● On the wire
Ubuntu Emacs Important Memory Corruption DoS USN-8835-1 CVE-2026-6861//Ubuntu 26.04 LTS c-ares Important DoS and Code Exec CVE-2026-33630//CVE-2026-85706: GitLab Unauthenticated Arbitrary File Read via the Repository Commits API//Debian libheif Critical Memory Disclosure DoS Advisory DSA-6523-1//Debian WordPress Remote Code Execution and Escalation Flaw DSA-6525-1//Ubuntu 20.04 LTS Kernel Security Advisory USN-8818-3 CVE-2025-10263//Ubuntu Libwebsockets Update USN-8822-1 Critical SSH DoS Threats//Debian rsync Important Local Escalation Info Disclosure Issues DSA-6527-1//Ubuntu 26.04 PyJWT Important SSRF Bypass Denial of Service 8823-1//Debian Trixie Flatpak Important Denial Service CVE-2026-90616 DSA-6524-1//Ubuntu 24.04 Linux Kernel Important Privilege Escalation Flaws USN-8728-3//Ubuntu 26.04 LTS FreeRDP Important Denial of Service Vuln 8836-1//Ubuntu 26.04 LTS Requests Critical File Handling Issue CVE-2026-25645//Ubuntu 26.04 LTS Exim Critical Remote Code Exec Denial of Service 8834-1//Ubuntu 26.04 Erlang Critical Denial of Service Buffer Overflow Vuln 8827-1//Ubuntu Emacs Important Memory Corruption DoS USN-8835-1 CVE-2026-6861//Ubuntu 26.04 LTS c-ares Important DoS and Code Exec CVE-2026-33630//CVE-2026-85706: GitLab Unauthenticated Arbitrary File Read via the Repository Commits API//Debian libheif Critical Memory Disclosure DoS Advisory DSA-6523-1//Debian WordPress Remote Code Execution and Escalation Flaw DSA-6525-1//Ubuntu 20.04 LTS Kernel Security Advisory USN-8818-3 CVE-2025-10263//Ubuntu Libwebsockets Update USN-8822-1 Critical SSH DoS Threats//Debian rsync Important Local Escalation Info Disclosure Issues DSA-6527-1//Ubuntu 26.04 PyJWT Important SSRF Bypass Denial of Service 8823-1//Debian Trixie Flatpak Important Denial Service CVE-2026-90616 DSA-6524-1//Ubuntu 24.04 Linux Kernel Important Privilege Escalation Flaws USN-8728-3//Ubuntu 26.04 LTS FreeRDP Important Denial of Service Vuln 8836-1//Ubuntu 26.04 LTS Requests Critical File Handling Issue CVE-2026-25645//Ubuntu 26.04 LTS Exim Critical Remote Code Exec Denial of Service 8834-1//Ubuntu 26.04 Erlang Critical Denial of Service Buffer Overflow Vuln 8827-1//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news