China’s UNC6508 hid in North American medical research networks for 2 years, stealing credentials and forwarding emails to Gmail Google’s Threat Intelligence Group published a report this week on UNC6508, a China-linked cyberespionage group that breached North American medical and military research organizations and stayed hidden for more than two years. The earliest confirmed intrusion […]
A vulnerability was found in Nokia SR Linux up to 23.10.7/24.10.5/25.7.1. It has been declared as problematic. This affects an unknown function. Such manipulation leads to Local Privilege Escalation.
This vulnerability is listed as CVE-2025-10262. The attack must be carried out locally. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability was found in Sony Optical Disc Archive Software for Windows up to 5.5.3 on Windows. It has been classified as critical. The impacted element is an unknown function. This manipulation causes incorrect default permissions.
This vulnerability is tracked as CVE-2026-50255. The attack is restricted to local execution. No exploit exists.
A vulnerability was found in rometheme RTMKit Plugin up to 2.0.7 on WordPress and classified as problematic. The affected element is an unknown function of the component AJAX Endpoint. The manipulation of the argument entries_id results in incorrect authorization.
This vulnerability is identified as CVE-2026-5149. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.