The Commonhaus Foundation launched the Open Source Sustainability Initiative (OSSI) to assist enterprises managing aging open-source projects facing end-of-life (EOL) challenges. HeroDevs, a founding member, will…
A vulnerability in the Angular platform allows attackers to execute malicious code through weaponized SVG animation files. This issue affects users of the Angular framework and poses risks of exploitation if not…
A severe cross-site scripting (XSS) vulnerability, tracked as CVE-2026-27970, has been identified in the Angular framework's internationalization (i18n) system. This high-severity flaw allows attackers to inject…
A critical vulnerability in Angular's HTTP Client has been identified, allowing attackers to intercept Cross-Site Request Forgery (XSRF) tokens. This flaw poses a significant risk to applications using Angular,…
A critical vulnerability, tracked as CVE-2026-27739, has been identified in Angular Server-Side Rendering (SSR). This Server-Side Request Forgery (SSRF) flaw allows attackers to manipulate applications into sending…
Cybersecurity researchers at Arctic Wolf Labs have identified a cyberattack campaign utilizing fake browser update notifications to distribute SocGholish malware. This campaign is linked to Russian threat actors and…
A critical Cross-Site Scripting (XSS) vulnerability, tracked as CVE-2026-22610, has been identified in Angular’s Template Compiler, affecting multiple versions of Angular’s core packages. This flaw enables attackers to…