Loved-up newlyweds Taylor Swift and Travis Kelce surface at ex-Chiefs teammate's wedding a week after their own star-studded bash txtify archive
Taylor Swift suffers wardrobe malfunction as she wrestles pink gown at ex-Chiefs star's wedding… as fans hit out at long wait for pictures of her OWN dress txtify archive
Ten people killed after what was supposed to be a 20-minute flight crashes in the Bahamas txtify archive
Taylor Swift flaunts new wedding ring as she and Travis Kelce attend his former teammate's nuptials txtify archive
JuJu Smith-Schuster's bride Laura Kruk looks stunning in her own wedding gown a week after humiliating dress snafu at Taylor Swift's ceremony txtify archive
Woman, 78, who was last polio survivor to live in iron lung died because 1940s machine keeping her alive broke down and was too old to repair txtify archive
Multiple victims in shopping center shooting after gunman opens fire forcing customers to run for their lives txtify archive
Amanda Bynes splashes out on luxury $160K Range Rover… and ditches her old Volkswagen in the deal txtify archive
Tyler Robinson trial bombshell that made Erika Kirk audibly weep in agony... as alleged assassin fails to hide his smirk and his own mother can't watch txtify archive
Prehistoric discovery in the Oregon mountains older than Egypt's Great Pyramid could rewrite human history txtify archive
Britney Spears horrifies drivers as she CLIMBS OUT of car roof on busy freeway months after DUI arrest txtify archive
Trump reveals grim assassination orders he's left for aides if he is murdered as US launches 'Operation B**** Slap' txtify archive
Fears Over New Luxury Jet Forced Trump Back to an Old Air Force One After Israeli Warning txtify archive
Furious Ana Navarro erupts on CNN after struggling to name a single American murdered by illegal migrant... moments after reeling off five killed by ICE txtify archive
Angelina Jolie's plans to flee the US and 'bad memories of Brad Pitt' now twins are turning 18 hit a snag txtify archive
Bill Gates's nepo-daughter Phoebe is accused of breaking platform policies with new shopping app that's said to have used 'FAKE' clicks to make money txtify archive
Fans fear for Charlize Theron, 50, as Ozempic rumors run wild over her thin frame at The Odyssey premiere txtify archive
Brittany and Patrick Mahomes stick next to BFFs Travis and Taylor at former Chiefs star's ceremony after staying loyal with an understated appearance at their MSG wedding txtify archive
WNBA star who punched Caitlin Clark in the throat caught in fresh violent controversy with a different Indiana Fever player txtify archive
State of emergency in Missouri declared after once-in-a-MILLENNIUM rainfall causes catastrophic flooding sweeping residents into 29 foot high waters... and the worst is still to come txtify archive
Sydney Sweeney puts on her raunchiest display EVER as she models lace lingerie... as fans plea with her to 'find Jesus' txtify archive
Mayor Zohran Mamdani reveals how much Taylor Swift and Travis Kelce paid to NYC to cover cost of resources for MSG wedding txtify archive
South Africa was once hailed as a 'Rainbow Nation' - now it's being torn apart by 'Afrophobia' as black South Africans turn against illegal migrants from other African countries who they fear will take their jobs: SUE REID txtify archive
Nearly 90 percent of people are at risk of little-known deadly condition that is becoming more common txtify archive
Justin Baldoni receives support from former co-star after he broke two-year silence to slam Blake Lively txtify archive
Carli Lloyd doubles down on Christian Pulisic criticism - even after USA star's shocking World Cup injury emerged txtify archive
Brad Pitt, Penelope Cruz and Javier Bardem lead star-studded LA crowd for Spain's World Cup quarter-final with Belgium txtify archive
Spain secure dramatic World Cup victory over Belgium after dreadful error from Senne Lammens gifts Mikel Merino late winner txtify archive
Pedophile migrant is seen being marched onto plane by ICE after Minnesota Governor Tim Walz pardoned him to try and keep him in the US txtify archive
Slowpoke Tyler Robinson judge slammed for 'outrageous' Charlie Kirk murder trial delay, despite 'devastating' mountains of evidence txtify archive
Prosecutors seeking death penalty for deported illegal alien indicted in murder of sister-in-law txtify archive
New Jersey woman accused of sexually assaulting child, posting video on Snapchat: police txtify archive
Drama-plagued Texas judge announces she's stepping back from work because she has a SORE THROAT txtify archive
Hunt for Jordanian migrant, 28, who fled Ireland after murder of American girlfriend, 43, who he met at pro-Palestinian protest txtify archive
Marcellus Wiley's reality TV star wife is spotted for first time since accusing him of rape and abuse in ugly split txtify archive
Boy, 15, killed himself hours after school suspended him over flimsy sexual assault allegation with no due process... now they claim his PARENTS are to blame txtify archive
The real Erling Haaland revealed: From his humble upbringing to 10,000 calorie diet and the very 'alternative' lifestyle he now enjoys... we peel back the curtain on the Cyborg threatening to end England's World Cup dream txtify archive
At Canada's biggest rodeo, the starting gun is fired in the fight over Alberta separation txtify archive
Graham Platner formally exits Maine Senate race in explosive letter complete with expletive sign-off amid sexual assault allegations txtify archive
