● On the wire
Ubuntu Gzip Important Denial Of Service Info Disclosure Vuln 8733-2//Ubuntu 26.04 LTS libgit2 Important Remote Exec Vulnerability CVE-2026-5917//We Speak CVE Podcast — “CVE Numbering Authority (CNA) Scopes”//AI-powered fuzzing with the GitHub Security Lab Taskflow Agent//Ubuntu 18.04 LTS Moodle Important URL Exposure USN-8805-1 CVE-2019-3809//One URL, Three Different Tricks, (Thu, Sep 24th)//HTTP/3 in Burp Suite - it’s time to find a bigger wordlist//Debian xdg-dbus-proxy Notable Alert Bypass Vulnerability CVE-2026-94422//Ubuntu 26.04 XDG Desktop Portal Local Deletion Vulnerability USN-8287-2//Beyond Images: Bringing Rust Brotli to Edge Network Stack//How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail//Advisory 8818-1 Important Memory Protection Issues in Ubuntu 22.04 Kernel//Ubuntu 26.04 Sudo Important Command Bypass Risk CVE-2026-82474 USN-8803-1//Apple macOS CoreWLAN information disclosure vulnerability//Ubuntu 24.04 LTS Kernel Critical Privilege Escalation Flaws USN-8817-1//Ubuntu Gzip Important Denial Of Service Info Disclosure Vuln 8733-2//Ubuntu 26.04 LTS libgit2 Important Remote Exec Vulnerability CVE-2026-5917//We Speak CVE Podcast — “CVE Numbering Authority (CNA) Scopes”//AI-powered fuzzing with the GitHub Security Lab Taskflow Agent//Ubuntu 18.04 LTS Moodle Important URL Exposure USN-8805-1 CVE-2019-3809//One URL, Three Different Tricks, (Thu, Sep 24th)//HTTP/3 in Burp Suite - it’s time to find a bigger wordlist//Debian xdg-dbus-proxy Notable Alert Bypass Vulnerability CVE-2026-94422//Ubuntu 26.04 XDG Desktop Portal Local Deletion Vulnerability USN-8287-2//Beyond Images: Bringing Rust Brotli to Edge Network Stack//How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail//Advisory 8818-1 Important Memory Protection Issues in Ubuntu 22.04 Kernel//Ubuntu 26.04 Sudo Important Command Bypass Risk CVE-2026-82474 USN-8803-1//Apple macOS CoreWLAN information disclosure vulnerability//Ubuntu 24.04 LTS Kernel Critical Privilege Escalation Flaws USN-8817-1//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news