● On the wire
Debian libpng Use-After-Free Denial of Service Vulnerability DSA-6537-1//Ubuntu GStreamer Bad Plugins USN-8855-1 reveals DoS vulnerability//Ubuntu 26.04 Django Important Multiple Issues Fixed USN-8848-1//Ubuntu 24.04 22.04 Linux Kernel Critical Memory Bypass Flaw USN-8817-3//Ubuntu ImageMagick Security Advisory USN-8859-1 CVE-2026-56367 DoS//Ubuntu 26.04 LTS libXpm Denial of Service Issue CVE-2026-94287//Ubuntu GVfs Critical Heap Overflow and Privilege Escalation USN-8845-1//Debian Chromium High Remote Code Execution Service Disruption DSA-6535-1//Key Considerations for Ubuntu OpenStack Keystone Auth Issues USN-8854-1//Cisco Advance Notification for Publication of October 7, 2026, Security Advisories//Debian WebKitGTK Important Heap Corruption Privilege Escalation DSA-6534-1//Ubuntu 26.04 Kdenlive Important Command Execution Risk USN-8856-1//Ubuntu 26.04 OpenVPN Critical Denial of Service Threat USN-8852-1//Ubuntu KCoreAddons Important Shell Escape Exec CVE-2026-41526 USN-8857-1//Probabilistic analysis of MTE tagging schemes//Debian libpng Use-After-Free Denial of Service Vulnerability DSA-6537-1//Ubuntu GStreamer Bad Plugins USN-8855-1 reveals DoS vulnerability//Ubuntu 26.04 Django Important Multiple Issues Fixed USN-8848-1//Ubuntu 24.04 22.04 Linux Kernel Critical Memory Bypass Flaw USN-8817-3//Ubuntu ImageMagick Security Advisory USN-8859-1 CVE-2026-56367 DoS//Ubuntu 26.04 LTS libXpm Denial of Service Issue CVE-2026-94287//Ubuntu GVfs Critical Heap Overflow and Privilege Escalation USN-8845-1//Debian Chromium High Remote Code Execution Service Disruption DSA-6535-1//Key Considerations for Ubuntu OpenStack Keystone Auth Issues USN-8854-1//Cisco Advance Notification for Publication of October 7, 2026, Security Advisories//Debian WebKitGTK Important Heap Corruption Privilege Escalation DSA-6534-1//Ubuntu 26.04 Kdenlive Important Command Execution Risk USN-8856-1//Ubuntu 26.04 OpenVPN Critical Denial of Service Threat USN-8852-1//Ubuntu KCoreAddons Important Shell Escape Exec CVE-2026-41526 USN-8857-1//Probabilistic analysis of MTE tagging schemes//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news