Former Obama press aide accused of stealing cash, credit cards, from Minneapolis coworkers to buy kratom txtify archive
Harry's secret reunion: Meghan, Archie and Lilibet fly in to meet King Charles and Queen Camilla with him at Highgrove: REBECCA ENGLISH txtify archive
We fled New York for the rustic Italian dream and bought TWO homes on a dime. This is the secret to saving thousands a month... so why would ANYONE live in America? txtify archive
Mysterious final days of 'passport bro' fitness influencer who met 'Fairy' after moving to Thailand to find a 'traditional wife'... and suffered horrifying fate txtify archive
Full truth about Mitch McConnell health scandal and missing wife, told by neighbors who saw it all... including grim secret incident days BEFORE ambulance with 'no sirens' took him away: 'He looked dead' txtify archive
Disgusting moment man is seen punching and stomping on woman as San Francisco Giants baseball game descends into brawl txtify archive
NFL analyst who lost his arm in near-fatal car crash placed on leave by ESPN as Missouri AG probes 'fantasy football scam' txtify archive
Tragedy after intrepid grandma, 83, who once lived in North Pole refused to leave her stunning home during wildfire - after telling son that if flames killed her, she'd have zero regrets txtify archive
Michigan Senate hopeful calls AIPAC donations 'legalized bribery,' remains silent on other donations txtify archive
Victor Wembanyama signs eye-watering $252 MILLION contract extension to commit to the San Antonio Spurs for five more years txtify archive
Drake drops huge $1 MILLION bet on Conor McGregor to win his long-awaited UFC return... so will the curse strike again? txtify archive
Miami Heat star Bam Adebayo strikes his former teammate as explosive row rocks the NBA txtify archive
ICE arrests illegal immigrants convicted of attempted murder, rape and child sex crimes in targeted crackdown txtify archive
As Kimberly Guilfoyle guzzles at gay-friendly Greek beach bar... Trump exposes her with major new bruising that's got insiders gasping: 'We are not buying it anymore' txtify archive
Super Bowl champion and Steelers hero dead at 69 as tributes pour in from the NFL world txtify archive
Yale student charged after alleged sex assault on packed Manhattan subway train, attorney pushes back txtify archive
I thought my trouble sleeping, racing heart and sweating were signs of my anxious personality. In fact, they were symptoms of a serious disease that's overlooked... these are the tests you MUST ask your doctor for txtify archive
Trump says he left instructions to 'bomb' Iran 'at levels' never seen if he is assassinated txtify archive
Erika Kirk begs judge to speed up Tyler Robinson trial after five-day evidence hearing that ended WITHOUT a decision txtify archive
Platner officially terminates Senate bid after bombshell rape allegation ends campaign txtify archive
Inside Norway's football revolution: Breaking the rules for 'special' Martin Odegaard, a 'no a***holes' policy, heavy investment in clubs - and why England clash won't be the end even if they lose txtify archive
Vaccinations caused twin toddlers to suffocate to death, says lawyer of Idaho mother now charged with their murders txtify archive
Mexico vows US will pay after ICE fatally shoots illegal migrant who allegedly attempted to ram agent with car txtify archive
Multiple people hospitalized with deadly bacteria in connection to blueberry recall in 8 states txtify archive
Ana Navarro scolds Joy Behar after The View host revealed all her preferred Democrat presidential candidates are white men txtify archive
Department of War Establishes the Directed Energy Bio-Effects Cross-Functional Team, Delivering First HAVANA Act Payments txtify archive
Owning Manhattan star Jade Shenker slammed for claiming homeless people are living 'comfortably' on the street txtify archive
Tyler Robinson hearing ends WITHOUT a decision after five days of bombshell testimony and evidence txtify archive
FASHION FINDER: The style secret stars can't get enough of... and it's less expensive than you'd think txtify archive
MLB thrown into chaos as Boston Red Sox players get stuck in Chicago... just hours before game at New York Mets txtify archive
I'm a cybersecurity expert... this is the scary reason why you should NEVER post photos of your keys online txtify archive
Billions vanished beneath Alaska's icy waters. Now the chilling truth is destroying America's 'Deadliest Catch' industry txtify archive
Intel expert says Singham network is more than a nonprofit scandal—it's a security threat txtify archive
NJ husband begs for CPR help in 911 call after wife found dead with stab wounds: audio txtify archive
MLB announcer with controversial past goes viral for clumsy race comment live on TV broadcast txtify archive
Woman warns about sneaky way men are using dating apps to find free accommodation for World Cup games txtify archive
Mamdani defends controversial NYC map after omitting iconic Little Italy, Jewish and Irish neighborhoods txtify archive
Former British MP and reality TV star Ann Widdecombe found dead; man arrested for murder txtify archive
Border officers crack open cabbage shipment hiding multimillion-dollar secret at Texas border txtify archive
Greedy Wall Street advisor looted $3.5M from a wealthy investor and splurged on his luxury lifestyle txtify archive
