Vulnerability

Critical Ivanti Endpoint Manager Bugs Let Hackers Write Files On Target Systems

Ivanti has issued a critical security advisory for its Endpoint Manager (EPM) product, urging users to patch immediately. The update…

5 months ago

Firefox Issues Security Update To Patch Multiple Critical Vulnerabilities Enabling Code Execution

Mozilla has released Firefox 145 on November 11, 2025, along with updates for Extended Support Release versions ESR 140.5 and…

5 months ago

Synology BeeStation 0-Day Lets Remote Attackers Run Arbitrary Code

Synology has patched a critical zero-day vulnerability in its BeeStation OS that enables remote attackers to execute arbitrary code, a…

5 months ago

SAP Security Update Addresses Critical Execution and Injection Vulnerabilities

SAP's November 2025 Security Patch Day, released on November 11, underscores the ongoing need for robust protection in enterprise environments,…

5 months ago

Critical Devolutions Server Bug Lets Attackers Impersonate Users via Pre-MFA Cookie

Devolutions has disclosed a pair of serious security flaws in its Server product, potentially exposing organizations to account impersonation and…

5 months ago

WatchGuard Firebox Security Hole Exposes Devices To SSH Attacks

WatchGuard Firebox appliances, widely used to protect small- to medium-sized business networks, ship with a critical flaw in their default…

5 months ago

OWASP Top 10 2025 Launches With Expanded Risk Categories

The Open Web Application Security Project (OWASP) has unveiled its eighth edition of the Top 10, a cornerstone guide for…

5 months ago

High-Severity npm Vulnerability Threatens AI and NLP Applications

Developers rely on lightweight libraries to handle complex tasks like evaluating mathematical expressions within user inputs. A newly disclosed vulnerability…

6 months ago

LangGraph Deserialization Vulnerability Leads To Remote Code Execution

A high-severity remote code execution (RCE) vulnerability has been disclosed in the LangGraph checkpointing library. Published by Eugene Yurtsev, a…

6 months ago

Elastic Defend For Windows Flaw Allows Local Privilege Escalation

Elastic Security has issued a critical update addressing a high-severity vulnerability in its Elastic Defend endpoint protection software for Windows,…

6 months ago