open-source
322 articles with this tag
MEDIUM
INFO
INFO
INFO
MEDIUM
MEDIUM
INFO
INFO
MEDIUM
MEDIUM
LOW
INFO
INFO
INFO
INFO
INFO
INFO
CRITICAL
INFO
INFO
INFO
INFO
HIGH
INFO
INFO
INFO
MEDIUM
INFO
MEDIUM
HIGH
INFO
INFO
LOW
INFO
INFO
MEDIUM
HIGH
INFO
MEDIUM
INFO
CRITICAL
HIGH
INFO
MEDIUM
INFO
INFO
INFO
HIGH
HIGH
INFO
INFO
INFO
LOW
CRITICAL
HIGH
INFO
MEDIUM
INFO
INFO
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
CRITICAL
MEDIUM
HIGH
MEDIUM
INFO
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
INFO
MEDIUM
MEDIUM
INFO
MEDIUM
MEDIUM
INFO
CRITICAL
HIGH
CRITICAL
MEDIUM
INFO
INFO
INFO
MEDIUM
INFO
MEDIUM
MEDIUM
CRITICAL
CRITICAL
CRITICAL
INFO
INFO
MEDIUM
HIGH
How we use /goal to find bugs in Patch the Planet
NVIDIA’s Open Secure AI Alliance Is Missing Some Big Names
Tech giants link hands to praise open AI models after OpenAI - Hugging Face attack
Tech giants form alliance to put open AI in cyber defenders’ hands
Vulnérabilité dans Traefik (27 juillet 2026)
Multiples vulnérabilités dans GLPI (27 juillet 2026)
Nono: Open-source sandbox for AI agents
Microsoft, tech companies throw weight behind spread of open-source AI
Multi-patch vulnerability fixes can leave open source exposed
Snowpick: Open-source ServiceNow exposure scanner
Cisco Launches Low-Cost AI Models for Source Code Security
AI-generated reports push GNOME to shorten its disclosure window
Meet Dusseldorf, Microsoft’s open-source out-of-band security platform
Nearly half of open-source AI projects never reach production
Follow the money, especially in open source
Ledger launches open-source toolkit for secure AI agents
Podcast: Broken Governance, Agentic AI, and the MindStone Agent Exclusive
[Security Blog] Modern Software’s Hidden Cost: Managing Risk in the Open-Source Ecosystem
1999 Called and It Wants It's Exploits Back - PSW #935
Microsoft releases its weird ’90s IRC client as open source
OWASP CVE Lite CLI Graduates to Lab Project Status
What public money does to open-source projects
NPM ecosystem hit with two new supply chain compromises
SingGuard-NSFA: Open-source guardrails for agentic AI
Chatto: Open-source team messenger with privacy at its core
Cynative: Open-source deep research agent
[NEU] [mittel] MISP: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
The open source library holding up your stack might have one maintainer
[NEU] [niedrig] RabbitMQ: Schwachstelle ermöglicht Offenlegung von Informationen
Cybercriminals Plant Malicious AI Agents in Open Source Tool Repositories
Qualys Joins Chainguard Athena: Turning Coalition-Scale Findings Into Validated Action
The state of accessibility in GNOME
Announcing etcd v3.7.0
20 open-source cybersecurity tools to keep your team ready for anything
Most slopcode projects are abandoned and deleted within months of release
Open Source Malware
North Korean Hackers Target Open Source Developers in Supply Chain Attacks
Omnigent: Open-source AI agent framework and meta-harness
New ClamAV security patch closes seven scanner bugs dating back two decades
ReactOS implements very first NT6 system call
[NEU] [hoch] Coolify: Mehrere Schwachstellen
Linux Tech Segment & Vulnerabilities Galore - PSW #933
Aikido Security acquires Root.io to enhance open-source software patching
[NEU] [mittel] Fleet: Schwachstelle ermöglicht Denial of Service
Field reports from Patch the Planet
What the AI patch gap means for enterprise security
GitHub’s new tool helps prevent costly open-source license violations
[NEU] [hoch] LiteLLM: Mehrere Schwachstellen
