CVE-2026-25592: Microsoft Semantic Kernel Command Injection Vulnerability
A vulnerability in Microsoft's Semantic Kernel agent framework where model output reaching a shell can lead to command injection. Patched by Microsoft.
A vulnerability in Microsoft's Semantic Kernel agent framework where model output reaching a shell can lead to command injection. Patched by Microsoft.
Cybersecurity researchers at Novee Security have identified a critical exploitable pattern in CI/CD workflows, codenamed Cordyceps, that allows unauthenticated attackers to hijack…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding active exploitation of a critical vulnerability in Lantronix EDS5000…