Aggregator
Submit #808166: 8421bit MiniClaw 0 OS Command Injection [Accepted]
CVE-2026-36341 | Krayin CRM 2.1.5 /admin/activities/create Comment cross site scripting
Жуткая изнанка анестезии. Отключенный мозг тайно предугадывает слова хирургов прямо во время вскрытия черепа
CVE-2025-63703 | parse-ini 1.0.6 index.js prototype pollution
CVE-2026-5788 | Ivanti Endpoint Manager Mobile 12.6.1.1/12.7.0.1/12.8.0.1 access control
CVE-2025-63704 | query-parser-string 1.0.0 Query Parameter prototype pollution
CVE-2026-5787 | Ivanti Endpoint Manager Mobile prior 12.6.1.1/12.7.0.1/12.8.0.1 certificate validation
New Ivanti EPMM 0-Day Vulnerability Actively Exploited in Attacks
Ivanti has issued a critical security advisory for its Endpoint Manager Mobile (EPMM) product, disclosing multiple actively exploited vulnerabilities, including CVE-2026-6973, and urging all on-premises EPMM customers to apply patches immediately. At the time of disclosure, Ivanti confirmed active exploitation of CVE-2026-6973, a vulnerability that requires admin authentication to succeed. The flaws exclusively affect the […]
The post New Ivanti EPMM 0-Day Vulnerability Actively Exploited in Attacks appeared first on Cyber Security News.
CVE-2026-7821 | Ivanti Endpoint Manager Mobile 12.6.1.1/12.7.0.1/12.8.0.1 certificate validation
CVE-2026-6973 | Ivanti Endpoint Manager Mobile 12.6.1.1/12.7.0.1/12.8.0.1 input validation
主板销量暴跌
Akira
You must login to view this content
Akira
You must login to view this content
Akira
You must login to view this content
传粉昆虫与农户健康与收入息息相关
Qilin
You must login to view this content
Qilin
You must login to view this content
What Mozilla learned running an AI security bug hunting pipeline on Firefox
Over the past several months, Mozilla ran an agentic harness powered by Claude Mythos Preview across Firefox’s source code, identifying 271 security bugs that were fixed in Firefox 150, with additional fixes shipped in versions 149.0.2 and 150.0.1. Over 100 people contributed code to get those patches out. The bugs spanned a wide range of subsystems. Among the disclosed reports: a 15-year-old flaw in the HTML <legend> element, a 20-year-old XSLT bug involving reentrant key() … More →
The post What Mozilla learned running an AI security bug hunting pipeline on Firefox appeared first on Help Net Security.