Rocky Linux 9 nodejs Important DOS Security Update RLSA-2026-47058
A critical Node.js security update for Rocky Linux 9 addresses multiple Denial of Service vulnerabilities, with detailed CVSS scores and further information available from…
Technology & Cybersecurity Intelligence
Curated security alerts, vulnerabilities, operating-system updates, cloud and AI news, and vendor advisories from trusted sources.
A critical Node.js security update for Rocky Linux 9 addresses multiple Denial of Service vulnerabilities, with detailed CVSS scores and further information available from…
A critical security update for Node.js on Rocky Linux 9 addresses denial of service vulnerabilities related to brace-expansion and tar handling, necessitating immediate action…
Debian LTS has addressed a stack-based Buffer Overflow vulnerability in libmodbus for version 3.1.6-2.1+deb12u1, urging users to upgrade their packages to mitigate the issue.
Mageia 10 has released updates addressing several CVEs related to kernel version 6.18.39, which resolves bugs and vulnerabilities, enhancing system security and performance.
Ubuntu has released a security update addressing multiple vulnerabilities in the Linux kernel affecting versions 20.04 and 22.04 LTS, requiring users to update and…
Mageia 10 released updated packages addressing CVE-2026-9064, which resolves an unbounded LDAP controls count vulnerability leading to CPU and heap amplification and potential remote…
An update for PostgreSQL on openSUSE Tumbleweed addresses 24 vulnerabilities, enhancing security with fixes for multiple CVEs rated from moderate to high severity, particularly…
Gentoo Linux has issued a high severity advisory for nginx due to multiple vulnerabilities, urging users to upgrade to version 1.31.3-r1 to mitigate risks…
An update for php8-8.5.9-1.1 on openSUSE Tumbleweed fixes four vulnerabilities, with CVSS scores indicating moderate to high severity issues. Users are advised to install…
The latest version of the Brave browser, 1.94, introduces a feature called 'Email Aliases' that allows users to generate disposable email addresses when signing up…
Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting…
Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and data theft, with the ShinyHunters extortion…
Berlin's state government has confirmed that it is the target of an extortion attempt following the August compromise of the city's state administrative network,…
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers…
A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbitrary commands on the hosting server. [...]
Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on susceptible instances, as the company…
A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet Protocol Television) service…
Google on Thursday announced new network security protections in Android 17 to bolster connection privacy, address cellular vulnerabilities, and safeguard the privacy of users'…