Aggregator
CVE-2026-45609 | spring-ai-community mcp-security up to 0.1.8 server-side request forgery
CVE-2026-40528 | OpenSC up to 0.26.x Profile src/pkcs15init/profile.c do_key_value key stack-based overflow (WID-SEC-2026-1755)
CVE-2026-40510 | OpenSC up to 0.27.0 PIV src/libopensc/card-piv.c piv_process_history stack-based overflow (WID-SEC-2026-1755)
CVE-2026-48501 | cli up to 2.92.x authorization (GHSA-8xvp-7hj6-mcj9)
CVE-2026-40425 | Danelec MacGregor Voyage Data Recorder G4e up to 5.249 file access (EUVD-2026-33403)
The Cryptographic Shield: Android Combats AI Voice Cloning and Spoofing Scams
Android smartphones possess a novel mechanism to counteract telephone fraud. This capability integrates seamlessly into the native Google Phone application. Furthermore, the technology supports devices running Android 12 or subsequent versions. The system meticulously...
The post The Cryptographic Shield: Android Combats AI Voice Cloning and Spoofing Scams appeared first on Information Security News.
Sovereign Incursion: Unpatched Flaw Threatens Cisco SD-WAN Infrastructure
The Emergence of the Catalyst Threat Cisco recently issued a critical advisory regarding its software-defined networking management architectures. Specifically, adversaries are actively weaponizing a novel vulnerability within the Catalyst SD-WAN Manager platform. Currently, an...
The post Sovereign Incursion: Unpatched Flaw Threatens Cisco SD-WAN Infrastructure appeared first on Information Security News.
The Deflate Collapse: Active Exploitation Threatens SolarWinds Serv-U Infrastructure
Adversaries are actively weaponizing a critical vulnerability within the SolarWinds Serv-U managed file transfer platform. Remarkably, threat actors require neither valid credentials nor administrative privileges to execute the exploit. Instead, a solitary, meticulously constructed...
The post The Deflate Collapse: Active Exploitation Threatens SolarWinds Serv-U Infrastructure appeared first on Information Security News.
CVE-2026-47428
CVE-2026-48567
CVE-2026-47429
CVE-2026-42211
CVE-2022-0492
CVE-2024-21182
The Legacy Phantom: How Demised Internet Explorer Components Fuel Modern Windows Exploits
Internet Explorer has formally faded into technological obsolescence. However, its legacy architecture still compromises modern Windows applications. Recently, a security researcher demonstrated a series of devastating exploit chains. Specifically, these vulnerabilities weaponize the native...
The post The Legacy Phantom: How Demised Internet Explorer Components Fuel Modern Windows Exploits appeared first on Information Security News.