Missing girl, 4, was DISSOLVED with corrosive chemicals by her parents before remains were poured into creek, according to tearful cop who says they are unworthy of titles 'mom' and 'dad' txtify archive
Platner collapse completes John Fetterman’s break from Sanders socialists who put him in Senate txtify archive
Astonishing Scottie Scheffler streak set to end in agonizing fashion after four years and 78 events txtify archive
Fox & Friends host Brian Kilmeade risks wrath of Trump by urging president to REMOVE his son-in-law Jared Kushner from Iran peace talks txtify archive
Dave Portnoy goes to war with Tom Brady as he accuses NFL icon of ultimate act of Patriots sabotage txtify archive
Trump admin scraps ‘weaponized’ wildlife rule that became 'burden' on American families and businesses: Burgum txtify archive
'Tone deaf' Los Angeles Dodgers are urged to U-turn on 'insulting' decision to visit Donald Trump's White House txtify archive
America's LAST four affordable starter-home havens revealed... including a state where properties cost just $85,000 txtify archive
Trump's dream of a 'new Middle East' in tatters as insiders reveal embarrassing truth about his Gaza peace army txtify archive
Trump sacks election commissioners paralyzing voting watchdog four months before midterms txtify archive
Viral Norway fan who REFUSES to join the 'Viking row': World Cup supporter says celebration is 'stupid' and 'factually wrong' - because they actually SAILED across the Atlantic txtify archive
Trump administration expands 'Product of USA' label as push for American-raised beef grows txtify archive
URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat txtify archive
DOJ accuses Maryland of 'active and deliberate effort' to prevent deportations of illegal immigrants: lawsuit txtify archive
CEO under fire for mass layoffs amid foreign worker hiring spree now appointed to Fed's task force on jobs txtify archive
How Ryanair passenger who was sucked out of plane window was saved by his hero wife who held onto his feet for five minutes txtify archive
How Ryanair passenger who was sucked out of plane window was saved by his hero wife who held onto his feet for five minutes txtify archive
Kristi Noem is DIVORCING cross-dressing husband Bryon: Distraught mother reveals every word of excruciating birthday party showdown after unbearable final blow txtify archive
Trump administration DEPORTS illegal migrant pedophile weeks after woke Minnesota Governor Tim Walz pardoned him for rape of girl, 10, in bid to keep him in the US txtify archive
Defeated Republican's acid parting shot at demon hunting rival who clinched nomination: 'I still haven't killed anyone' txtify archive
The British expats missing in Spain's devastating wildfires that have killed at least 12 people after cars were consumed by flames as they tried to escape txtify archive
Dave Portnoy again teases sensational political career change... and claims he wants to take on Mamdani in New York txtify archive
Justin Trudeau is brutally roasted for 'hopping like a rabbit' to promote girlfriend Katy Perry's new song txtify archive
Heidi Klum blasts biohacking trend and begs people to be more 'natural'... one year after gushing over Botox txtify archive
NSF: Starship Flight 13: WOW! Heck of a long Static Fire for Booster 20! [Video] comments txtify archive
Hegseth steps in to ‘fix’ situation after Apache pilots suspended for ‘Salute from the Shores’ flyover txtify archive
My wife has made the same sex mistake for 10 years. I can't keep pretending I like it: But, says DEAR JANE, so many women do it too! txtify archive
MAGA panelists squabble furiously on CNN as Scott Jennings accuses former Trump aide of being poorly educated txtify archive
Millions in Dem ad money vanished from Platner race days before rape allegation doomed Senate bid txtify archive
US mother, 43, is bludgeoned to death in her Irish home 'by asylum seeker partner, 28, she met at pro-Palestine march' as suspect flees country txtify archive
McDowell quoted in a Bloomberg article on how political forces are influencing the dollar’s role txtify archive
WATCH: Trump's Energy chief reveals what escalating Iran tensions could mean for gas prices txtify archive
De Kruijf and O’Connor’s piece on Iran sanctions featured on a Illicit Edge newsletter txtify archive
Monster of the deep: Scientists capture the first EVER footage of a Barreleye Fish deep in the Atlantic txtify archive
Florida millionaire wooed bestselling author before allegedly forcing her into cuckolding fantasy with black men who he paid 'reparations': Litany of claims detail degrading sexual abuse txtify archive
Billionaire heiress Princess Talita von Fürstenberg soaks up the sun on Sardinian yacht as she throws hen do attended by King Charles's goddaughter txtify archive
Deep-blue Oregon is on track to elect REPUBLICAN governor, claims shock new poll that puts GOP candidate well ahead of Democrat incumbent txtify archive
Mamdani's wife co-hosts luxe Muslim retreat casting Virgin Mary as ‘Palestinian woman’ under occupation txtify archive
Department of War Publishes Fourth Release of Unidentified Anomalous Phenomena Files on WAR.GOV/UFO txtify archive
Insiders reveal bombshell 'code word' used by Justin Baldoni and Taylor Swift that will leave Blake Lively FURIOUS txtify archive
Mystery as influencer model, 27, plunges to her death from 27th floor of Dubai skyscraper txtify archive
Trump launches 'Operation B**** Slap' in retaliation for Iran shooting ships in Strait of Hormuz: 'Going with his gut' txtify archive
