Cursor CLI Vulnerability Fixed
Cursor's CLI coding agent had a flaw allowing untrusted repository code to execute commands before trust prompts, now patched.
Cursor's CLI coding agent had a flaw allowing untrusted repository code to execute commands before trust prompts, now patched.
Semtech is a semiconductor company that confirmed the findings and plans to ship patches written by Qualcomm for affected components.
Apache Tomcat released versions 11.0.21, 10.1.54, and 9.0.117 to fix CVE-2026-34486, a missing encryption vulnerability.
Langflow released version 1.10.1 to address CVE-2026-9198, a critical code injection vulnerability allowing unauthenticated RCE.
A critical remote code execution (RCE) vulnerability, tracked as CVE-2026-60004 with a CVSS score of 9.8, has been patched in Gitea, the…
JetBrains has disclosed a critical vulnerability in on-premise versions of TeamCity, tracked as CVE-2026-63077 with a CVSS score of 9.8. The flaw…
Zimbra has released security updates addressing nine vulnerabilities in Zimbra 10.1.20, including a critical command injection flaw in the Simple Network Management…
Zimbra 10.1.20 is the latest version that patches nine security vulnerabilities including critical SNMP command injection and multiple XSS flaws.
A critical vulnerability in n8n's Enterprise token exchange feature, tracked as CVE-2026-59208, allows attackers to log in as any user by exploiting…
AWS Kiro was patched for a similar vulnerability (CVE-2026-10591) allowing auto-execution of malicious files.