Collected every two hours from specialised publications — each link leads to the original article.
update to 3.7, remove upstreamed patch Upstream ChangeLog: https://raw.githubusercontent.com/tmux/tmux/3.7/CHANGES CHANGES FROM 3.6b TO 3.7 Add floating panes.…
update to 3.7, remove upstreamed patch Upstream ChangeLog: https://raw.githubusercontent.com/tmux/tmux/3.7/CHANGES CHANGES FROM 3.6b TO 3.7 Add floating panes.…
Fixes for multiple CVEs https://github.com/Cisco- Talos/clamav/releases/tag/clamav-1.4.5
Attackers are hiding a data-stealing trojan inside fake exploit code aimed at the people who hunt bugs for a living. The malware, called ChocoPoC, travels in P…
See https://github.com/jupytext/jupytext/releases/tag/v1.19.4 for changes in version 1.19.4. Notable, this update fixes CVE-2026-45736 and CVE-2026-48779.
See https://github.com/jupytext/jupytext/releases/tag/v1.19.4 for changes in version 1.19.4. Notable, this update fixes CVE-2026-45736 and CVE-2026-48779.
Fixes GHSA-r3hx-x5rh-p9vv: via eval() in Elasticsearch Result Deserialization https://github.com/django-haystack/django- haystack/security/advisories/GHSA-r3hx…
The Linux Foundation has officially launched Akrites, a coordinated industry initiative designed to improve how critical open source vulnerabilities are valida…
Update to .NET SDK 8.0.128 and Runtime 8.0.28 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 9.0.118 and Runtime 9.0.17 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 8.0.128 and Runtime 8.0.28 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 9.0.118 and Runtime 9.0.17 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Fixes GHSA-r3hx-x5rh-p9vv: via eval() in Elasticsearch Result Deserialization https://github.com/django-haystack/django- haystack/security/advisories/GHSA-r3hx…
Update to .NET SDK 10.0.109 and Runtime 10.0.9 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main…
Update to .NET SDK 10.0.109 and Runtime 10.0.9 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main…
AI-assisted patches are already showing up across open source. Small GitHub projects, package updates, kernel-adjacent tools, system libraries. It’s not a futu…
Moderate: golang-github-openprinting-ipp-usb security update
Moderate: golang-github-openprinting-ipp-usb security update
New version of frr and grout. I am keeping libyang to version 3 at the moment due to recommendations from https://github.com/FRRouting/frr/blob/master/doc/deve…
New version of frr and grout. I am keeping libyang to version 3 at the moment due to recommendations from https://github.com/FRRouting/frr/blob/master/doc/deve…
Fix editor command injection vulnerability (only affectsversion 2.6.0). (#1432) https://github.com/jonas/tig/issues/1432
Fix editor command injection vulnerability (only affectsversion 2.6.0). (#1432) https://github.com/jonas/tig/issues/1432
The compromise of Nx Console shows how much infrastructure now sits behind a single developer account. GitHub repositories, CI/CD pipelines, container build sy…
Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that's targeting developers using OpenAI Codex through a legitimate-l…