● On the wire
Ubuntu libass Security Notice USN-8815-1 Code Execution Denial of Service//Wireshark 4.6.9 Released, (Sun, Sep 27th)//Ubuntu 26.04 OpenStack Swift Important DoS Risk USN-8821-1 CVE-2026-49017//Debian LibreOffice Important Denial of Service CVE-2024-12426 DSA-6512-1//Ubuntu 26.04 LTS Expat Important Denial of Service Threat USN-8813-1//Debian VLC Medium Code Execution Denial of Service Vuln DSA-6515-1//Debian Swift Medium Info Disclosure Risk DSA-6519-1 CVE-2026-97149//Ubuntu 18.04 LTS Linux Kernel Security Fix USN-8819-1 CVE-2025-38724//Debian Node.js Important Denial of Service & Bypass Issues DSA-6517-1//Ubuntu curl USN-8820-1 Important Remote Code Exec Denial of Service//Ubuntu 26.04 Kernel Important Security Issues Fixed USN-8816-1//Debian Ghostscript Security Update Critical Arbitrary Code Exec DSA-6516-1//One URL, Three Different Tricks, (Thu, Sep 24th)//Debian PHP 8.4 Critical Denial of Service Info Disclosure DSA-6514-1//Ubuntu 18.04 LTS Linux Kernel Multiple Security Issues USN-8819-2//Ubuntu libass Security Notice USN-8815-1 Code Execution Denial of Service//Wireshark 4.6.9 Released, (Sun, Sep 27th)//Ubuntu 26.04 OpenStack Swift Important DoS Risk USN-8821-1 CVE-2026-49017//Debian LibreOffice Important Denial of Service CVE-2024-12426 DSA-6512-1//Ubuntu 26.04 LTS Expat Important Denial of Service Threat USN-8813-1//Debian VLC Medium Code Execution Denial of Service Vuln DSA-6515-1//Debian Swift Medium Info Disclosure Risk DSA-6519-1 CVE-2026-97149//Ubuntu 18.04 LTS Linux Kernel Security Fix USN-8819-1 CVE-2025-38724//Debian Node.js Important Denial of Service & Bypass Issues DSA-6517-1//Ubuntu curl USN-8820-1 Important Remote Code Exec Denial of Service//Ubuntu 26.04 Kernel Important Security Issues Fixed USN-8816-1//Debian Ghostscript Security Update Critical Arbitrary Code Exec DSA-6516-1//One URL, Three Different Tricks, (Thu, Sep 24th)//Debian PHP 8.4 Critical Denial of Service Info Disclosure DSA-6514-1//Ubuntu 18.04 LTS Linux Kernel Multiple Security Issues USN-8819-2//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news