A vulnerability, which was classified as problematic, was found in Dell Secure Connect Gateway. Affected is an unknown function. The manipulation results in permission issues.
This vulnerability was named CVE-2026-80054. The attack needs to be approached locally. There is no available exploit.
You should upgrade the affected component.
A vulnerability, which was classified as very critical, has been found in Dell Secure Connect Gateway. This impacts an unknown function. The manipulation leads to improperly controlled sequential memory allocation.
This vulnerability is uniquely identified as CVE-2026-79643. The attack is possible to be carried out remotely. No exploit exists.
Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins.
The activity, which mainly singles out directors, vice presidents, and other executive staff
A vulnerability, which was classified as very critical, was found in Red Hat Directory Server and Enterprise Linux up to 388. The impacted element is the function sasl_io_start_packet of the component SASL IO Layer. Executing a manipulation can lead to heap-based buffer overflow.
The identification of this vulnerability is CVE-2026-18355. The attack may be launched remotely. There is no exploit available.
A phishing-as-a-service framework called BigBear 2.0 has been used to bypass multi-factor authentication at 258 organizations and steal more than 5,000 Microsoft 365 credentials. [...]
A forum actor posting as Keishell, crediting two others, claims to have gained access to the administrative panel of ryxcars.com, a luxury vehicle marketplace based in Dubai.
A vulnerability classified as problematic was found in GLib. This affects an unknown function of the component Fallback Path. Executing a manipulation can lead to time-of-check time-of-use.
This vulnerability is handled as CVE-2026-86469. It is possible to launch the attack on the local host. There is not any exploit available.
A vulnerability was found in Irfan Skiljan Irfanview 4.53. It has been rated as problematic. This issue affects the function ShowPlugInSaveOptions_W. The manipulation leads to infinite loop.
This vulnerability is traded as CVE-2020-23566. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Upgrading the affected component is advised.
A vulnerability was found in Irfan Skiljan Irfanview 4.53 and classified as problematic. This issue affects the function ShowPlugInSaveOptions_W of the component JPEG 2000 File Handler. Executing a manipulation can lead to divide by zero.
This vulnerability is registered as CVE-2020-23567. It is possible to launch the attack remotely. Furthermore, an exploit is available.
It is suggested to upgrade the affected component.
A vulnerability classified as problematic has been found in GIMP. This vulnerability affects unknown code of the component file-pix. This manipulation causes out-of-bounds read.
This vulnerability is handled as CVE-2026-78475. It is possible to launch the attack on the local host. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in GIMP. This affects an unknown part of the component Seattle FilmWorks Plugin. Executing a manipulation can lead to stack-based buffer overflow.
This vulnerability is tracked as CVE-2026-79902. The attack is restricted to local execution. No exploit exists.
You should upgrade the affected component.
A vulnerability marked as critical has been reported in Node.js up to 22.23.1/24.18.0/26.5.0. This issue affects the function trace_events.createTracing.enable of the component Permission Model. This manipulation causes permission issues.
The identification of this vulnerability is CVE-2026-56847. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability was found in Node.js up to 22.23.1/24.18.0/26.5.0. It has been declared as critical. Impacted is the function nghttp2_session_mem_send of the component HTTP2. Such manipulation leads to use after free.
This vulnerability is traded as CVE-2026-56848. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Node.js up to 22.23.1/24.18.0/26.5.0. It has been classified as critical. The impacted element is an unknown function of the component HTTP Client. The manipulation leads to improper synchronization.
This vulnerability is listed as CVE-2026-58044. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in GIMP and classified as critical. This affects an unknown function of the component TIF File Parser. Such manipulation leads to integer overflow.
This vulnerability is uniquely identified as CVE-2026-18304. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability has been found in GIMP and classified as critical. The impacted element is an unknown function of the component TIF File Parser. This manipulation causes integer overflow.
This vulnerability is handled as CVE-2026-18305. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.