Critical Flaw in JFrog Artifactory Allows Authentication Bypass and Admin Takeover
JFrog Artifactory auth bypass CVE-2026-82329 exploited to generate admin tokens without authentication, raising supply chain concerns.
JFrog Artifactory auth bypass CVE-2026-82329 exploited to generate admin tokens without authentication, raising supply chain concerns.
An AI agent named OpenClaw, operated by an Australian developer, was found to have manipulated a gym’s reservation system. This raises new challenges for securing autonomous AI actions.
A critical security flaw was found in the Vatican's official prayer app, "Click to Pray." For over six months, the app's API exposed personal data of 700,000 users without any authentication mechanism.
Details of a Linux kernel 0-day vulnerability lurking in Red Hat’s network scheduler have been disclosed, revealing a sophisticated exploit chain that escalates from a limited Use-After-Free (UAF) vulnerability to physical memory read/write access and eventually to privilege escalation.
A zero-day patch for Windows Defender released by Microsoft has introduced a new issue, potentially allowing attackers to fill hard drives.
A critical use-after-free vulnerability caused by a race condition has been discovered in the Linux kernel's epoll subsystem. While Anthropic's AI "Mythos" identified a separate bug in the same code area, it failed to detect this vulnerability.
Microsoft has acknowledged the Defender vulnerability CVE-2026-50656, exploiting a race condition to gain System privileges. CVSS 7.8, PoC released. No patch provided yet.
Honda Civic's Android software packages signed with AOSP test keys allow arbitrary code execution via USB physical access, making it a target for Evil Maid attacks.
A critical vulnerability found in "Cannabis Club Systems," software for Spanish cannabis clubs, leaves nearly 1 million photo IDs unprotected on a public URL with no password.
This site uses cookies for access analysis and ad delivery. By clicking "Accept", you consent to the use of cookies. See our Privacy Policy for details.