Aggregator
CVE-2026-45370 | universal-tool-calling-protocol python-utcp up to 1.1.1 cli_communication_protocol.py _prepare_environment exposure of sensitive information through environmental variables (GHSA-5v57-8rxj-3p2r / EUVD-2026-30477)
CVE-2026-44661 | universal-tool-calling-protocol python-utcp up to 1.1.1 HTTPS Endpoint register_manual server-side request forgery (GHSA-39j6-4867-gg4w / EUVD-2026-30479)
CVE-2025-0044 | AMD Ryzen Al Max+ out-of-bounds (EUVD-2025-209880)
CVE-2026-0427 | AMD Radeon PRO V710 cleanup (EUVD-2026-30501)
CVE-2022-27943 | GNU gcc 11.2 rust-demangle.c demangle_const resource consumption (EUVD-2022-32431)
CVE-2022-27942 | tcpreplay 4.4.1 tcpprep common/get.c parse_mpls heap-based overflow (Issue 719 / EUVD-2022-32430)
CVE-2022-27939 | tcpreplay 4.4.1 tcprewrite common/get.c get_layer4_v6 assertion (Issue 717 / EUVD-2022-32427)
CVE-2022-27940 | tcpreplay 4.4.1 tcprewrite common/get.c get_ipv6_next heap-based overflow (Issue 718 / EUVD-2022-32428)
CVE-2022-27941 | tcpreplay 4.4.1 tcprewrite common/get.c get_l2len_protocol heap-based overflow (Issue 716 / EUVD-2022-32429)
CVE-2026-41552 | DHTMLX PDF Export Module up to 0.7.5 path traversal
CVE-2026-7182 | DHTMLX Diagram up to 1.1.0 Export path traversal
CVE-2026-41553 | DHTMLX PDF Export Module up to 0.7.5 data os command injection
Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and Persistence
VPN, просевший трафик и минус 7 млрд руб. Как новые требования Минцифры ударили по маркетплейсам
Microsoft Edge, Windows 11 and LiteLLM Hacked in Pwn2Own Berlin 2026
Pwn2Own Berlin 2026 opened with a surge of zero-day exploits targeting modern browsers, operating systems, and emerging AI platforms. On Day One alone, security researchers successfully hacked Microsoft Edge, Windows 11, and LiteLLM, earning a total of $523,000 for 24 unique vulnerabilities. The results highlight a growing reality that AI ecosystems and core enterprise technologies […]
The post Microsoft Edge, Windows 11 and LiteLLM Hacked in Pwn2Own Berlin 2026 appeared first on Cyber Security News.
CISA orders all federal agencies to patch exploited bug in Cisco SD-WAN systems by Sunday
Hackers Use OrBit Rootkit to Harvest SSH and Sudo Credentials From Linux Systems
A dangerous rootkit called OrBit has been quietly targeting Linux systems for years, stealing login credentials and hiding deep inside infected machines without triggering most security tools. New research reveals that what was once believed to be a custom-built threat is actually a modified version of a publicly available rootkit, spreading across the globe through […]
The post Hackers Use OrBit Rootkit to Harvest SSH and Sudo Credentials From Linux Systems appeared first on Cyber Security News.