Aggregator
Red Hat security advisory (AV26-202)
2 weeks 5 days ago
Canadian Centre for Cyber Security
CVE-2026-25673 | Django up to 4.2.28/5.2.11/6.0.2 on Windows NFKC Normalization urllib.parse.urlsplit resource consumption (Nessus ID 300915)
2 weeks 5 days ago
A vulnerability has been found in Django up to 4.2.28/5.2.11/6.0.2 on Windows and classified as problematic. Affected by this issue is the function urllib.parse.urlsplit of the component NFKC Normalization. This manipulation causes resource consumption.
This vulnerability is tracked as CVE-2026-25673. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
vuldb.com
CVE-2026-22891 | Biosig libbiosig 3.9.2 Intan CLP Parser heap-based overflow (TALOS-2026-2361 / Nessus ID 300926)
2 weeks 5 days ago
A vulnerability was found in Biosig libbiosig 3.9.2. It has been declared as critical. This issue affects some unknown processing of the component Intan CLP Parser. Executing a manipulation can lead to heap-based buffer overflow.
This vulnerability is registered as CVE-2026-22891. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
CVE-2026-24352 | PluXml CMS 5.8.21/5.9.0-rc7 Session Identifier session fixiation (Nessus ID 300942)
2 weeks 5 days ago
A vulnerability classified as critical was found in PluXml CMS 5.8.21/5.9.0-rc7. Impacted is an unknown function of the component Session Identifier Handler. Executing a manipulation can lead to session fixiation.
This vulnerability is handled as CVE-2026-24352. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2026-27601 | jashkenas underscore up to 1.13.7 _.flatten allocation of resources (GHSA-qpx9-hpmf-5gmw / Nessus ID 300943)
2 weeks 5 days ago
A vulnerability labeled as problematic has been found in jashkenas underscore up to 1.13.7. Affected by this issue is the function _.flatten. The manipulation results in allocation of resources.
This vulnerability is cataloged as CVE-2026-27601. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.
vuldb.com
Ubuntu security advisory (AV26-201)
2 weeks 5 days ago
Canadian Centre for Cyber Security
【情报】全球将爆发抗议活动-因应袭击伊朗事件
2 weeks 5 days ago
《国际观点》2026年3月9日发文称:美国反战运动在政治混乱中缓慢发展。
【情报简报】20260309中东综合态势
2 weeks 5 days ago
以军在过去24小时内连续对德黑兰、伊斯法罕及伊朗南部发动三波大规模空袭,并成功斩首伊朗最高领袖军事秘书。伊朗已发生领导层更迭,穆吉塔巴·哈梅内伊接任最高领袖。德黑兰对海湾地区实施报复,向北约成员国土耳其发射弹道导弹(已拦截)。
CVE-2022-43303 | d8s-strings 0.1.0 on Python backdoor (EUVD-2022-0380)
2 weeks 5 days ago
A vulnerability has been found in d8s-strings 0.1.0 on Python and classified as critical. This issue affects some unknown processing. The manipulation leads to backdoor.
This vulnerability is documented as CVE-2022-43303. The attack requires being on the local network. There is not any exploit available.
vuldb.com
CVE-2022-44049 | d8s-python 0.1.0 on Python backdoor (Issue 13 / EUVD-2022-0377)
2 weeks 5 days ago
A vulnerability categorized as critical has been discovered in d8s-python 0.1.0 on Python. This impacts an unknown function. Executing a manipulation can lead to backdoor.
This vulnerability is handled as CVE-2022-44049. The attack can only be done within the local network. There is not any exploit available.
vuldb.com
CVE-2022-44051 | d8s-stats 0.1.0 on Python backdoor (Issue 15 / EUVD-2022-0378)
2 weeks 5 days ago
A vulnerability labeled as critical has been found in d8s-stats 0.1.0 on Python. Affected by this vulnerability is an unknown functionality. The manipulation results in backdoor.
This vulnerability was named CVE-2022-44051. The attack needs to be approached within the local network. There is no available exploit.
vuldb.com
CVE-2022-43305 | d8s-python 0.1.0 on Python backdoor (Issue 10 / EUVD-2022-0376)
2 weeks 5 days ago
A vulnerability was found in d8s-python 0.1.0 on Python. It has been classified as critical. The affected element is an unknown function. This manipulation causes backdoor.
This vulnerability appears as CVE-2022-43305. The attacker needs to be present on the local network. There is no available exploit.
vuldb.com
CVE-2022-44052 | d8s-dates 0.1.0 on Python backdoor (Issue 16 / EUVD-2022-0371)
2 weeks 5 days ago
A vulnerability marked as critical has been reported in d8s-dates 0.1.0 on Python. Affected by this issue is some unknown functionality. This manipulation causes backdoor.
The identification of this vulnerability is CVE-2022-44052. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
Iran’s MuddyWater Hackers Target US Firms with New Dindoor Backdoor
2 weeks 5 days ago
Researchers say Iran's MuddyWater hackers targeted US companies and an Israeli software firm’s department in a cyber campaign using the Dindoor malware - All this amid the ongoing conflict.
Waqas
Больше не получится послать всех в «####». В Roblox пришел вежливый ИИ-цензор
2 weeks 5 days ago
Теперь игра сделает из вашего хамства образец приличия.
CVE-2026-2919 | Mozilla Focus up to 148.1 on iOS Trusted Domain ui layer
2 weeks 5 days ago
A vulnerability identified as problematic has been detected in Mozilla Focus up to 148.1 on iOS. Impacted is an unknown function of the component Trusted Domain Handler. Performing a manipulation results in improper restriction of rendered ui layers.
This vulnerability is reported as CVE-2026-2919. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
CVE-2026-3038 | FreeBSD up to 14.4-RC1/p3/p8/p9 rtsock_msg_buffer out-of-bounds write
2 weeks 5 days ago
A vulnerability categorized as critical has been discovered in FreeBSD up to 14.4-RC1/p3/p8/p9. This issue affects the function rtsock_msg_buffer. Such manipulation leads to out-of-bounds write.
This vulnerability is documented as CVE-2026-3038. The attack can be executed remotely. There is not any exploit available.
A patch should be applied to remediate this issue.
vuldb.com
CVE-2026-21736 | Imagination Graphics DDK up to 1.17 RTM/1.18 RTM/23.2 RTM/25.1 RTM insufficient permissions or privileges
2 weeks 5 days ago
A vulnerability was found in Imagination Graphics DDK up to 1.17 RTM/1.18 RTM/23.2 RTM/25.1 RTM. It has been rated as problematic. This vulnerability affects unknown code. This manipulation causes improper handling of insufficient permissions or privileges.
This vulnerability is registered as CVE-2026-21736. The attack needs to be launched locally. No exploit is available.
Upgrading the affected component is advised.
vuldb.com
CVE-2025-15576 | FreeBSD nullfs Mount privileges management
2 weeks 5 days ago
A vulnerability was found in FreeBSD. It has been declared as critical. This affects an unknown part of the component nullfs Mount Handler. The manipulation results in improper privilege management.
This vulnerability is cataloged as CVE-2025-15576. The attack must originate from the local network. There is no exploit available.
Applying a patch is advised to resolve this issue.
vuldb.com