Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

Linux Kernel ETS Scheduler Race Condition Local Privilege Escalation Vulnerability (CVE-2025-71066)

– This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel.

Read More
NewsSecurity Vulnerabilities

Acrobat Reader Improperly Controlled Modification of Object Prototype Attributes vulnerability (CVE-2026-34621)

– Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes (‘Prototype Pollution’) vulnerability.

Read More
NewsSecurity Vulnerabilities

Critical severity vulnerability affecting CPython (CVE-2026-6100)

– Use-after-free (UAF) was possible in the `lzma.LZMADecompressor`, `bz2.BZ2Decompressor`, and `gzip.GzipFile` when a memory allocation fails with a `MemoryError` and the decompression instance is re-used.

Read More
NewsSecurity Vulnerabilities

Apache dolphinscheduler sensitive information disclosure (CVE-2023-48796)

– Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler.

Read More
NewsSecurity Vulnerabilities

Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability (CVE-2026-5495)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Labcenter Electronics Proteus.

Read More
NewsSecurity Vulnerabilities

Linux Kernel Analog Device Driver Improper Validation of Array Index Local Privilege Escalation Vulnerability (CVE-2026-23092)

CVE number = CVE-2026-23092 This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker

Read More
NewsSecurity Vulnerabilities

Mozilla Firefox IonMonkey Switch Statement Optimization Type Confusion Remote Code Execution Vulnerability (CVE-2026-4698)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Mozilla Firefox.

Read More
NewsSecurity Vulnerabilities

Microsoft Visual Studio Code mcp.json Command Injection Remote Code Execution Vulnerability (CVE-2026-21518)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Visual Studio Code.

Read More
NewsSecurity Vulnerabilities

OpenClaw Canvas Path Traversal Information Disclosure Vulnerability (CVE-2026-3689)

CVE number = CVE-2026-3689 This vulnerability allows remote attackers to disclose sensitive information on affected installations of OpenClaw. Authentication is

Read More
NewsSecurity Vulnerabilities

Red Hat Enterprise Linux vmwgfx Driver Integer Overflow Local Privilege Escalation Vulnerability (CVE-2025-40277)

– This vulnerability allows local attackers to escalate privileges on affected installations of Red Hat Enterprise Linux.

Read More