Aggregator
CVE-2026-28412 | textream up to 1.5.0 DirectorServer WebSocket Server resource consumption (GHSA-qr5p-7x47-qxh9)
CVE-2025-52468 | Chamilo LMS up to 1.11.29 CSV File Parser Last Name/First Name/Username cross site scripting
CVE-2025-52469 | Chamilo LMS up to 1.11.29 AJAX Endpoint behavioral workflow
CVE-2025-52563 | Chamilo LMS up to 1.11.29 add_users_to_session.php page cross site scripting
CVE-2025-52476 | Chamilo LMS up to 1.11.29 admin/user_list.php keyword_active cross site scripting
CVE-2025-52475 | Chamilo LMS up to 1.11.29 admin/user_list.php keyword_inactive cross site scripting
CVE-2025-52470 | Chamilo LMS up to 1.11.29 session_category_add.php Category Name cross site scripting
CVE-2025-52998 | Chamilo LMS up to 1.11.29 deserialization
You’re Optimizing for the Wrong AI Engine. And It’s Costing You Enterprise Deals.
Two cybersecurity companies told me they're optimizing for Perplexity. Their buyer? Enterprise CISOs. The data shows ChatGPT leads at 67% enterprise adoption and 87.4% of AI referral traffic. Only 11% of domains get cited by both ChatGPT and Perplexity. Most B2B companies are optimizing wrong.
The post You’re Optimizing for the Wrong AI Engine. And It’s Costing You Enterprise Deals. appeared first on Security Boulevard.
CVE-2025-52564 | Chamilo LMS up to 1.11.29 help.php Open cross site scripting
CVE-2025-50199 | Chamilo LMS up to 1.11.29 /index.php openid_url server-side request forgery
ИИ сыграл сам с собой в тысячу партий, чтобы объяснить археологам, зачем древним людям был нужен этот камень
CVE-2025-50198 | Chamilo LMS up to 1.11.29 Configuration import.php configuration_file/course_path/home_path deserialization
Dell security advisory (AV26-181)
DuckDuckGo Browser UXSS Flaw in Auto Consent JS Bridge Enables Cross-Origin Code Execution
A critical Universal Cross-Site Scripting (UXSS) vulnerability was recently discovered in the DuckDuckGo Android browser. This flaw allowed untrusted, cross-origin iframes to execute arbitrary JavaScript in the top-level origin, tracked with a high-severity CVSS score of 8.6. The vulnerability was originally detailed in a Medium post by security researcher Dhiraj Mishra. The vulnerability stems from […]
The post DuckDuckGo Browser UXSS Flaw in Auto Consent JS Bridge Enables Cross-Origin Code Execution appeared first on Cyber Security News.