Aggregator
CVE-2025-68813 | Linux Kernel up to 6.1.159/6.6.119/6.12.63/6.18.2/6.19-rc1 inetdevice.h __ip_vs_get_out_rt null pointer dereference (Nessus ID 298659)
CVE-2025-68808 | Linux Kernel up to 6.1.159/6.6.119/6.12.63/6.18.2 media vidtv_channel_si_init use after free (Nessus ID 298659)
CVE-2026-2206 | WeKan up to 8.20 Administrative Repair fixDuplicateLists.js FixDuplicateBleed access control (EUVD-2026-5823)
CVE-2026-2208 | WeKan up to 8.20 Rules rules.js RulesBleed authorization (EUVD-2026-5821)
CVE-2026-2218 | D-Link DCS-933L up to 1.14.11 alphapd /setSystemAdmin AdminID command injection
CVE-2026-25806 | Praskla-Technology assessment-placipy 1.0.0 student.routes.ts authorization (GHSA-99gr-8933-3vwj)
CVE-2026-25810 | Praskla-Technology assessment-placipy 1.0.0 student.submission.routes.ts authorization (GHSA-2gqv-gxrj-p8x3)
CVE-2026-25876 | Praskla-Technology assessment-placipy 1.0.0 results.routes.ts authorization (GHSA-w238-w4mg-j357)
CVE-2026-25809 | Praskla-Technology assessment-placipy 1.0.0 Code Evaluation Endpoint improper authorization (GHSA-cc32-rp29-w9x7)
CVE-2026-2173 | code-projects Online Examination System 1.0 login.php username/password sql injection (EUVD-2026-5777)
CVE-2026-2174 | code-projects Contact Management System 1.0 CRUD Endpoint ID improper authentication (EUVD-2026-5776)
CVE-2026-2176 | code-projects Contact Management System 1.0 index.py selecteditem[0] sql injection (EUVD-2026-5774)
«Жалкие три девятки». GitHub не справляется даже с базовым стандартом надежности — а статистику сбоев теперь пытаются скрыть
【已复现】Microsoft Windows 记事本远程代码执行漏洞(CVE-2026-20841)安全风险通告
83% of Ivanti EPMM Exploits Linked to Single IP on Bulletproof Hosting Infrastructure
Palo Alto Networks Firewall Vulnerability Allows an Attacker to Force Firewalls into a Reboot Loop
A critical denial-of-service (DoS) flaw in Palo Alto Networks’ PAN-OS software could let unauthenticated attackers crash firewalls into endless reboot cycles, potentially crippling enterprise networks. Dubbed CVE-2026-0229, the vulnerability lurks in the Advanced DNS Security (ADNS) feature. An attacker sends a maliciously crafted packet to trigger a system reboot. Repeated exploitation forces the firewall into […]
The post Palo Alto Networks Firewall Vulnerability Allows an Attacker to Force Firewalls into a Reboot Loop appeared first on Cyber Security News.
Сначала — симуляция, потом — блэкаут. Утечка документов раскрыла, как Китай тренирует кибератаки на соседей
When security decisions come too late, and attackers know it
In this Help Net Security, Chris O’Ferrell, CEO at CodeHunter, talks about why malware keeps succeeding, where attackers insert malicious code in the SDLC, and how CI/CD pipelines can become a quiet entry point. He also breaks down the difference between behavioral detection and behavioral intent analysis, and why explainable results matter for security teams. What is the most common reason modern malware succeeds even in organizations with mature EDR and threat intel programs? Modern … More →
The post When security decisions come too late, and attackers know it appeared first on Help Net Security.