Atlassian: Rovo Assistant Security Fix
Atlassian is the vendor of the Rovo assistant, which was subject to a one-click attack (RovoBlast) disclosed by Varonis. Atlassian fixed the…
Atlassian is the vendor of the Rovo assistant, which was subject to a one-click attack (RovoBlast) disclosed by Varonis. Atlassian fixed the…
EmeritOSS is a concept introduced in the article as a 'retirement home' for open source projects whose maintainers are no longer able…
Cisco Secure Firewall Management Center (FMC) is a centralized management platform for Cisco firewall appliances, offering policy management and threat monitoring.
Vercel patched authorization bypass vulnerabilities in the Codex and OpenCode harness packages, removing the process-path fallback and requiring exact one-time authorizations for…
Google's Agent Development Kit for Python had two vulnerabilities fixed in version 2.5.0: continuation forgery and resumable-mode bypass.
Oracle Database was the target of an attack where attackers used SQL injection to load Java code into the database, achieving code…
Semgrep is a static analysis security tool that documented similar Claude Code and VS Code hooks in an April compromise of the…
A cloud-based email and collaboration security service that provides mail-flow inspection and threat protection for Microsoft 365 environments.
Aikido is a security platform that reported at least 868 packages affected by the npm worm and linked the campaign to the…
Gitea, a popular open-source Git hosting platform, released version 1.27.1 to address CVE-2026-60004, a critical remote code execution vulnerability. The flaw could…