Aggregator
CVE-2026-10200 | Assimp up to 6.0.4 4x4 Matrix Parser glTFCommon.h glTFCommon::CopyValue heap-based overflow (Issue 6612 / EUVD-2026-33522)
CVE-2026-10206 | D-Link DI-8400 up to 16.07.26A1 /dbsrv.asp str stack-based overflow (EUVD-2026-33528)
CVE-2026-10255 | SourceCodester Pharmacy Sales and Inventory System 1.0 ShowForm.php sell_statement access control (EUVD-2026-33634)
CVE-2026-10256 | itsourcecode Content Management System 1.0 /save_comment.php Name sql injection (EUVD-2026-33635)
CVE-2026-10257 | itsourcecode Content Management System 1.0 /admin/update_ss_img.php topic_id sql injection (EUVD-2026-33636)
CVE-2026-48827 | Apache MINA SSHD up to 2.17.0/3.0.0-M2 org.apache.sshd:sshd-git path traversal (EUVD-2026-33606)
CVE-2026-49328 | Apache Fesod up to 2.0.1 UrlImageConverter server-side request forgery (EUVD-2026-33622)
CVE-2026-44825 | Apache Solr up to 9.10.1/10.0.0 BasicAuth /bin/solr hard-coded key (EUVD-2026-33602)
CVE-2026-10258 | itsourcecode Content Management System 1.0 /admin/add_sub_topic.php topic_id sql injection (EUVD-2026-33637)
CVE-2026-45192 | Apache Airflow up to 3.2.1 API Response information disclosure (EUVD-2026-33567 / WID-SEC-2026-1761)
NetQuest expands NetworkLens to detect threats hidden in network management traffic
NetQuest announced an expansion of its NetworkLens enriched dataset portfolio. The new network telemetry datasets deliver detailed traffic characteristics of network management transactions, giving security teams the granular, AI-ready intelligence needed to detect threats hidden within the protocols used to manage critical network infrastructure. The effectiveness of AI-driven threat detection tools — including agentic security platforms — is only as strong as the data powering them. NetworkLens, powered by NetQuest’s Streaming Network Sensor (SNS) platform, … More →
The post NetQuest expands NetworkLens to detect threats hidden in network management traffic appeared first on Help Net Security.
Submit #828822: SourceCodester Pizzafy Ecommerce System 1.0 File Inclusion [Accepted]
Submit #828785: SourceCodester Pizzafy Ecommerce System 1.0 File Inclusion [Accepted]
«Госуслуги» и платежи в режиме блокировки. Путин поручил сохранить доступ к важным сайтам при отключении интернета
Plesk security advisory (AV26-534)
Ivanti security advisory (AV26-533)
RaccoonLine Publishes 2026 dVPN Buyer’s Guide for Privacy-Focused Users
1st June – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 1st June, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Carnival Corporation, a global cruise line operator, has confirmed a data breach affecting nearly 6 million people after attackers used social engineering to compromise an employee account. Exposed information may include names, contact […]
The post 1st June – Threat Intelligence Report appeared first on Check Point Research.
SmartApeSG Campaign Uses ClickFix Scripts to Infect Windows Hosts With RAT Malware
A well-known social engineering campaign called SmartApeSG is back in the spotlight, this time using ClickFix scripts to quietly plant remote access malware on Windows computers. The campaign lures victims through fake verification pages that trick them into running a malicious script without realizing the full damage it causes. What makes this wave especially concerning […]
The post SmartApeSG Campaign Uses ClickFix Scripts to Infect Windows Hosts With RAT Malware appeared first on Cyber Security News.