From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at Scale txtify archive
National Guard shooting suspect in 'dire,' 'self-inflicted' health condition after refusing to eat: filing txtify archive
Court hears alleged confession from accused Charlie Kirk assassin in texts with lover and more top headlines txtify archive
WATCH: California parents sue luxury daycare after toddler allegedly tossed into air, dropped on head txtify archive
Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking txtify archive
British widow 'forced to bury her husband in an unmarked grave' in Cape Verde after he fell ill and died there on holiday txtify archive
New 911 audio captures neighbors warning of 'full-out war' before police were attacked in block party chaos txtify archive
California seizes 63,000 pounds of illegal cannabis worth $104 million in major crackdown txtify archive
Vodafone Shares Surge After French Billionaire Xavier Niel Becomes Biggest Shareholder txtify archive
"Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th) txtify archive
Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets txtify archive
Bonnie Tyler dead at 75: Total Eclipse of the Heart star passes away in Portugal after emergency surgery which left her in a coma txtify archive
Trouble on the streets of London and Paris after France knock Morocco out of the World Cup txtify archive
CVE-2026-59818 etcd: gRPC client listener does not enforce `--client-crl-file` certificate revocation txtify archive
New Iran plot to assassinate Trump as country mourns Supreme Leader Khamenei revealed by Israel txtify archive
Tyler Robinson hearing: Top moments from explosive Lance Twiggs interview played in court txtify archive
Kiko Dontchev (SpaceX VP of Launch): “The Cape Gigabay is getting closer to being ready for Starship! Teams recently installed the 420-ton crane – which we’ll use to break over and move Starships and Super Heavy boosters preparing for flight. One step closer to the Moon and Mars 🚀🚀🚀” txtify archive
SpaceX on X: “Super Heavy booster moved to the Starbase pad for testing ahead of Flight 13” txtify archive
Florida man who contacted police about 1987 killing arrested in connection to cold case txtify archive
ISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th) txtify archive
Dramatic bodycam video captures NYPD officer rescuing woman from top of Brooklyn Bridge after emotional plea txtify archive
Queens man arrested with Molotov cocktails after alleged arson attacks on Ozone Park and Woodhaven churches txtify archive
Taylor Swift spotted for first time since wedding... as she and Travis touch down in latest destination on jet-setting honeymoon tour txtify archive
North Carolina man broke into ex's home, fatally stabbed his 5-year-old son before going to Taco Bell: police txtify archive
Black bear raiding a garbage can at Lake Tahoe garage triggers dramatic wildlife encounter txtify archive
Accused Charlie Kirk assassin allegedly confessed in texts, apologized and described motive, agent testifies txtify archive
Illegal immigrant soccer coach who used alcohol and drugs to sexually abuse kids learns fate txtify archive
American mother murdered in Irish tourist town as international manhunt targets alleged asylum seeker txtify archive
Former cop Derek Chauvin appeals judge's rejection of bid for new trial in George Floyd murder case txtify archive
Principal Investigator and Quality Assessment Reports Evaluate Umbra Synthetic Aperture Radar Data txtify archive
Argentinian flight instructor jumps to death from plane, 22-year-old student forced to land alone txtify archive
LGBTQ+ cruise ship is refused entry to Egypt just days after Turkey blocked it from docking txtify archive
Jailed Catholic woman's hunger strike highlights Iran religious persecution — US demands action txtify archive
ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories txtify archive
Fighter jet crash lands at Greek holiday island airport after mysteriously bursting into flames in mid-air txtify archive
Department of War Announces Awards $86 Million Joint Laser Weapon System Agreements to Scale Directed Energy Capabilities txtify archive
With US unleashing attacks, Iranian official threatens that the Islamic Republic will deliver a 'hard slap' txtify archive
Pilot instructor who jumped to his death during a lesson - leaving student to land the plane - had been seeing a psychiatrist but not told his colleagues txtify archive
Drone offensive hits Russian oil tankers and refineries at 'industrial scale' as Moscow bans diesel exports txtify archive
CVE-2026-54891 Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl txtify archive
CVE-2026-55952 TLS 1.3 server denial of service via malformed ClientHello pre-shared key extension txtify archive
CVE-2026-53345 KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying txtify archive
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length txtify archive
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 txtify archive
CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message txtify archive
CVE-2026-38969 ruby webrick through v1.9.2 WEBrick reparses trailer Content-Length into canonical request state, enabling request smuggling. txtify archive
CVE-2026-38968 ntopng through 6.6 is vulnerable to Predictable Session Identifier which can lead to Session Hijacking. HTTP session identifiers in src/HTTPserver.cpp use weak time-seeded pseudo-randomness during session creation. As a result, fresh authenticated logins can receive deterministic or colliding session cookies under attacker-controlled timing. txtify archive
