24Articles
7Categories
2026-05-03Date
🚨
CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEVThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a recently disclosed security flaw impacting various Linux distributions to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerability, t…
KEV
🚨
U.S. CISA adds a flaw in WebPros cPanel to its Known Exploited Vulnerabilities catalogThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in WebPros cPanel to its Known Exploited Vulnerabilities catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a flaw in Microsoft Defender, tracked as CVE-2026-41940 (CVSS score…
KEV
πŸ›
CVE-2026-37555
πŸ›
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions
πŸ›
CVE-2026-6845 Binutils: binutils: denial of service via crafted elf file
πŸ›
CVE-2026-6846 Binutils: binutils: arbitrary code execution via malformed xcoff object file processing
πŸ›
CVE-2026-30656
πŸ›
CVE-2026-6843 Nano: nano: format string vulnerability leads to denial of service
πŸ›
CVE-2017-20230 Storable versions before 3.05 for Perl has a stack overflow
πŸ›
CVE-2026-32148 Lockfile checksums not verified in Hex allows dependency integrity bypass
πŸ›
CVE-2025-11083 GNU Binutils Linker elfcode.h elf_swap_shdr heap-based overflow
πŸ›
CVE-2026-7598 libssh2 userauth.c userauth_password integer overflow
πŸ›
CVE-2026-43058 media: vidtv: fix pass-by-value structs causing MSAN warnings
πŸ›
CVE-2025-9403 jqlang jq JSON jq_test.c run_jq_tests assertion
πŸ›
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference
⚠️
Week in review: High-severity LPE vulnerability in the Linux kernel, cPanel 0-day exploited for months
⚠️
Google Revamps Bug Bounty Programs: Android Rewards Rise, Chrome Payouts Drop in the Age of AI
πŸ”₯
Security Affairs newsletter Round 575 by Pierluigi Paganini – INTERNATIONAL EDITION
πŸ”₯
Salt Typhoon breach IBM subsidiary in Italy: a warning for Europe’s digital defenses
πŸ”₯
Marcus & Millichap - 1,837,078 breached accounts
πŸ•΅οΈ
Wireshark 4.6.5 Released, (Sun, May 3rd)
πŸ•΅οΈ
ChatGPT advanced account security adds passkeys and hardware keys
🌐
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 95
πŸ“‘
3 easy-to-miss cybersecurity risks for small businesses