On July 11, 2026, multiple malicious versions of the jscrambler npm package were published, exploiting a compromised npm publishing credential. The affected versions (8.14.0, 8.16.0, 8.17.0, 8.18.0, and 8.20.0) included…
Dell PowerProtect Data Domain has been found vulnerable to multiple security issues, affecting its ability to protect data in on-premise and multi-cloud environments. A security advisory highlights vulnerabilities in…
Check Point Research identified critical vulnerabilities in LangGraph, an AI framework with 46.5 million downloads last month. The flaws allow attackers to execute remote code and gain control over affected servers. The…
Dell has released two security updates (DSA-2025-434 and DSA-2025-435) addressing multiple vulnerabilities in PowerFlex Rack and Appliance systems. The updates cover numerous CVEs, including critical vulnerabilities in…
A critical SQL injection vulnerability, designated CVE-2026-69083, has been identified in SiYuan versions prior to v3.7.3. This flaw affects the fullTextSearchAssetContent endpoint, allowing unauthenticated users and…
A security analysis revealed that leaked n8n API keys can lead to the compromise of the N8N_ENCRYPTION_KEY, which is critical for securing stored credentials and session tokens. The research identified three weaknesses…
On May 12, 2026, AI cybersecurity firm Depthfirst announced the launch of the Open Defense Initiative, committing up to $5 million in credits to assist open source projects in identifying and fixing vulnerabilities. The…
Two vulnerabilities in SQLite have been identified, affecting versions 3.29.0 and 3.30.1. CVE-2019-16168 can cause application crashes due to a division by zero error in the query planner, while CVE-2019-19926 involves…
CTM360's research reveals a significant evolution in phishing tactics targeting insurance sectors, where attackers now employ real-time account hijacking methods. In a simulation involving 13.9 million phishing…
Researchers have identified a vulnerability in Microsoft's redesigned Recall feature for Windows 11, which allows attackers to extract decrypted user data, including screenshots and metadata. The flaw is attributed to…