Next.js Critical Security Updates for August 2026
Next.js versions 15.5.24 and 16.3.3 address critical vulnerabilities including a Windows path traversal (CVE-2026-75604) and an AVIF image processing heap overflow. Users…
Next.js versions 15.5.24 and 16.3.3 address critical vulnerabilities including a Windows path traversal (CVE-2026-75604) and an AVIF image processing heap overflow. Users…
The Keycloak project released version 26.7.2 fixing CVE-2026-18963 and CVE-2026-15571, along with other security improvements. Users are urged to upgrade promptly.
macOS 26.4, released on March 24, 2026, includes protections against ClickFix-style attacks, such as a confirmation prompt for Terminal when pasting commands…
The Django Software Foundation released versions 6.0.8 and 5.2.17 to patch four vulnerabilities, including a high-severity GeoDjango file write/RCE issue (CVE-2026-15307) and…
Zimbra 10.1.20 is the latest version that patches nine security vulnerabilities including critical SNMP command injection and multiple XSS flaws.
iOS is Apple's mobile operating system. The article mentions that the Pegasus infections targeted devices running iOS 15.5, and Apple addressed the…
cPanel is a web hosting control panel provider. It recently released a security update addressing multiple vulnerabilities, including a critical SQL injection…
The popular CMS. Versions 4.7 through 7.0 are affected by CVE-2026-65640, allowing Author-level users to achieve RCE via malicious Postscript uploads. Patched…
actions/checkout is the official GitHub action for checking out a repository into the workflow runner. It was updated to block common pwn…