Aggregator
CVE-2026-25744 | OpenEMR up to 8.0.0.2 Encounter Vitals API authorization (GHSA-mv9m-j65p-g55f / EUVD-2026-13152)
CVE-2026-32119 | OpenEMR up to 8.0.0.2 Custom Report Page SearchHighlight.js cross site scripting (GHSA-q283-5j7f-r6hp / EUVD-2026-13156)
CVE-2026-3579 | wolfSSL up to 5.8.x on RISC-V __muldi3 information exposure (EUVD-2026-13170 / Nessus ID 303110)
CVE-2026-2646 | wolfSSL up to 5.8.4 Session wolfSSL_d2i_SSL_SESSION heap-based overflow (EUVD-2026-13137 / Nessus ID 303235)
CVE-2026-2645 | wolfSSL up to 5.8.3 CertificateVerify Message security check (EUVD-2026-13135 / Nessus ID 303243)
CVE-2026-3548 | wolfSSL up to 5.8.x SSL CRL Parser out-of-bounds write (EUVD-2026-13150 / Nessus ID 303112)
CVE-2026-3503 | wolfSSL up to 5.8.x Post-Quantum Implementation prng seed (EUVD-2026-13149 / Nessus ID 303109)
CVE-2026-25667 | Microsoft .NET up to 8.0.21/9.0.10 ASP.NET Core Kestrel resource consumption (EUVD-2026-13148)
阿里发布玄铁C950 支持千亿参数大模型
Product showcase: Cross-platform and third-party endpoint patching with Action1
Keeping endpoints patched is one of the more annoying chores in IT operations. Action1 is a cloud-based autonomous endpoint management platform that addresses this challenge head-on, covering third-party apps and OS updates (Windows, macOS, and now Linux) from a single, centralized console. Built as a SaaS solution, it requires no on-premises infrastructure, no VPN tunnels, and no complex firewall rules — endpoints simply reach out to the Action1 cloud service. The result is a platform … More →
The post Product showcase: Cross-platform and third-party endpoint patching with Action1 appeared first on Help Net Security.
Search engine
Даже Safari сдался. Как новый вирус обчистил браузер, который ранее считали защищённым
CVE-2026-4066 | inc2734 Smart Custom Fields Plugin up to 5.0.6 on WordPress relational_posts_search authorization (EUVD-2026-14618)
CVE-2026-4001 | acowebs Woocommerce Custom Product Addons Pro Plugin up to 5.4.1 on WordPress price.php eval Field eval injection (EUVD-2026-14652)
CVE-2026-3533 | artbees Jupiter X Core Plugin up to 4.14.1 on WordPress import_popup_templates unrestricted upload (EUVD-2026-14650)
CVE-2026-4306 | wpjobportal WP Job Portal Plugin up to 2.4.8 on WordPress Parameter radius sql injection (EUVD-2026-14620)
CVE-2026-4613 | SourceCodester E-Commerce Site 1.0 /products.php Search sql injection (EUVD-2026-14658)
India’s Evolving Cyber Threat Landscape: State-Sponsored Attacks, Hacktivism, and What’s Next in 2026
Cybersecurity jobs available right now: March 24, 2026
Application Security Analyst Alignerr | USA | Remote – View job details As an Application Security Analyst, you will review and analyze application security scenarios across code, APIs, and system behavior. You will classify vulnerabilities such as authentication flaws, injection risks, and business logic issues, and evaluate secure coding practices and remediation strategies. You will also help create and validate security-focused reasoning datasets that train AI to accurately assess application risks. Application Security Engineer E.ON … More →
The post Cybersecurity jobs available right now: March 24, 2026 appeared first on Help Net Security.