Aggregator
CVE-2026-25847 | JetBrains PyCharm up to 2025.3.1 Jupyter Viewer Page cross site scripting
CVE-2026-25846 | JetBrains YouTrack up to 2025.3.104432 Access Token log file (Nessus ID 298388)
CVE-2026-24098 | Apache Airflow up to 3.1.6 UI information disclosure
CVE-2026-22922 | Apache Airflow up to 3.1.6 incorrect privileged apis
CVE-2025-7708 | Atlas k12net up to 09022026 insertion of sensitive information into sent data
Submit #753160: CCExtractor ccextractor c65fb08 Heap-based Buffer Overflow [Duplicate]
CVE-2025-6830 | Xpoda Studio up to 09022026 sql injection
Submit #753159: CCExtractor ccextractor c65fb08 Heap-based Buffer Overflow [Accepted]
Lockbit
You must login to view this content
Space: The Final Frontier for Standards
SpaceX 优先建月球城市而不是火星城市
GEO 创业者:让 AI 帮忙「带货」,重要的不是「破解」大模型,而是教 AI 说真话
Вам письмо от «начальства» (но на самом деле нет). Как бизнес разводят на оплату фейковой доставки
Men charged in FanDuel scheme fueled by thousands of stolen identities
How STORM-2603 is using DFIR tools for evil
BeyondTrust fixes easy-to-exploit pre-auth RCE vulnerability in remote access tools (CVE-2026-1731)
BeyondTrust fixed a critical remote code execution vulnerability (CVE-2026-1731) in its Remote Support (RS) and Privileged Remote Access (PRA) solutions and is urging self-hosted customers to apply the patch as soon a possible. Unlike the Remote Support zero-day (CVE-2024-12356) that was flagged after having been exploited by China-nexus threat actors to breach the US Treasury Department in late 2024, this newest vulnerability was discovered and privately disclosed by a security researcher. About CVE-2026-1731 BeyondTrust Privileged … More →
The post BeyondTrust fixes easy-to-exploit pre-auth RCE vulnerability in remote access tools (CVE-2026-1731) appeared first on Help Net Security.
Roundcube Webmail Vulnerability Let Attackers Track Email Opens
Roundcube, one of the world’s most popular open-source webmail solutions, has released critical security updates to address a privacy bypass vulnerability. The flaw detailed by NULL CATHEDRAL allowed attackers to load remote images and track email opens, even when users had explicitly configured their settings to “Block remote images.” The vulnerability affects Roundcube Webmail versions […]
The post Roundcube Webmail Vulnerability Let Attackers Track Email Opens appeared first on Cyber Security News.
Linux kernel 6.19 reaches stable release, kernel 7.0 work is already underway
Development activity on the Linux kernel continues into early 2026 with the stable release of version 6.19. Kernel maintainers have completed the pre-release cycle and merged the final set of changes into the mainline tree. The release follows the ongoing weekly rhythm of code submission and testing that supports Linux’s widespread use across servers, desktops, and embedded systems. In his announcement, Linus Torvalds noted that there were no significant disruptions in the final week of … More →
The post Linux kernel 6.19 reaches stable release, kernel 7.0 work is already underway appeared first on Help Net Security.
New Node.js Based LTX Stealer Attack Users to Exfiltrate Login Credentials
A sophisticated new malware strain dubbed “LTX Stealer” has emerged in the cyber threat landscape, utilizing a unique Node.js-based architecture to compromise Windows systems. First surfacing in early 2026, this malicious tool is designed to harvest sensitive user information, including login credentials, browser cookies, and cryptocurrency wallet data. The malware distinguishes itself by packaging a […]
The post New Node.js Based LTX Stealer Attack Users to Exfiltrate Login Credentials appeared first on Cyber Security News.