The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
A security update for Yelp addresses a vulnerability in Rocky Linux 9, allowing host file disclosure from Flatpak applications. CVSS score for the issue is 7.1.
Rocky Linux 9 has received an important security update for libXfont2, addressing vulnerabilities that could lead to heap buffer overflows, with CVSS scores of…
Rocky Linux 9 has an important security update for PipeWire addressing a sandbox escape and arbitrary code execution vulnerability (CVE-2026-5674), with detail…
A significant security update for Firefox on Rocky Linux 9 addresses multiple vulnerabilities, improving the browser's safety and performance by fixing issues …
A critical security update for Node.js on Rocky Linux 9 addresses denial of service vulnerabilities related to brace-expansion and tar handling, necessitating …
A critical Node.js security update for Rocky Linux 9 addresses multiple Denial of Service vulnerabilities, with detailed CVSS scores and further information av…
SUSE has released a security update for google-guest-agent addressing two vulnerabilities that could lead to validation bypass and infinite loops, affecting se…
A security update for Tomcat addressing two vulnerabilities has been released for SUSE Linux Enterprise Server 12 SP5, improving stability and performance acro…
SUSE released a security update addressing CVE-2026-56379 in GraphicsMagick, which involves arbitrary command injection through the SVG decoder, applicable to …
SUSE released a security update for GraphicsMagick addressing CVE-2026-56379, which allows arbitrary command injection through crafted SVG files in multiple SU…
A security update for rsyslog addresses CVE-2026-61548, a vulnerability that can cause stack buffer overflow in crafted RFC 5424 messages, impacting specified …
A security update for rsyslog addresses CVE-2026-61548, a vulnerability causing stack buffer overflow in crafted messages, affecting openSUSE Leap 15.6 and SUS…
SUSE released a security update for openssl-1_0_0 addressing CVE-2026-28390, requiring installation across several affected products, including various version…
SUSE released a security update for openssl-3 addressing a DoS vulnerability affecting multiple SUSE Linux Enterprise products, with installation instructions …
Fedora 43 has updated GoAccess to version 1.11, featuring fixes for vulnerabilities, performance improvements, and enhanced HTML report controls, along with su…
Fedora 43 has released nsd version 4.15.0, improving Prometheus metrics, adjusting logging noise, and addressing multiple bugs, enhancing the performance and s…
Fedora 44 has released BorgBackup 1.4.5, a deduplicating backup tool with compression and authenticated encryption, addressing a bugfix for CVE-2026-62268.
openSUSE has released a security update for warewulf4 addressing a vulnerability in openSUSE Leap 16.0, which includes updates to several related packages and …
openSUSE has released a security update for webkit2gtk3 addressing 23 vulnerabilities, including memory corruption and web content processing issues, affecting…
An update for openSUSE Tumbleweed addresses a vulnerability in the python313-huggingface-hub package, identified as CVE-2026-15717, and is now available for in…
Fedora 43 has updated Nextcloud to version 34.0.2, enhancing file synchronization capabilities while addressing security flaws related to URI host validation i…
An update for the libblkid-devel package in openSUSE Tumbleweed fixes four vulnerabilities with moderate severity, enhancing security for affected users.
openSUSE Tumbleweed has released an update addressing a vulnerability in the warewulf4-4.7.0-4.1 package, enhancing security by mitigating identified risks.
An update for ImageMagick on openSUSE Tumbleweed addresses four security vulnerabilities, enhancing package security and stability for users. Various CVEs are …