Security Intelligence
Red Hat npm packages backdoored via compromised CI/CD pipeline
Multiple npm packages were compromised in a major supply-chain attack distributing a Shai-Hulud-derived...
Security Intelligence
Multiple npm packages were compromised in a major supply-chain attack distributing a Shai-Hulud-derived...
Security Intelligence
A critical missing authentication flaw in marimo, an open-source Python notebook platform, allows unauthenticated...
Security Intelligence
A critical missing authentication flaw in marimo, an open-source Python notebook platform, allows unauthenticated...
Security Intelligence
A high-severity flaw in 7-Zip (CVE-2026-48095) exposes systems to potential code execution via malicious archive files,...
Security Intelligence
A recently disclosed Apache Tomcat vulnerability, CVE-2026-34486, exposes clustered deployments to remote code...
Security Intelligence
Trend Micro disclosed and patched CVE-2026-34926, an actively exploited directory traversal vulnerability in Apex One,...
Security Intelligence
A critical vulnerability in the LiteSpeed cPanel plugin is actively exploited and allows low-privileged users to gain...
Security Intelligence
Patches for three max-severity UniFi Operating System flaws allowing unauthenticated remote access to network...
Security Intelligence
A critical vulnerability (max CVSS score) in Cisco Secure Workload allows unauthenticated actors to gain Site Admin...
Security Intelligence
Threat actors are escalating the Shai‑Hulud campaign by combining leaked malware code with compromised npm packages,...
Security Intelligence
Microsoft has reported active exploitation of a high-severity vulnerability in on-premises versions of Microsoft...
Security Intelligence
Apache HTTP Server vulnerability CVE‑2026‑23918 exposes unpatched systems to denial of service and, in some...