Collected every two hours from specialised publications — each link leads to the original article.
A security update for the Rocky Linux SIG Cloud 8 kernel addresses privilege escalation vulnerabilities, along with several bug fixes and enhancements affectin…
A significant kernel update for Rocky Linux SIG Cloud 8 addresses security vulnerabilities, specifically CVE-2025-54518, alongside bug fixes and enhancements, …
An update for Rocky Linux SIG Cloud 8 addresses a kernel security flaw and includes bug fixes and enhancements, specifically targeting CVE-2026-52923 and KVM a…
An update has been released for the Rocky Linux SIG Cloud 9 kernel, addressing a Denial of Service vulnerability and various bug fixes and enhancements.
An important kernel update for Rocky Linux SIG Cloud 9 addresses multiple security vulnerabilities and includes bug fixes and enhancements, improving system pe…
There are several reasons why Linux has such a good reputation and has become such a good standard across the world. It is the power behind most internet serve…
Two newly fixed storage bugs in Kubernetes showed more than just a problem with path traversal. They found a common security flaw in the cloud: powerful parts …
Ubuntu 26.04 LTS addresses multiple vulnerabilities in the Linux kernel affecting IBM and Oracle Cloud systems, requiring users to update and possibly recompil…
Open a repository in Cursor on Windows and, if a file named git.exe is sitting in the project root, Cursor runs it. No click, no approval dialog, no warning th…
Researchers at Wiz found that a flaw in six popular AI coding assistants lets a booby-trapped code project quietly take control of a developer's computer. The …
The Linux Foundation has officially launched Akrites, a coordinated industry initiative designed to improve how critical open source vulnerabilities are valida…
A high-severity flaw in Amazon Q Developer let a malicious repository run commands and steal a developer's cloud credentials. The path was short: a developer o…
Fortinet, Ivanti, and SAP have released security updates to address multiple critical security vulnerabilities that could result in arbitrary code execution an…
CISA added CVE-2026-11645 to its Known Exploited Vulnerabilities catalog after Google confirmed active exploitation of the flaw. The bug sits in V8, the JavaSc…
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-46299 Google Big Sleep discovered that processing maliciously crafted …
A large-scale malvertising campaign active since January 2026 has been observed targeting U.S.-based individuals searching for tax-related documents to serve r…
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is awar…
Dan Smith discovered that nova, a cloud computing fabric controller, calls qemu-img without format restrictions for resize, which may result in unsafe image re…
Dan Smith discovered that nova, a cloud computing fabric controller, calls qemu-img without format restrictions for resize, which may result in unsafe image re…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, cit…
Google on Friday released security updates for its Chrome browser to address a security flaw that it said has been exploited in the wild.The high-severity vuln…
Cyber threats are no longer coming from just malware or exploits. They’re showing up inside the tools, platforms, and ecosystems organizations use every day. A…
In December 2024, the popular Ultralytics AI library was compromised, installing malicious code that hijacked system resources for cryptocurrency mining. In Au…
Update to cef-143.0.10+g8aed01b + chromium-143.0.7499.146 (rhbz#2423482) High CVE-2025-14765: Use after free in WebGPU High CVE-2025-14766: Out of bounds read …