Aggregator
CVE-2026-43065 | Linux Kernel up to 6.19.10 ext4 ext4_mb_release privilege escalation
CVE-2026-43059 | Linux Kernel up to 6.12.77/6.18.19/6.19.9 Bluetooth mgmt_pending_valid use after free
CVE-2026-27694 | Traccar up to 6.12.x cross site scripting (GHSA-6hfr-mj4m-hrvv)
CVE-2026-27693 | Traccar up to 6.12.x GPX File xml injection (GHSA-32pj-vrqc-x656)
CVE-2026-27644 | Traccar up to 6.12.x CSV File csv injection (GHSA-745r-9qgj-x7m7)
CVE-2026-35192 | djangoproject Django up to 5.2.13/6.0.4 Response Header persistent cookies containing sensitive information
CVE-2026-32689 | phoenixframework phoenix up to 1.7.21/1.8.5 Elixir.Phoenix.Transports.LongPoll allocation of resources (GHSA-628h-q48j-jr6q)
CVE-2026-31196 | ALTICE GR140DG/GR140IG /bin/httpd_clientside system destAddr os command injection
CVE-2026-31195 | ALTICE GR140DG/GR140IG /bin/httpd_clientside system destAddr os command injection
CVE-2026-36355 | Realtek rtl819x Jungle SDK up to 3.4.14B rtl8192cd Wi-Fi Kernel Driver 8192cd_cfg.h _IOCTL_DEBUG_CMD_ access control
CVE-2026-4304 | WeePie Cookie Allow Plugin up to 3.4.11 on WordPress consent sql injection
Слишком низкий для Фейсбука, слишком тощий для Инстаграма. Ваше телосложение скоро станет пропуском в сеть
CVE-2026-29168 | Apache HTTP Server up to 2.4.66 mod_md allocation of resources
Weaver E-cology RCE Flaw Actively Exploited via Exposed Debug API
GnuTLS 3.8.13 Released with Fix for 12 Vulnerabilities Affecting Network Communications
GnuTLS version 3.8.13 has been officially released to patch a dozen security vulnerabilities, including critical flaws affecting secure network communications. The update is highly recommended for all systems using GnuTLS, as it addresses memory corruption, authentication bypasses, and certificate validation errors. Four vulnerabilities discovered in this release are categorized as High severity and require immediate […]
The post GnuTLS 3.8.13 Released with Fix for 12 Vulnerabilities Affecting Network Communications appeared first on Cyber Security News.
Cisco to Acquire Astrix Security to Strengthen AI Agent and Non-Human Identity Security
Cisco has announced its intent to acquire Astrix Security Ltd., an industry leader in Non-Human Identity (NHI) security. This strategic acquisition aims to protect enterprise environments from the expanding attack surface created by the rapid deployment of AI agents. The modern workplace is undergoing a massive shift. Employees are increasingly supported by “agentic AI” automated […]
The post Cisco to Acquire Astrix Security to Strengthen AI Agent and Non-Human Identity Security appeared first on Cyber Security News.
Latvian national sentenced for ransomware attacks run by former Conti leaders
Deniss Zolotarjovs was mostly tasked with putting pressure on the Russia-based crew’s victims, in one case leaking hundreds of children’s health records.
The post Latvian national sentenced for ransomware attacks run by former Conti leaders appeared first on CyberScoop.
Akira
You must login to view this content
Akira
You must login to view this content