9m ago · 2 min read · GHSA-5RPF-X9JG-8J5P: Denial of Service via Memory Exhaustion in Scriban Vulnerability ID: GHSA-5RPF-X9JG-8J5P CVSS Score: 7.5 Published: 2026-03-19 The Scriban scripting engine is vulnerable to a Denial of Service (DoS) attack due to uncontrolled m...
Join discussion1h ago · 2 min read · CVE-2025-66376: Stored Cross-Site Scripting via CSS @import in Zimbra ZCS Classic UI Vulnerability ID: CVE-2025-66376 CVSS Score: 7.2 Published: 2026-01-05 A critical stored cross-site scripting (XSS) vulnerability exists in the Classic UI of Synac...
Join discussion1h ago · 2 min read · CVE-2026-4428: Improper Check for Certificate Revocation in AWS-LC Vulnerability ID: CVE-2026-4428 CVSS Score: 7.4 Published: 2026-03-19 AWS-LC and AWS-LC-FIPS contain a logic error in the validation of X.509 Certificate Revocation Lists (CRLs). Wh...
Join discussion13h ago · 9 min read · In early 2025, CISA added CVE-2025-3248 to their Known Exploited Vulnerabilities catalog. It was an unauthenticated remote code execution bug in Langflow, the popular open-source AI workflow builder w
Join discussion4h ago · 2 min read · CVE-2026-3029: Arbitrary File Write via Path Traversal in PyMuPDF CLI Vulnerability ID: CVE-2026-3029 CVSS Score: 7.8 Published: 2026-03-19 CVE-2026-3029 is a high-severity path traversal vulnerability in the PyMuPDF library, specifically within th...
Join discussion4h ago · 5 min read · The threat landscape in Latin America continues to evolve with increasing complexity, as evidenced by a recent surge in activity surrounding Horabot. This multi-stage threat bundle—comprising a modula
Join discussion
4h ago · 6 min read · The mobile threat landscape has reached a new level of sophistication with the discovery of "DarkSword," a potent iOS exploit chain capable of achieving full device compromise through a sequence of ze
Join discussion
6h ago · 9 min read · Cursor Just Beat Claude at Coding. Rogue AI Agents Are Hacking Their Own Companies. And Jensen Huang Wants to Pay You in Tokens. The week AI stopped pretending to be a tool and started acting like a coworker — for better and worse. 1. Cursor Trained...
Join discussion
6h ago · 2 min read · CVE-2026-32694: Authorization Bypass via Predictable Identifiers and Confused Deputy in Canonical Juju Vulnerability ID: CVE-2026-32694 CVSS Score: 6.6 Published: 2026-03-19 Canonical Juju versions 3.0.0 through 3.6.18 contain a critical authorizat...
Join discussion