Adobe has released security updates addressing multiple critical vulnerabilities in ColdFusion, Commerce, and Campaign Classic. The most severe include three CVSS 10.0…
A CVSS 10.0 operating system command injection vulnerability in Adobe ColdFusion that could allow arbitrary code execution. Fixed in versions 2025.0.12 and…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical command injection vulnerability affecting Progress Kemp LoadMaster to its Known…
active exploitationBOD 26-04CISA KEVcommand injection
Security researchers at Novee Security have uncovered critical vulnerabilities in AI coding agents from Anthropic, Google, and OpenAI. The flaws allow an…
CVE-2026-12537 is a critical OS command injection vulnerability in Google's Gemini CLI container launcher. It allows an unprivileged attacker to execute arbitrary…
CVE-2026-20200 is a high-severity vulnerability in the Cisco Integrated Management Controller (IMC) with a CVSS score of 8.8. It allows an authenticated…
CVE-2026-20288 is a medium-severity vulnerability in the Cisco Integrated Management Controller (IMC) with a CVSS score of 6.5. It allows an authenticated…
LuCI is the default web-based user interface for OpenWrt. An AI-assisted audit by Hacker House identified multiple vulnerabilities in LuCI components, including…