Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote ...
Microsoft says CVE-2026-69836, a CVSS 10.0 Entra ID RCE flaw, has been exploited in the wild but is fully mitigated with no ...
Hackers are exploiting CVE-2026-60004, a critical remote code execution vulnerability affecting the Gitea development ...
The type confusion bug can lead to V8 sandbox escape and control-flow hijacking of the host process. A critical-severity type ...
Microsoft disclosed a critical remote code execution vulnerability affecting its Entra ID cloud identity service.
The type confusion vulnerability allows a guest-to-host sandbox escape which can lead to remote code execution ...
Attackers chain two PaperCut NG and MF flaws for unauthenticated remote code execution, with limited exploitation seen in two ...
Cursor has patched a high-severity Windows vulnerability that allowed malicious Git repositories to execute code, highlighting security risks in AI coding environments.
The two critical vulnerabilities reported by Vercel in the JavaScript framework Next.js allow attackers to execute code.
A vulnerability in UNISOC modem firmware can allow arbitrary code execution with kernel privileges from the modem context, ...
Attackers can exploit several vulnerabilities in Adobe Campaign Classic, Illustrator, and Substance 3D Designer, among others ...
Threat actors are actively exploiting a recently fixed remote code execution vulnerability (CVE-2025-47812) in Wing FTP Server, security researchers have warned. Wing FTP Server is a commercial file ...