security-flaw
165 articles with this tag
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
HIGH
AD Rights Management Service (Part 2): Extraction, Offline Decryption, and the Unrotatable Key
GitLab Vulnerability Exploited One Day After Disclosure
[UPDATE] [hoch] Apache Portable Runtime (APR): Mehrere Schwachstellen
[NEU] [hoch] Red Hat Enterprise Linux (postgis, virtuoso-opensource): Mehrere Schwachstellen
[NEU] [hoch] Check Point Security Gateway, Spark Firewall und Security Management: Mehrere Schwachstellen ermöglichen Codeausführung
[NEU] [UNGEPATCHT] [hoch] VLC: Mehrere Schwachstellen
[NEU] [mittel] Dell PowerScale OneFS: Mehrere Schwachstellen
[NEU] [hoch] Netty: Mehrere Schwachstellen
[NEU] [hoch] Apache ActiveMQ Artemis: Mehrere Schwachstellen
How a hole in Lenovo’s login system let hackers walk into 5,000 Dropbox accounts
Multiples vulnérabilités dans Mattermost Server (08 septembre 2026)
Multiples vulnérabilités dans Typo3 (08 septembre 2026)
Authentication bypass in EOL Proxmox VE 7 release
VU#456290: Hugging Face Transformers library writes remote code to disk prior to consent check
LSN-0121-1: Kernel Live Patch Security Notice
USN-8684-1: Perl vulnerabilities
How OpenAI let a mob of LLM agents game a test and ransack Hugging Face
Multiples vulnérabilités dans Traefik (27 août 2026)
Vulnérabilité dans CPython (27 août 2026)
[NEU] [UNGEPATCHT] [mittel] Keycloak: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[NEU] [hoch] Wibu-Systems CodeMeter Runtime: Mehrere Schwachstellen
Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account
Multiples vulnérabilités dans Synacor Zimbra Collaboration (19 août 2026)
Reverse-Lookup Service Exposed Millions of Photos of People’s Faces
Content-Encoding WAF Evasion
[NEU] [mittel] IBM Storage Scale: Mehrere Schwachstellen
[NEU] [mittel] FreeRDP: Mehrere Schwachstellen
[NEU] [hoch] ILIAS: Mehrere Schwachstellen
[NEU] [UNGEPATCHT] [hoch] Flowise: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
Multiples vulnérabilités dans KeyCloak (06 août 2026)
Multiples vulnérabilités dans les produits Wallix (06 août 2026)
Multiples vulnérabilités dans les produits Nextcloud (06 août 2026)
NCSC-2026-0278 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Campaign Classic
Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering
Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database
Escaping Claude Cowork’s local VM sandbox via CVE-2026-46331
Millions of vehicles vulnerable to Bluetooth car theft attacks
Leaking internal headers in Flask Ninja with deserialization
[NEU] [mittel] Netty: Mehrere Schwachstellen
USN-8570-1: Linux kernel vulnerabilities
[NEU] [mittel] Proxmox Virtual Environment: Mehrere Schwachstellen
[NEU] [mittel] Microsoft Edge: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[NEU] [mittel] IBM i: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
CVE-2026-48863 Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service
CVE-2026-15714 Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary string
CVE-2026-15712 Soupclientmessageiohttp2: libsoup3: libsoup: http/2 goaway frame parsing heap buffer over-read via invalid nul-termination assumption
CVE-2026-60082 DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row
CVE-2026-60081 DBI::ProfileData versions before 1.651 for Perl do not limit the path index
CVE-2026-59884 pyasn1 BER/CER/DER decoder denial of service via unbounded long-form tag IDs
CVE-2026-59886 pyasn1: Uncontrolled resource consumption when converting decoded REAL values
VU#725167: node-forge Signature Forgery Vulnerabilities in RSA-PKCS and ED25519 Implementations
[NEU] [hoch] Netty: Mehrere Schwachstellen
Multiples vulnérabilités dans Wireshark (09 juillet 2026)
[NEU] [hoch] n8n: Mehrere Schwachstellen
[NEU] [hoch] rclone: Mehrere Schwachstellen
[NEU] [hoch] GitLab: Mehrere Schwachstellen
USN-8518-1: mailcap vulnerability
Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure
[NEU] [UNGEPATCHT] [mittel] Keycloak: Mehrere Schwachstellen
Citrix Products Multiple Vulnerabilities
Secret Service lax phone security puts leaders at risk, report finds
CVE-2026-3634 Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header
CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames
CVE-2026-5119 Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment
CVE-2026-3633 Libsoup: libsoup: header and http request injection via crlf injection
CVE-2026-3099 Libsoup: libsoup: authentication bypass via digest authentication replay attack
Multiples vulnérabilités dans le noyau Linux de Debian (26 juin 2026)
Multiples vulnérabilités dans les produits IBM (26 juin 2026)
Multiples vulnérabilités dans le noyau Linux de SUSE (26 juin 2026)
Multiples vulnérabilités dans Tenable Nessus (26 juin 2026)
Multiples vulnérabilités dans le noyau Linux de Red Hat (26 juin 2026)
Multiples vulnérabilités dans Asterisk (26 juin 2026)
[UPDATE] [mittel] Red Hat Enterprise Linux: Mehrere Schwachstellen in verschiedenen Komponenten
[UPDATE] [mittel] Red Hat Advanced Cluster Management: Mehrere Schwachstellen
Dialog Claims It Was Hacked. A Misconfigured Website Left Its Members Exposed
Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data
Vulnérabilité dans CPython pour Windows (22 juin 2026)
[NEU] [hoch] LiteLLM: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
Critical Copilot vulnerability allowed hackers to seal 2FA code from users
[NEU] [hoch] Langflow: Mehrere Schwachstellen
[NEU] [mittel] Drupal: Mehrere Schwachstellen
ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances
Multiples vulnérabilités dans Apache HTTP Server (09 juin 2026)
Nightclub Giant RCI Says Data Breach Affects 40,000 Individuals
CVE-2025-13462 tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling
Exclusive: How One Line of Code Put Billions of Microsoft Android App Downloads at Risk
Blind POST SSRF in phpBB 4.0.0-alhpa1 Web Push (CVD with phpBB)
CVE-2026-45494 Microsoft Edge (Chromium-based) Spoofing Vulnerability
[NEU] [mittel] Samsung Exynos: Mehrere Schwachstellen
CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling
Multiples vulnérabilités dans les produits Mattermost (29 mai 2026)
[NEU] [hoch] Synacor Zimbra: Mehrere Schwachstellen
[NEU] [mittel] Kibana: Mehrere Schwachstellen
[NEU] [hoch] Red Hat Enterprise Linux (Flatpak): Mehrere Schwachstellen
[NEU] [UNGEPATCHT] [mittel] Keycloak: Mehrere Schwachstellen
[NEU] [mittel] Mattermost Server und Plugins: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff
USN-8325-1: tgt vulnerability
USN-8322-1: Apache Commons BeanUtils vulnerability
FastAPI-based AI tools exposed to authentication bypass by flaw in Starlette framework