WebAssembly is a technology platform tracked across 11 threat clusters and 11 intelligence report mentions on ThreatCluster. First observed November 19, 2025; most recent activity July 2, 2026.
Google has issued an emergency update to address a high-severity zero-day vulnerability, CVE-2025-13223, in its Chrome browser. This flaw, linked to the V8 JavaScript engine, allows attackers to execute arbitrary code…
Google has issued an emergency update to address a zero-day vulnerability in Chrome that is actively being exploited. This patch affects approximately 2 billion Chrome users, highlighting the ongoing challenges faced by…
A critical vulnerability (CVE-2026-26956) in the vm2 Node.js sandboxing library enables attackers to escape the sandbox and execute arbitrary code on host systems. This flaw affects vm2 version 3.10.4 and earlier,…
A researcher used Anthropic's Claude Opus to exploit an outdated version of Chrome (138) bundled with Discord, demonstrating the potential for AI to automate exploit development. The exploit was built using known…
A collaboration between Mozilla and AI researchers led to the discovery of 22 vulnerabilities in Firefox, with 14 classified as high-severity. This effort highlights the potential of AI in identifying critical security…
A memory flaw in Firefox, affecting over 180 million users, was present for six months before being discovered. The vulnerability allowed attackers to corrupt memory and execute arbitrary code via malformed WebAssembly…
Two vulnerabilities affecting Mozilla Firefox have been reported, both leading to Remote Code Execution. The vulnerabilities are documented as CVE-2026-2805 and CVE-2026-2801, with the former related to HTML…
On June 5, 2026, multiple Fedora advisories were released addressing low-severity vulnerabilities in the Rust Sequoia certificate store. The updates include the sequoia-wot crate upgraded to version 0.15.2 and the…
Push Security has been awarded the 2026 Pinnacle Award as a Diamond honoree in the Best AI-Powered Threat Detection category. This recognition is for their innovative agentic threat hunting pipeline, which integrates AI…
Mageia 9 has reported several vulnerabilities affecting the Graphics, Audio/Video, and DOM components. Key issues include race conditions and spoofing vulnerabilities in both Thunderbird and Firefox, identified by…