A vulnerability classified as critical has been found in AsfhtgkDavid theshit up to 0.1.x. The impacted element is an unknown function. This manipulation causes improper check for dropped privileges.
This vulnerability is tracked as CVE-2026-21882. The attack is restricted to local execution. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability marked as problematic has been reported in exiv2 up to 0.28.7. Affected by this vulnerability is the function CrwMap::decode0x0805. Performing a manipulation results in out-of-bounds read.
This vulnerability was named CVE-2026-25884. The attack needs to be approached locally. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability was found in Uncanny Automator Plugin up to 7.0.0.3 on WordPress. It has been classified as critical. This vulnerability affects the function download_url. The manipulation leads to server-side request forgery.
This vulnerability is referenced as CVE-2026-2269. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability has been found in gpriday Page Builder by SiteOrigin Plugin up to 2.33.5 on WordPress and classified as critical. Affected by this issue is the function locate_template. Performing a manipulation results in file inclusion.
This vulnerability was named CVE-2026-2448. The attack may be initiated remotely. There is no available exploit.
A vulnerability was found in LatePoint Plugin up to 5.2.7 on WordPress and classified as critical. This affects an unknown part of the component JSON Import. Executing a manipulation can lead to sql injection.
The identification of this vulnerability is CVE-2026-1487. The attack may be launched remotely. There is no exploit available.
Fired Employee Illegally Downloaded 1M Patient Records A former Nuance Communications IT worker has pleaded guilty in a criminal case that alleged he downloaded and stored on a personal hard drive containing 1.2 million patient records of a client, Geisinger Health, two days after he was terminated from his job in 2023.
Experts Warn of DDoS, Ransomware, Proxy And Other Attacks on Health Sector The escalating conflict emerging from the U.S. and Israel military strikes this weekend on Iran, which killed the country's top leadership and crippled its internet connectivity, could erupt into cyberattacks against the healthcare sector by Iranian sympathizers and proxies, experts warn.
The Quantum Clock Is Ticking, But Is the C-Suite Ready? Quantum computing has been hovering just out of reach of the enterprise technology world for years and "it's still right around the corner now," said Nick Kathmann, CISO at LogicGate.
Cyber Insurance Expansion Drives Insurance Industry Consolidation Zurich Insurance Group has agreed to acquire U.K.-based Beazley in an $11 billion deal that would create a $15 billion global insurance powerhouse. The transaction strengthens Zurich's cyber insurance portfolio as demand surges for coverage tied to cyber and technology risks.