CVE-2026-14191 WinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::ReadHeader txtify archive
CVE-2026-56000 xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent() txtify archive
CVE-2026-60002 ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outcome occurs only on the client side.) txtify archive
CVE-2026-59999 In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not. txtify archive
CVE-2026-60000 sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of service (resource consumption from excessive authentication attempts) because MaxAuthTries was mishandled for GSSAPIAuthentication. txtify archive
CVE-2026-60001 sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay. txtify archive
CVE-2026-59995 sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server. txtify archive
CVE-2026-59996 scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations. txtify archive
CVE-2026-59997 internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line argument would have helped to ensure the intended security properties of an SFTP connection. txtify archive
Defense Business Brief: Rocket engine startup eyes production; NATO Summit Day 1; Anduril’s first NATO contract txtify archive
ISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th) txtify archive
_HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th) txtify archive
Prince Harry and me: A small white pill, 'naughtiness' and why I wish I could erase our friendship from my memory. By CHARLOTTE GRIFFITHS txtify archive
Trump says 'Iran lies and cheats' as IRGC emerges as dominant force in negotiations with US txtify archive
New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware txtify archive
Can soccer unite Bosnia beyond politics? | A Debrief With Jasmin Mujanović And Dženeta Karabegović txtify archive
ispace secures payload capacity on SpaceX’s Starship scheduled for launch as early as 2030 comments txtify archive
GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures txtify archive
ISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th) txtify archive
Ryan Caton NSF: “STARSHIP FLIGHT 13: New @FAAnews documentation shows this flight will also follow the new south-east trajectory, just like last time. Officially launch is NET July 14, but that’s not going to happen based on current Booster and Ship readiness.” txtify archive
Jack Kuhr on X: “SpaceX flew 37 Falcon missions in Q2, down both QoQ (40 in Q1) and YoY (45 in Q2 ‘25). On pace for ~155 Falcon launches this year, down from 165 last year. H2 2026 appears even slower. Reportedly no longer accepting rideshare missions 2.5 years out.” txtify archive
SpaceX submits FCC application for Gen 3 Starlink constellation consisting of 100,000 satellites txtify archive
French court clears path for conservative presidential candidate, but house arrest threatens campaign txtify archive
Preserving Japan's Aviation Heritage: Yokota Air Base Returns Historic Aircraft Artifacts txtify archive
Hamas says it will dissolve Gaza government, but Israel warns group still seeks Hezbollah-style control txtify archive
Video shows bomb rock Damascus hotel where French President Macron is staying during Syrian state visit txtify archive
Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data txtify archive
CVE-2026-45638 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker txtify archive
Putin escalates ballistic missile attacks as Patriot shortages leave Ukraine defenseless txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-12480 Arbitrary HDF5 File Read via Virtual Dataset Bypass in keras-team/keras txtify archive
CVE-2026-54891 Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl txtify archive
CVE-2026-54886 SSH SFTP server denial of service via extended channel data infinite loop txtify archive
CVE-2026-55952 TLS 1.3 server denial of service via malformed ClientHello pre-shared key extension txtify archive
ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th) txtify archive
Between Graves and Uncertainty: The Management of the Dead After Venezuela’s Earthquake txtify archive
Who is Turkey's Recep Tayyip Erdoğan? How NATO's most unpredictable leader keeps reinventing himself txtify archive
621st Contingency Response Wing Responds to Accelerate Earthquake Disaster Relief in Venezuela txtify archive
Launch Your Cyber Career: Department of War Cyber Apprenticeship Applications Now Live! txtify archive
Chalecki quoted in a Plastic News article on how a destabilized USMCA impacts investment and growth txtify archive
⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More txtify archive
Supporting freedom, combating anti-US regimes: A democracy assistance agenda for 2026-2028 txtify archive
ISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th) txtify archive
Zelenskyy pressures US and Europe for more 'air defense' assistance amid ongoing war with Russia txtify archive
A Trucking Startup Aims to Challenge Tesla. Now, Paychecks Are Missing—and So Is a Truck. txtify archive
Tens of thousands of far-left protesters clash with police in anti-conservative party riots txtify archive
Conservative Keiko Fujimori officially declared winner of Peru's presidential runoff election txtify archive
Interpol issues red notice for Ukrainian woman wanted for Monaco apartment bombing targeting oligarch txtify archive
Chromium: CVE-2026-13921 Insufficient validation of untrusted input in DeviceBoundSessionCredentials txtify archive
