Aggregator
CVE-2020-28196 | Oracle Communications Cloud Native Core Policy 1.14.0 denial of service
CVE-2019-19956 | libxml2 up to 2.9.9 parser.c xmlParseBalancedChunkMemoryRecover release of resource (USN-4274-1 / Nessus ID 233181)
CVE-2025-13632 | Google Chrome up to 142.0.7444.175 DevTools sandbox (ID 439058 / EUVD-2025-200317)
CVE-2025-13633 | Google Chrome up to 142.0.7444.175 Digital Credentials use after free (ID 458082 / EUVD-2025-200302)
CVE-2025-13631 | Google Chrome up to 142.0.7444.175 on macOS Google Updater Remote Code Execution (ID 448113 / EUVD-2025-200308)
Lessons from Smart Switching: Rethinking Security and Performance
Joint guidance on principles for the secure integration of artificial intelligence in operational technology
Developers scramble as critical React flaw threatens major apps
The open-source code library is one of the most extensively used application frameworks. Wiz found vulnerable versions in around 39% of cloud environments.
The post Developers scramble as critical React flaw threatens major apps appeared first on CyberScoop.
University of Pennsylvania and University of Phoenix disclose data breaches
CVE-2024-29223 | Intel QuickAssist Technology Software up to 2.1.x uncontrolled search path (intel-sa-01124)
CVE-2025-27415 | Nuxt up to 3.15.x on Vue HTTP acceptance of extraneous untrusted data with trusted data (GHSA-jvhm-gjrh-3h93)
Scaling AI From Copilots to Agentic Workflows
Marketing and Compliance Software Vendor to Banks Breached
Marketing and compliance software maker Marquis Software Solutions, which counts over 700 banks and credit unions as customers, said a ransomware group breached its SonicWall firewall and stole hundreds of thousands of individuals' personal details, including Social Security numbers.
China Skirts US Attempts to Restrict AI Exports
Washington spent years constructing export barriers around America's most sensitive artificial intelligence technology. Witnesses told the U.S. Senate Foreign Relations Committee that China is finding ways to move around them. Where one pathway closes, Beijing opens another.
Codex Bug Let Repo Files Execute Hidden Commands
OpenAI patched a command injection flaw in its Codex CLI tool that let attackers run arbitrary commands on developer machines by hiding malicious configuration files inside code repositories. Hackers could turn ordinary repository files into execution vectors.
India’s New SIM-Binding Rule for WhatsApp, Signal, Telegram and Other Messaging Platforms
India has implemented a mandatory SIM-binding requirement for messaging applications, including WhatsApp, Telegram, Signal, Snapchat, and others. The Department of Telecommunications issued a directive on November 28 requiring all app-based communication services to ensure that users maintain an active SIM card in their devices to access messaging features. Under the new rules, messaging platforms must […]
The post India’s New SIM-Binding Rule for WhatsApp, Signal, Telegram and Other Messaging Platforms appeared first on Cyber Security News.
University of Phoenix says 'numerous individuals' impacted by Oracle EBS breach
Critical RSC Bugs in React and Next.js Allow Unauthenticated Remote Code Execution
Interlock
You must login to view this content