Aggregator
CVE-2022-31114 | Laravel-Backpack CRUD up to 4.0.62/4.1.68/5.0.12 getMessage cross site scripting (EUVD-2022-55999)
CVE-2026-42320 | glpi-project glpi up to 10.0.24/11.0.6 GLPI_DOC_DIR authorization
CVE-2026-42318 | glpi-project glpi up to 10.0.24/11.0.6 Software Package authorization
CVE-2026-42317 | glpi-project glpi up to 10.0.24/11.0.6 authorization
CVE-2026-3276 | Python CPython Unicode unicodedata.normalize algorithmic complexity
CVE-2026-37462 | gobgp 4.3.0 BGP /bgp/bgp.go BGPUpdate.DecodeFromBytes integer underflow
CVE-2026-36576 | openlabs docker-wkhtmltopdf-aas POST Request app.py os command injection
CVE-2026-10783 | gradio-app gradio 6.14.0 Audio Cache Key save_audio_to_cache weak hash (Issue 13395 / ID 13394)
CVE-2026-10616 | nextlevelbuilder GoClaw up to 3.11.3 Team Task Completion team_tasks_lifecycle.go TeamTasksTool.executeComplete authorization (Issue 1133 / EUVD-2026-34002)
CVE-2026-35049 | wireapp wire-ios up to 4.15.x infinite loop (GHSA-v6wg-c7qc-x66g / EUVD-2026-34008)
Submit #831451: gradio-app gradio 6.14.0 Cache Poisoning [Accepted]
梅涅劳斯定理(Menelaus)
CVE-2026-10777 | ealpha072 Student-Management-System up to 01451bd7a2f58cdda07bd0b86e3967582e3ecd08 Administrative Backend admin/config.php improper authentication (EUVD-2026-34186)
青春与长寿之间的基因权衡
Невидимый, вездесущий, всюду за вами: так Qualcomm описала ИИ-агента, который придёт на смену смартфону
SecWiki News 2026-06-03 Review
更多最新文章,请访问SecWiki
Hackers Use Fake Purchase Orders to Deploy JS.MonoGlyphRAT Targeting US Enterprises
A stealthy new threat is quietly making its way through US businesses, and most traditional security tools are completely missing it. Researchers have uncovered a previously unknown piece of malware that disguises itself as an everyday business document — a purchase order, a quote, or a request for proposal. Once an unsuspecting employee opens the […]
The post Hackers Use Fake Purchase Orders to Deploy JS.MonoGlyphRAT Targeting US Enterprises appeared first on Cyber Security News.
Submit #831445: ealpha072 Student-Management-System 1.0 Unauthenticated Access [Accepted]
CISA and Partners Warns of Cyberattacks Targeting U.S.-based Automatic Tank Gauge Systems
A serious wave of cyberattacks is now targeting a piece of infrastructure that most people never think about. Automatic Tank Gauge systems, commonly known as ATG systems, are used across the United States to remotely monitor fuel levels, liquid volumes, temperatures, and potential leaks in storage tanks. These systems sit quietly in the background, keeping […]
The post CISA and Partners Warns of Cyberattacks Targeting U.S.-based Automatic Tank Gauge Systems appeared first on Cyber Security News.