Menu

Latest articles

LiteLLM Key Reuse Lets Internal Users Forge Admin Tokens
LiteLLM has patched a privilege-escalation flaw that can let an authenticated internal user forge an administrative session and reach command-execution [...]
Apache HTTP Server Vulnerability Update Fixes Code Execution and Memory Flaws
Apache released HTTP Server 2.4.69 on October 1, 2026, to fix security faults ranging from unwanted code execution to mishandled web responses.
Apache APISIX Vulnerabilities Let Attackers Impersonate Users and Bypass Protected Routes
Apache detailed two Apache APISIX vulnerabilities in notices issued on October 1, 2026.
Apache APISIX Denial of Service Flaw Can Disrupt Web Traffic
Apache disclosed CVE-2026-94250 on October 1, 2026, warning that public access to a batch-request endpoint can let an attacker exhaust a gateway [...]
Apache Camel Vulnerability Can Expose Files and Internal Services
Apache’s September 30, 2026 advisory, CVE-2026-88789, warns that an XML document can make an affected Camel Quarkus application read files or contact [...]
Fedora 45 nanosvg Denial of Service Fix CVE-2026-88367 Advisory
Fedora 45 Prometheus Update 3.15.0 2026-0ed67903d8 Security Advisory
Fedora 45 Lemonldap-ng Important Access Control Issues CVE-2026-92288
Fedora 45 Assimp Serious Buffer Overflow DoS Vulnerabilities Report 2026
Fedora 43 Xen Important Memory Leak and DoS Threats XSA-509 CVE-2026-62437
Fedora 43 WordPress 6.9.9 Security Advisory RCE CVE-2026-87902
Fedora 43 Firefox Update 157.0 Security Advisory 2026-08d4e87b00
Fedora 43 Fix for Docker-Distribution Denial Of Service CVE-2026-41178
Fedora 43 Erlang Important CVE Fixes CVE-2026-65634 2026-68956 2026-89422
Fedora 43 cockpit-machines Local Attack Disclosure CVE-2026-92768 Details
Fedora 43 cockpit-files Important Symlink Race Threat Fix 2026-a643ae21d6
Fedora 43 OpenVPN Update 2.6.23 Advisory 2026-d2c4c4794c
Fedora 43 Fetchmail Update CVE-2026-94184 Security Advisory
Fedora 43 hplip Critical Remote Code Execution Fixes 2026-59a4f90bc0
Fedora 43 BuildStream Critical Symlink Escape CVE-2026-82331
Fedora 43 Unbound Medium Heap Overflow RCE Vuln 2026-41f949afc4
Fedora 44 Firefox Update Information Vuln 2026-913130e4f5
Fedora 44 libX11 Critical Heap Overflow CVE-2026-88806 Advisory
Fedora 44 OpenSSL 3.5.9 Update Advisory FEDORA-2026-12f3f3d569
Fedora 44 docker-distribution Severe Denial of Service CVE-2026-41178
Fedora 44 Erlang Important Backported Fixes CVE-2026-65634, 68956, 89422
Fedora 44 cockpit-machines Important Data Exposure Fix 2026-57e39fc2fa
Fedora 44 Cockpit-Files CVE-2026-91202-91205 Security Advisory
Fedora 44 hplip Security Flaw Remote Code Execution Privilege Escalation
Fedora 44 Fetchmail Update CVE-2026-94184 Remote Code Issue 2026-ffdc059b16
Fedora WordPress Critical Path Traversal RCE Vuln 2026-7f9c69a63c
Fedora Buildstream 2.8.1 Moderate Tar Symlink Escape Vulnerability Warning
Fedora 44 WeasyPrint Update CVE-2026-55073 Critical SSRF Fix
Fedora 44 python-cssselect2 CVE-2026-55073 Fix for SSRF Vulnerability
Fedora 44 python-httpx2 Important Denial of Service Security Fix Released
Fedora 44 Xen Important Memory Leak DoS CVE-2026-62437 CVE-2026-79602
Fedora 45 Firefox Update Advisory FEDORA-2026-06aa513df8
Fedora 45 xdg-dbus-proxy Important Message Filtering Bypass 2026-f10257ca80
Fedora 45 Zypper Important Code Execution Risk CVE-2026-84975
Fedora 45 yelp-tools Arbitrary Code Execution Fix 2026-91259c13b9
Fedora 45 Zabbix Important Arbitrary Code Execution Fix CVE-2026-84975
Fedora 45 Yelp Critical Fix for Code Execution CVE-2026-84975
DSA-6542-1 ruby-rack-session – security update
DSA-6541-1 wireshark – security update
ShinyHunters Suspect “Rey” Detained in Jordan, Reportedly Helping FBI
DSA-6534-2 webkit2gtk – regression update
Debian LTS FreeCAD Critical Code Exec Remote Request DLA-4815-1
Rocky Linux 9 RLSA-2026-74457 Ghostscript Heap Overflow CVE-2026-39919
Rocky Linux 9 libvirt Important Buffer Overflow Fix CVE-2026-18917
Rocky Linux 9 Kernel Moderate Bug Fix and Security Advisory RLSA-2026-74438
openSUSE Leap 16.0 rustup Important Code Execution Issues Vuln 2026-22016-1
openSUSE Leap 16.0 Jline3 Moderate Buffer Overflow SSH Threat 2026-22009-1
openSUSE Tumbleweed Gnumeric Moderate Fix CVE-2026-97222
openSUSE Tumbleweed Firefox-ESR Moderate Update Advisory 2026-11917-1
openSUSE Tumbleweed bind 9.20.29-1.1 Moderate Security Issues 2026-11916-1
openSUSE binaryen Moderate Security Notice 2026-11915-1
openSUSE Tumbleweed libwireshark Moderate Security Threat Update 2026-11912
openSUSE xdg-dbus-proxy Moderate Vulnerability Fix 2026-11913-1
openSUSE amazon-ecs-init Moderate Security Issues Fixed 2026-11914-1
Anthropic’s super bug-hunting model Mythos is hardcore good at math, as latest vuln under attack shows
The second Anthropic-linked vulnerability known to have been exploited in the wild saw initial activity from an IP address in China targeting vulnerable [...]
