Aggregator
CVE-2026-28525 | sbabic swupdate up to 2025.12 mongoose_multipart.c mg_http_multipart_continue_wait_for_chunk integer underflow (EUVD-2026-25307)
CVE-2026-6920 | Google Chrome up to 147.0.7727.101 on Android GPU out-of-bounds (Nessus ID 310041 / WID-SEC-2026-1260)
CVE-2026-6919 | Google Chrome up to 147.0.7727.101 DevTools use after free (Nessus ID 310040 / WID-SEC-2026-1260)
CVE-2026-5426 | Digital Knowledge KnowledgeDeliver prior 20260224 ViewState machineKey hard-coded key (MNDT-2026-0009 / EUVD-2026-23271)
Купил подписку и раздел полкласса. Типичные будни школы в эпоху доступных нейросетей
Mozilla Firefox v151.0.2错误修复版发布 解决使用搜狗输入法时浏览器崩溃
第三方英国签证申请网站泄露了申请人信息
CVE-2026-9207 | Tanium Connect up to 5.26.190/5.29.236/5.37.139 os command injection (TAN-2026-014 / EUVD-2026-32035)
CVE-2026-9156 | Tanium Server prior 7.6.4.2190/7.7.3.8274/7.8.2.1176 release of resource (TAN-2026-013 / EUVD-2026-32034)
CVE-2026-9632 | UTT HiPER 1250GW up to 3.2.7-210907-180535 Web Management Interface /goform/formGroupConfig strcpy Profile stack-based overflow (EUVD-2026-32038)
CVE-2026-7493 | croixhaug Appointment Booking Calendar Plugin up to 1.6.11.5 on WordPress REST API Endpoint /wp-json/ssa/v1/async sleep resource consumption (EUVD-2026-32036)
CVE-2026-49014 | GDAL up to 3.13.0 netCDF Driver netcdfsg.cpp geometry stack-based overflow (Issue 14594 / EUVD-2026-32039)
CVE-2026-6565 | analogwp Style Kits for Elementor Plugin up to 2.5.0 on WordPress save Title cross site scripting (EUVD-2026-32037)
CVE-2026-49017 | OpenStack Swift up to 2.36.1/2.37.1 StreamingInput infinite loop (EUVD-2026-32040)
The Underminr Paradigm: Subverting DNS Filters via CDN Networks
The cybersecurity researchers at ADAMnetworks recently unveiled a novel evasion technique. This method allows malicious data packets to conceal themselves behind trusted domains and Content Delivery Networks (CDNs). Consequently, this development threatens organizations relying...
The post The Underminr Paradigm: Subverting DNS Filters via CDN Networks appeared first on Information Security News.
can someone help or teach me in this situation?
Critical Security Defect Exploits NTFS Processing Architecture Within 7-Zip
Researchers have unearthed a critical security vulnerability within the ubiquitous 7-Zip data compression utility. Opening a meticulously engineered disk image triggers arbitrary remote code execution rather than a standard decompression failure. Crucially, this memory...
The post Critical Security Defect Exploits NTFS Processing Architecture Within 7-Zip appeared first on Information Security News.
RHEL替代品AlmaLinux 10.2版发布 新增Btrfs启动支持以及完善支持i686架构
Remediation of the Critical Privilege Escalation Flaw in LiteSpeed’s cPanel Extension
Perimeter Compromise and Systemic Risk LiteSpeed recently resolved a critical privilege escalation vulnerability within its user-facing cPanel plugin. This severe security defect is tracked globally as CVE-2026-48172. Threat actors are already exploiting this flaw...
The post Remediation of the Critical Privilege Escalation Flaw in LiteSpeed’s cPanel Extension appeared first on Information Security News.