High Severity Description Apostrophe has stored XSS via javascript: URL in Image Widget Link Read more at...
Latest
High Severity Description Apostrophe has a Weak Password Recovery Mechanism for Forgotten Password and Improper Input Validation...
High Severity Description Apostrophe has authenticated SSRF in rich-text widget import via @apostrophecms/area/validate-widget Read more at https://www.tenable.com/cve/CVE-2026-45012
<article data-history-node-id="7703" about="/en/alerts-advisories/cisco-security-advisory-av26-471" class="cccs-threats full clearfix"> <div class="content"> <div class="layout layout–onecol"> <div class="layout__region layout__region–content"> <div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block...
A zero-day exploit circulating online allows people with physical access to a Windows 11 system to bypass...
A newly uncovered malware framework is raising serious alarms across the cybersecurity community. Researchers have identified a...
A widely used JavaScript inter-process communication library has been weaponized again. Socket and Stepsecurity have confirmed that...
OpenAI says two employees’ devices were breached in the recent TanStack supply chain attack that impacted hundreds...
On the first day of Pwn2Own Berlin 2026, security researchers collected $523,000 in cash awards after exploiting...
Cisco has released updates to address a maximum-severity authentication bypass flaw in Catalyst SD-WAN Controller that it...
