● On the wire
Dell BOSS-N1 S-MCU Firmware Integrity and Cryptographic Verification Bypass//Ubuntu 24.04 LTS Kernel Critical Privilege Escalation Flaws USN-8817-1//Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127)//AI-powered fuzzing with the GitHub Security Lab Taskflow Agent//Ubuntu 20.04 python-urllib3 Key Sensitive Info Exposure CVE-2026-44431//Ubuntu Gzip Important Denial Of Service Info Disclosure Vuln 8733-2//Debian znc Critical DoS Fix DSA-6511-1 CVE-2026-82373 CVE-2026-82374//HTTP/3 in Burp Suite - it’s time to find a bigger wordlist//How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail//Ubuntu 26.04 LTS NetworkManager Important Info Exposure CVE-2026-19685//Foxit Reader Array resetForm Use-After-Free Vulnerability//Ubuntu ImageMagick USN-8810-1 Multiple Vulnerabilities Denial of Service//Ubuntu 26.04 Kernel Important Security Issues Fixed USN-8816-1//One Tap Too Far: Using Shortcuts to Bypass Chrome for iOS Call Prompts//Debian xdg-dbus-proxy Notable Alert Bypass Vulnerability CVE-2026-94422//Dell BOSS-N1 S-MCU Firmware Integrity and Cryptographic Verification Bypass//Ubuntu 24.04 LTS Kernel Critical Privilege Escalation Flaws USN-8817-1//Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127)//AI-powered fuzzing with the GitHub Security Lab Taskflow Agent//Ubuntu 20.04 python-urllib3 Key Sensitive Info Exposure CVE-2026-44431//Ubuntu Gzip Important Denial Of Service Info Disclosure Vuln 8733-2//Debian znc Critical DoS Fix DSA-6511-1 CVE-2026-82373 CVE-2026-82374//HTTP/3 in Burp Suite - it’s time to find a bigger wordlist//How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail//Ubuntu 26.04 LTS NetworkManager Important Info Exposure CVE-2026-19685//Foxit Reader Array resetForm Use-After-Free Vulnerability//Ubuntu ImageMagick USN-8810-1 Multiple Vulnerabilities Denial of Service//Ubuntu 26.04 Kernel Important Security Issues Fixed USN-8816-1//One Tap Too Far: Using Shortcuts to Bypass Chrome for iOS Call Prompts//Debian xdg-dbus-proxy Notable Alert Bypass Vulnerability CVE-2026-94422//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news