CVE-2025-48827: vBulletin Template Engine Code Execution
CVE-2025-48827 is a previous vBulletin template engine vulnerability that allowed pre-authentication code execution. It was part of a chain with CVE-2025-48828 and…
CVE-2025-48827 is a previous vBulletin template engine vulnerability that allowed pre-authentication code execution. It was part of a chain with CVE-2025-48828 and…
CVE-2025-48828 is a companion vulnerability to CVE-2025-48827, both affecting vBulletin's template engine and enabling pre-authentication code execution. Exploitation attempts were observed shortly…
CVE-2026-6875 is a critical sandbox escape vulnerability in ServiceNow AI Platform with a CVSS score of 9.5. It allows unauthenticated attackers to…
A critical vulnerability in 7-Zip, identified as CVE-2026-14266, allows attackers to execute arbitrary code by tricking users into opening a specially crafted…
CVE-2026-48095 is a heap-write overflow vulnerability in 7-Zip's NTFS handler, fixed in version 26.01. It was detailed by GitHub Security Lab with…
Hugging Face, the world's largest open-source AI model repository, disclosed a security breach perpetrated by an autonomous AI agent system. The attack…
A critical vulnerability in Cursor, an AI-powered code editor, allows arbitrary code execution on Windows when a user opens a cloned repository…
A vulnerability in Git Credential Manager Core where a malicious git.exe in a repository root could be executed during recursive clone, fixed…
Researchers at firmware security firm Binarly have discovered six new vulnerabilities in U-Boot, the widely used bootloader for devices ranging from home…
Security researcher Chinmohan Nayak has detailed a WhatsApp-to-host attack chain leveraging three now-patched vulnerabilities in the OpenClaw personal AI assistant. The flaws,…