Posts of last 24 hours
A vulnerability described as critical has been identified in sparklemotion nokogiri up to 1.19.3. The affected element is an unknown function. The manipulation results in use after free.
This vulnerability is identified as CVE-2026-57236. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.
https://vuldb.com/vuln/373897
A vulnerability, which was classified as critical, has been found in sparklemotion nokogiri up to 1.19.3. This impacts the function Nokogiri::XML::Document#root= of the component Garbage Collection Handler. Performing a manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-57436. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/373900
A vulnerability marked as problematic has been reported in sparklemotion nokogiri up to 1.19.3. Impacted is the function wrapper. The manipulation leads to null pointer dereference.
This vulnerability is referenced as CVE-2026-57434. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/373896
A vulnerability classified as critical has been found in sparklemotion nokogiri up to 1.19.3. The impacted element is the function Nokogiri::XML::Attr. This manipulation causes use after free.
This vulnerability is tracked as CVE-2026-57435. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/373898
A vulnerability classified as critical was found in sparklemotion nokogiri up to 1.19.3. This affects the function Nokogiri::XML::XPathContext of the component Garbage Collection Handler. Such manipulation leads to use after free.
This vulnerability is listed as CVE-2026-57437. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
https://vuldb.com/vuln/373899
A vulnerability has been found in sparklemotion nokogiri up to 1.19.3 and classified as problematic. Affected by this vulnerability is the function Nokogiri::XML::Schema. The manipulation leads to improper handling of case sensitivity.
This vulnerability is documented as CVE-2026-57234. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
https://vuldb.com/vuln/373902
A vulnerability, which was classified as critical, was found in sparklemotion nokogiri up to 1.19.3. Affected is an unknown function. Executing a manipulation can lead to out-of-bounds read.
This vulnerability is registered as CVE-2026-57235. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
https://vuldb.com/vuln/373901
A vulnerability categorized as critical has been discovered in sparklemotion nokogiri up to 1.19.3. This affects the function Nokogiri::XML::Node. The manipulation results in use after free.
This vulnerability is known as CVE-2026-57438. Attacking locally is a requirement. No exploit is available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/373921
This week was a reminder that attackers do not always need big tricks. One small mistake, one old access path, one missed patch, and suddenly the door is open.
The noise is not all noise, either. Forums are talking, researchers are finding easy cracks, and defenders have more cleanup waiting.
Here’s the full Monday recap.
⚡ Threat of the Week
New DirtyClone Linux Kernel Flaw Lets Local
https://thehackernews.com/2026/06/weekly-recap-linux-kernel-flaws-ai.html
A vulnerability classified as critical has been found in Linux Kernel up to 7.0.9. Affected is the function __audit_log_capset of the component audit. Performing a manipulation results in privilege escalation.
This vulnerability was named CVE-2026-53287. The attack needs to be approached within the local network. There is no available exploit.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/374374