Dutch Institute for Vulnerability Disclosure Breached via Zammad 0-Days
What enterprises need to know about the software they depend on
Knowing an application contains open source components is not the same as understanding the software and communities behind them.For many organizations, [...]
What enterprises need to know about the Cyber Resilience Act and software supply chain risk
In part 1 of this series, we examined why enterprises need more than an inventory of the open source components in their software. Understanding where [...]
Debian Redis High Severity Denial of Service Code Execution DSA-6538-1
Rocky Linux 9 libpcap Important Memory Access Threat CVE-2026-0799
Rocky Linux gvfs Security Notice Important Buffer Overflow and Local Root
Debian LTS firefox-esr Important Code Execution Risks DLA-4814-1
Ubuntu 26.04 Linux Kernel Security Advisory USN-8816-4 Released Today
Ubuntu Linux Kernel Critical Network Issues Advisory USN-8851-2
Ubuntu 22.04 LTS Linux Kernel Critical Memory Protection Issues USN-8818-6
Ubuntu Linux Kernel Update Security Advisory USN-8864-1 CVE-2025-38724
Debian open-iscsi Significant ICMP Vulnerabilities Resolution DLA-4813-1
Mageia Wireshark Critical Buffer Overflow Loop Issues 2026-0465
Mageia python-urwid Security Issue Revealed CVE-2026-9323 MGASA-2026-0466
Mageia 10 Libgcrypt Critical Marvin Attack CVE-2024-2236
Mageia 10 Python-Tornado Vital Access Management Memory Flaw 2026-0467
N0n ransomware: what you need to know
DSA-6537-1 libpng1.6 – security update
DSA-6536-1 thunderbird – security update
DSA-6535-1 chromium – security update
DSA-6534-1 webkit2gtk – security update
Debian radsecproxy Important Denial of Service Code Issue DSA-6540-1
Debian php-mongodb Severe Injection Denial of Service Problems DSA-6539-1
OpenAI alerts 100+ orgs that its ‘misaligned models’ attempted to break in – or worse
OpenAI’s agents have repeatedly strayed beyond their intended scope. Two separate reports detail the activity, including one from Sam Altman’s [...]
openSUSE openssl-3 Important Six Issues Fix Advisory 2026-4412-1
SUSE openssl-3 Important Fix for Six Vulnerabilities 2026-4412-1
openSUSE openssl-3 Important CVE-2026-35189 DoS Security Patch 2026-4413-1
SUSE OpenSSL-3 Important Updates Fix Critical Memory Issues 2026-4413-1
SUSE openssl-3 Important Security Fix Advisory 2026-4414-1
Rocky Linux 10 RLSA-2026-74442 libpcap Important Memory Access Issue
Rocky Linux Ruby Important Denial of Service Fix RLSA-2026-72785
Rocky Linux 10 Ghostscript Moderate Buffer Overflow RLSA-2026-74464
Rocky Linux gawk Moderate Memory Corruption DoS Vulnern RLSA-2026-73511
Mageia 10 PHP 8.5 Bugfix Advisory Updated for 2026-0145 Release
openSUSE libvlc Moderate CVE-2026-56711 Security Update 2026-11910-1
openSUSE Python313 Django Allauth Moderate Security Update CVE-2026-97764
Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval
A California business owner was arrested on Thursday after being charged with allegedly smuggling Nvidia hardware to China without the proper export [...]
OpenAI’s wandering AI agents earn it a California subpoena
California’s attorney general has subpoenaed OpenAI as the state investigates what happens when the AI lab’s models escape their testing [...]
IBM’s Bob wants to move in: Agent available for on-prem deployment
Bob, IBM’s agentic software development platform is now available to run on premises and in private clouds, sovereign clouds, and air-gapped environments [...]
367,000-Ship Study Finds Global GPS Spoofing, Red Sea Activity Before Grounding