[NEU] [mittel] Aqua Security Trivy: Schwachstelle ermöglicht Manipulation von Dateien
Aikido Security acquires Root to expand backported fixes for open source vulnerabilities
OpenClaw for iOS: The viral open-source AI agent comes to iPhone and iPad
Deloitte joins IBM and Red Hat's initiative to secure open-source software
New coalition aims to streamline open source bug fixes
[NEU] [hoch] Gitea (act_runner): Schwachstelle ermöglicht Privilegieneskalation
[NEU] [mittel] vim: Mehrere Schwachstellen ermöglichen Codeausführung
DarkMoon: Open-source AI pentesting platform
It's looking like a hot, messy summer for security teams as AI finds countless previously hidden vulns
Open source maintainership in the age of AI
New Initiative Tackles Security for End-of-Life Open Source Software
[NEU] [hoch] PowerDNS: Mehrere Schwachstellen
[NEU] [mittel] OpenCTI: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[NEU] [hoch] Coolify: Mehrere Schwachstellen
[NEU] [mittel] vim: Mehrere Schwachstellen
[NEU] [mittel] Tenable Security Nessus: Mehrere Schwachstellen ermöglichen SQL-Injection
[NEU] [hoch] WSO2 API Manager: Mehrere Schwachstellen
[NEU] [mittel] Znuny: Schwachstelle ermöglicht Cross-Site Scripting
[NEU] [mittel] jq: Schwachstelle ermöglicht Denial of Service
[NEU] [mittel] Aqua Security Trivy: Schwachstelle ermöglicht Denial of Service
Linux Foundation Unveils New Open Source Security Project Akrites
[UPDATE] [kritisch] Flowise: Schwachstelle ermöglicht Codeausführung
[UPDATE] [mittel] Samba: Mehrere Schwachstellen
[UPDATE] [hoch] Flowise (on-premise): Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[UPDATE] [hoch] Flowise: Schwachstelle ermöglicht Manipulation von Dateien
[UPDATE] [UNGEPATCHT] [kritisch] Flowise: Mehrere Schwachstellen
[UPDATE] [kritisch] Flowise: Schwachstelle ermöglicht Codeausführung
Modelplane: Open-source control plane for AI inference
[NEU] [mittel] Snipe-IT: Mehrere Schwachstellen
25-Year-Old Vulnerability Patched in Curl
Best practices for AI in open-source work
[NEU] [mittel] Snipe-IT: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen
Open-source security is posing challenges governments can’t easily solve
Praxen: Open-source AI agent behavior verification
4 vulnerabilities in Dify expose cross-tenant data
Mythos discovers 'Squidbleed,' a memory leak that's gone undetected since Clinton era
[NEU] [hoch] MISP: Mehrere Schwachstellen
[NEU] [mittel] OpenCTI: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
Sniff out stale AI override advice with this open source CLI
OpenAI Launches Full-Scale Effort to Patch Open-Source Bugs as It Takes on Anthropic’s Mythos
Introducing Patch the Planet
[NEU] [mittel] Cacti: Schwachstelle ermöglicht Offenlegung von Informationen
Agent Beacon: Open-source telemetry layer for AI agents
[NEU] [UNGEPATCHT] [mittel] vllm: Schwachstelle ermöglicht Manipulation von Daten
Homebrew tightens tap security, begins work on its interface
[NEU] [hoch] vllm: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[NEU] [hoch] Langflow: Schwachstelle ermöglicht Denial of Service und Offenlegung von Informationen
[NEU] [hoch] Apache Airflow: Schwachstelle ermöglicht Manipulation von Dateien
The Chainguard Athena coalition already shipped 2,000 patches across 500 open source projects
Chainguard, JPMorgan, BNY Team Up to Secure Open Source from AI Threats
[NEU] [mittel] LibreOffice: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff
[NEU] [UNGEPATCHT] [mittel] jq: Schwachstelle ermöglicht nicht spezifizierten Angriff