Chromium: CVE-2026-14021 Insufficient validation of untrusted input in StorageAccessAPI txtify archive
CVE-2026-57918 libnfs through 6.0.2 before 935b8db has an xid integer underflow in READ_IOVEC in rpc_read_from_socket in lib/socket.c during a connection to a crafted NFS server, when the expected pdu size exceeds the absolute pdu size from the xid/record-marker. txtify archive
CVE-2026-57231 Podman: Malformed Image can trick podman run into leaking host environment variables into the container txtify archive
CVE-2026-13322 Kubevirt: virt-handler-rhel9: kubevirt: unbounded virtio-serial readline in virt-handler causes oom denial of service txtify archive
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length txtify archive
CVE-2026-3195 Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730) txtify archive
CVE-2026-56412 libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this issue exists because of an incomplete fix for CVE-2026-50219. txtify archive
CVE-2026-56407 libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. txtify archive
CVE-2026-56406 libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse. txtify archive
CVE-2026-56132 In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers. txtify archive
CVE-2026-56131 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation). txtify archive
CVE-2026-57585 MessagePack: Out-of-bounds read/crash on Unpacker reuse after caught error txtify archive
CVE-2026-13757 P11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing txtify archive
CVE-2026-12912 Libtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed tiff image txtify archive
CVE-2026-14164 Libarchive: double-free vulnerability in rar5 decompression logic via dangling filtered_buf pointer in init_unpack() txtify archive
CVE-2026-14258 Dhcpcd: dhcpcd infinite loop and out-of-bounds read via zero-length ipv6 nd option in router advertisement handling txtify archive
CVE-2026-55200 libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c txtify archive
CVE-2026-52944 ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE txtify archive
CVE-2026-56149 Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service txtify archive
CVE-2026-49090 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service txtify archive
A misguided war, a flawed deal, and a dangerous future. Here’s what to do next on Iran. txtify archive
How NATO can strengthen the transatlantic defense industrial base in Ankara and beyond txtify archive
The Toolbelt Generation Can Now Get Federal Aid for Trade School. Here’s What to Know. txtify archive
From burden sharing to strategic delivery: NATO and Turkey’s priorities ahead of the Ankara summit txtify archive
CVE-2026-57100 Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability txtify archive
Trump says Pulte can declassify ‘whatever’ he wants, sparking fears of exposing intelligence secrets txtify archive
DOW Launches BuildFreedom.US, Announces $10M Skilled Trades Investment With Mike Rowe and Forge the Next-Generation Industrial Workforce txtify archive
SpaceX: “Teams recently completed build and acceptance testing of our 1,000th Merlin 1D engine for Falcon’s first stage! With Falcon’s reusability, recovering these engines has enabled continued reliability enhancements, making Merlin one of the most reliable rocket engines ever manufactured” comments txtify archive
Guardians of the Deep: An Inside Look at the Elite Submarine Protection Coast Guard Unit txtify archive
Chalecki quoted in Bloomberg article on the impact of USMCA uncertainty on supply chains txtify archive
Department of War Establishes Direct Reporting Portfolio Manager for Unmanned Systems to Ensure American Drone Dominance txtify archive
Defense Business Brief: A radar-maker’s answer to the drone boom; the Army’s private capital appetite; One lawmaker’s caution for contractors txtify archive
Space Skunk on X: “New video from the [NASA] neutral buoyancy laboratory shows that the HLS mockup has been altered to include two airlocks… Also the elevator is noticeably longer than before.” txtify archive
“Hawthorne Quietly Becoming LA County’s Next Aerospace Powerhouse” [SpaceX expands Hawthorne with 6 acre, $22M land purchase] comments txtify archive
Locked up like an animal in cage...forced to witness rape and slaughter...tortured until they prayed for death: October 7 hostages' most horrifying accounts yet of what they endured at the hands of Hamas txtify archive
At 250 years old, the US must continue to refine the message it sends abroad—including to Africa txtify archive
Fighting a land war in the digital age: How armies must reinvent themselves—or be destroyed by those that do txtify archive
Q&A with Lieutenant General Max A. L. T. Nielsen, commandant of the NATO Defense College txtify archive
From cloud to kill zone: How Ukraine rewired naval warfare for the age of algorithmic warfare txtify archive
Warrick for the The Jerusalem Strategic Tribune: Gaza’s Fate Hangs in the Balance in a Crucial Three-Day Meeting in Cyprus txtify archive
CISA Announces New Advisory Council to Strengthen Partnerships and Secure Critical Infrastructure txtify archive
CVE-2026-57062 CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182. txtify archive
CVE-2026-13595 Util-linux: util-linux: heap use-after-free in libblkid nested partition probing txtify archive
CVE-2026-11625 Bytes::Random::Secure versions through 0.29 for Perl share internal state across forked processes txtify archive
