Aggregator
CVE-2025-63703 | parse-ini 1.0.6 index.js prototype pollution
CVE-2026-5788 | Ivanti Endpoint Manager Mobile 12.6.1.1/12.7.0.1/12.8.0.1 access control
CVE-2025-63704 | query-parser-string 1.0.0 Query Parameter prototype pollution
CVE-2026-5787 | Ivanti Endpoint Manager Mobile prior 12.6.1.1/12.7.0.1/12.8.0.1 certificate validation
New Ivanti EPMM 0-Day Vulnerability Actively Exploited in Attacks
Ivanti has issued a critical security advisory for its Endpoint Manager Mobile (EPMM) product, disclosing multiple actively exploited vulnerabilities, including CVE-2026-6973, and urging all on-premises EPMM customers to apply patches immediately. At the time of disclosure, Ivanti confirmed active exploitation of CVE-2026-6973, a vulnerability that requires admin authentication to succeed. The flaws exclusively affect the […]
The post New Ivanti EPMM 0-Day Vulnerability Actively Exploited in Attacks appeared first on Cyber Security News.
CVE-2026-7821 | Ivanti Endpoint Manager Mobile 12.6.1.1/12.7.0.1/12.8.0.1 certificate validation
CVE-2026-6973 | Ivanti Endpoint Manager Mobile 12.6.1.1/12.7.0.1/12.8.0.1 input validation
主板销量暴跌
Akira
You must login to view this content
Akira
You must login to view this content
Akira
You must login to view this content
传粉昆虫与农户健康与收入息息相关
Qilin
You must login to view this content
Qilin
You must login to view this content
What Mozilla learned running an AI security bug hunting pipeline on Firefox
Over the past several months, Mozilla ran an agentic harness powered by Claude Mythos Preview across Firefox’s source code, identifying 271 security bugs that were fixed in Firefox 150, with additional fixes shipped in versions 149.0.2 and 150.0.1. Over 100 people contributed code to get those patches out. The bugs spanned a wide range of subsystems. Among the disclosed reports: a 15-year-old flaw in the HTML <legend> element, a 20-year-old XSLT bug involving reentrant key() … More →
The post What Mozilla learned running an AI security bug hunting pipeline on Firefox appeared first on Help Net Security.
Хакеры стали хитрее, а методички — толще. Вышла новая версия главного справочника по цифровым взломам
在地下_马识途_摘录(3)
CISA Warns of Palo Alto PAN-OS Vulnerability Exploited to Gain Root Access
CISA has issued an urgent warning regarding a critical vulnerability in Palo Alto Networks PAN-OS. Tracked as CVE-2026-0300, this severe security flaw was recently added to CISA’s Known Exploited Vulnerabilities catalog on May 6, 2026. The vulnerability allows unauthenticated threat actors to execute arbitrary code and gain root privileges on affected firewall appliances, prompting immediate […]
The post CISA Warns of Palo Alto PAN-OS Vulnerability Exploited to Gain Root Access appeared first on Cyber Security News.
SecWiki News 2026-05-07 Review
更多最新文章,请访问SecWiki