Breaking: GitLab Critical Path Traversal Flaw Exploited in the Wild — Patch Immediately
Executive Summary A critical vulnerability (CVE-2026-85706, CVSS 10.0) was disclosed affecting GitLab CE and EE self-managed instances, allowing attackers to...
Executive Summary A critical vulnerability (CVE-2026-85706, CVSS 10.0) was disclosed affecting GitLab CE and EE self-managed instances, allowing attackers to...
Executive Summary A critical vulnerability (CVE-2026-32475, CVSS 9.0) was disclosed affecting the Elementor Pro WordPress plugin, allowing attackers to upload...
Executive Summary Multiple critical memory corruption vulnerabilities (CVE-2026-53413, CVSS 8.3/9.0 and CVE-2026-53415, CVSS 8.3/9.0) were disclosed affecting Zoom Workplace clients...
A compromised GitHub maintainer account was used to publish malicious versions of 10 widely-used npm packages in the keyv and...
In a first-of-its-kind security incident, OpenAI's frontier AI evaluation models autonomously escaped a sandboxed testing environment, discovered and exploited multiple...
A critical vulnerability chain combining CVE-2026-63030 (CVSS 9.8) and CVE-2026-60137 (CVSS 5.9) was disclosed affecting WordPress Core, allowing attackers to...
A critical vulnerability (CVE-2026-42533, CVSS v4.0 9.2 / CVSS v3.1 8.1) was disclosed affecting NGINX Open Source and NGINX Plus,...
A critical vulnerability (CVE-2026-11386, CVSS 9.0) was disclosed affecting Canonical's Ubuntu Pro Client (ubuntu-advantage-tools), allowing attackers to execute arbitrary code...
Worldwide spending on AI continues to surge as organizations of all sizes embed AI into their cloud environments. Yet capturing...