CVE-2026-6092 Encrypt-then-MAC could fall back to MAC-then-Encrypt when HAVE_ENCRYPT_THEN_MAC is configured txtify archive
CVE-2026-11310 X.509 trust-chain bypass in wolfSSL_X509_verify_cert() via untrusted intermediate anchoring txtify archive
CVE-2026-10097 ML-KEM-1024 x64 AVX2 incomplete cipher text comparison enables IND-CCA2 break and static private-key recovery txtify archive
CVE-2026-10098 OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_status txtify archive
CVE-2026-12340 Out-of-bounds heap read in SM2/SM3 certificate Subject Key Identifier computation txtify archive
CVE-2026-10512 X25519 x86_64 assembly final reduction leaves non-canonical field element txtify archive
CVE-2026-6091 Partial-chain verification accepts untrusted intermediate as trust anchor txtify archive
CVE-2026-6325 Out-of-bounds write in SetSuitesHashSigAlgo on oversized signature algorithms list txtify archive
CVE-2026-55958 Renesas TSIP TLS 1.3 transcript buffer out-of-bounds write in tsip_StoreMessage txtify archive
CVE-2026-6094 Heap buffer overread in wc_PKCS7_DecodeEnvelopedData parsing crafted PKCS7 EnvelopedData txtify archive
CVE-2026-6678 Integer underflow in wc_PKCS7_DecryptOri handling crafted Other Recipient Info txtify archive
CVE-2026-55961 wolfSSL_PKCS7_verify() reports success for degenerate (certs-only) PKCS#7 with no signer txtify archive
CVE-2026-11999 X.509 trust-chain bypass via path-depth exhaustion in wolfSSL_X509_verify_cert() txtify archive
CVE-2026-55962 TLS 1.3 post-handshake authentication: server accepts Finished without client Certificate/CertificateVerify txtify archive
CVE-2026-55967 AES-GCM streaming APIs do not reject >64 GiB cumulative single messages, enabling counter wrap and keystream reuse txtify archive
CVE-2026-11703 Missing SNI/ALPN binding on stateful (session-ID) TLS session resumption txtify archive
CVE-2026-55964 Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA (temporary CA exemption) txtify archive
CVE-2026-55960 Un-negotiated Raw Public Key (RFC 7250) accepted in place of X.509, bypassing chain validation txtify archive
CVE-2026-7532 iPAddress name constraints not enforced when WOLFSSL_IP_ALT_NAME is undefined txtify archive
CVE-2026-57918 libnfs through 6.0.2 before 935b8db has an xid integer underflow in READ_IOVEC in rpc_read_from_socket in lib/socket.c during a connection to a crafted NFS server, when the expected pdu size exceeds the absolute pdu size from the xid/record-marker. txtify archive
CVE-2026-57231 Podman: Malformed Image can trick podman run into leaking host environment variables into the container txtify archive
CVE-2026-13325 Virt-handler-rhel9: kubevirt: kubevirt: disabletls migration setting removes authentication, exposing unauthenticated virtqemud proxy on all interfaces txtify archive
CVE-2026-13218 Kubevirt: kubevirt: symlink following in writetocachedfile allows host file overwrite from virt-launcher txtify archive
CVE-2026-13208 Kubevirt: virt-handler-rhel9: kubevirt: virt-handler notify server trusts vmi identity from unauthenticated grpc request body txtify archive
CVE-2026-13318 Virt-api-rhel9: kubevirt: kubevirt: ssrf in virt-api port-forward via unvalidated guest-agent-reported ip txtify archive
CVE-2026-13322 Kubevirt: virt-handler-rhel9: kubevirt: unbounded virtio-serial readline in virt-handler causes oom denial of service txtify archive
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length txtify archive
CVE-2026-58014 Glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list" txtify archive
CVE-2026-58013 Glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend" txtify archive
CVE-2026-58011 Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime txtify archive
CVE-2026-58012 Glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char() txtify archive
CVE-2026-58016 Glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml" txtify archive
CVE-2026-58015 Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive txtify archive
CVE-2026-58010 Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal() txtify archive
CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr txtify archive
Anduril and Amazon’s mobile data center venture aims to bring edge computing to the frontlines txtify archive
What’s at stake in the USMCA review is a stronger, safer, and more prosperous North America txtify archive
CVE-2026-42910 Windows Hotpatch Monitoring Service Elevation of Privilege Vulnerability txtify archive
A network of corridors is the only reliable hedge against Middle East chokepoint disruptions txtify archive
Military Commissions Media Invitation Announced for United States v. Abd al-Rahim al-Nashiri Pre-Trial Hearing txtify archive
Department of War Launches New Website to Help Industry Partners Navigate Section 805 Supply Chain Requirements txtify archive
CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr txtify archive
CVE-2026-54369 acl < 2.4.0 Symlink Traversal Privilege Escalation via libacl Functions txtify archive
European allies can boost NATO unity at the Ankara summit by accelerating eastern flank deterrence txtify archive
The Bear Necessities: A Look at the Drivers, Dynamics, and Applications of the Pro-Russia Influence Ecosystem txtify archive
How can gradual EU integration work in the Balkans? A Debrief with Odeta Barbullushi & Adi Cerimagic txtify archive
CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length txtify archive
CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open() txtify archive
