critical Jenkins Vulnerability Exposes Build Environments to XSS Attacks appeared first on Cyber Security News.
特朗普将下令公开外星人和 UFO 相关文件
Dramatic Escalation in Frequency and Power of DDoS Attacks
Ex-Google engineers charged with orchestrating high-tech secrets extraction
A federal grand jury has indicted three Silicon Valley engineers on charges in a scheme to steal trade secrets from Google and other leading technology companies. The indictment charges the three defendants with conspiracy to commit trade secret theft, theft and attempted theft of trade secrets, and obstruction of justice. Each could receive up to 10 years in prison if convicted. Federal prosecutors said the three used their positions to gain access to confidential and … More →
The post Ex-Google engineers charged with orchestrating high-tech secrets extraction appeared first on Help Net Security.