[
News
|
Newsletters
|
Blogs
|
Lists
|
Media
|
Jobs
]
HoneyDB
[
vulnerabilities
|
tools
]
CISA Advisories
US-CERT
FullDisclosure
UPDATE: Ant Group Censors 4 Security Research Articles After Initial Complaint Rejection
JSON Deserialiser Unconstrained Resource Consumption Quick Overview
Defense in depth -- the Microsoft way (part 96): yet another SAFER (SRPv1) and AppLocker (SRPv2) loophole
Alipay DeepLink+JSBridge Attack Chain: Silent GPS Exfiltration, 17 Vulns, 6 CVEs (CVSS 9.3)
Cohesity TranZman Migration Appliance - 5 CVEs (command injection, LPE, unsigned patches, weak crypto)
APPLE-SA-03-11-2026-2 iOS 15.8.7 and iPadOS 15.8.7
APPLE-SA-03-11-2026-1 iOS 16.7.15 and iPadOS 16.7.15
SEC Consult SA-20260224-0 :: Multiple vulnerabilities in CPSD CryptoPro Secure Disk for BitLocker (CVE-2025-10010)
SEC Consult SA-20260218-0 :: Multiple Critical Vulnerabilities in NesterSoft WorkTime (on-prem/cloud)
[KIS-2026-04] SmarterMail <= 9518 (MailboxId) Reflected Cross-Site Scripting Vulnerability
US CERT Weekly
Open Source Security
CVE-2026-4177: YAML::Syck versions through 1.36 for Perl has several potential security vulnerabilities including a high-severity heap buffer overflow in the YAML emitter
[oss-security][CVE-2026-3644] CPython Incomplete control character validation in http.cookies
[CVE-2026-4224] CPython Stack overflow parsing XML with deeply nested DTD content models
Re: Foswiki 2.1.11 is released, fixes CVE-2026-2861
10+ CVEs in GStreamer
Re: Foswiki 2.1.11 is released, fixes CVE-2026-2861
Foswiki 2.1.11 is released, fixes CVE-2026-2861
Re: OpenSSH GSSAPI keyex patch issue
Re: OpenSSH GSSAPI keyex patch issue
Re: Some telnet clients leak environment variables
© 2026 RiskDiscovery | Sponsored by:
Deception Logic