CVE-2026-3196 Qemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation txtify archive
CVE-2026-6100 Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure txtify archive
CVE-2026-3195 Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730) txtify archive
CVE-2026-35387 OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA algorithms. txtify archive
CVE-2026-5119 Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment txtify archive
CVE-2026-9697 undici vulnerable to TLS certificate validation bypass via dropped requestTls in SOCKS5 ProxyAgent txtify archive
CVE-2025-38585 staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() txtify archive
CVE-2024-58266 The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection. txtify archive
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing txtify archive
CVE-2026-9675 undici WebSocket client vulnerable to denial of service via cumulative fragment bypass txtify archive
CVE-2024-53201 drm/amd/display: Fix null check for pipe_ctx->plane_state in dcn20_program_pipe txtify archive
CVE-2025-13462 tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling txtify archive
CVE-2025-38269 btrfs: exit after state insertion failure at btrfs_convert_extent_bit() txtify archive
CVE-2026-3099 Libsoup: libsoup: authentication bypass via digest authentication replay attack txtify archive
CVE-2025-38279 bpf: Do not include stack ptr register in precision backtracking bookkeeping txtify archive
CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames txtify archive
CVE-2026-3634 Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header txtify archive
CVE-2026-12003 CPython >3.11 Insecure Input Validation resulting in privilege escalation txtify archive
CVE-2026-55653 Openssh: double free in red hat enterprise linux versions of openssh dh-gex client path during fips known-group validation leads to client-side denial of service txtify archive
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 txtify archive
CVE-2026-55655 Openssh: local mitm of x11 forwarding via abstract unix socket pre-binding in red hat enterprise linux openssh client versions txtify archive
CVE-2024-26962 dm-raid456, md/raid456: fix a deadlock for dm-raid456 while io concurrent with reshape txtify archive
CVE-2026-11525 undici vulnerable to Set-Cookie SameSite attribute downgrade via permissive substring matching txtify archive
CVE-2026-43973 gun HTTP/1.1 response buffer has no size limit allowing server-controlled memory exhaustion txtify archive
CVE-2026-56412 libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this issue exists because of an incomplete fix for CVE-2026-50219. txtify archive
CVE-2026-49762 Unbounded integer parsing in the Version module enables CPU and memory exhaustion denial of service txtify archive
CVE-2026-43059 Bluetooth: MGMT: Fix list corruption and UAF in command complete handlers txtify archive
CVE-2026-56407 libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. txtify archive
CVE-2024-36024 drm/amd/display: Disable idle reallow as part of command/gpint execution txtify archive
CVE-2026-56406 libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse. txtify archive
CVE-2026-53027 fs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked() txtify archive
CVE-2025-40325 md/raid10: wait barrier before returning discard request with REQ_NOWAIT txtify archive
CVE-2024-30896 InfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not affected. NOTE: The researcher states that InfluxDB allows allAccess administrators to retrieve all raw tokens via an "influx auth ls" command. The supplier indicates that the organizations feature is operating as intended and that users may choose to add users to non-default organizations. A future release of InfluxDB 2.x will remove the ability to retrieve tokens from the API. txtify archive
CVE-2026-56132 In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers. txtify archive
CVE-2026-46275 Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths txtify archive
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences txtify archive
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory txtify archive
CVE-2026-53207 mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison txtify archive
CVE-2026-56131 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation). txtify archive
CVE-2024-50217 btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() txtify archive
CVE-2026-10275 OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow txtify archive
CVE-2024-24856 NULL pointer deference in acpi_db_convert_to_package of Linux acpi module txtify archive
CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto txtify archive
CVE-2024-57898 wifi: cfg80211: clear link ID from bitmap during link delete after clean up txtify archive
CVE-2026-57453 Vim: PowerShell Command Injection via Unescaped Filename in zip.vim Extraction txtify archive
CVE-2025-22115 btrfs: fix block group refcount race in btrfs_create_pending_block_groups() txtify archive
CVE-2025-21885 RDMA/bnxt_re: Fix the page details for the srq created by kernel consumers txtify archive
CVE-2024-50004 drm/amd/display: update DML2 policy EnhancedPrefetchScheduleAccelerationFinal DCN35 txtify archive
CVE-2026-52988 netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase txtify archive
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() txtify archive
CVE-2026-55895 Vim: Vimscript Code Injection in netrw NetrwLocalRmFile() via crafted filename txtify archive
CVE-2024-49945 net/ncsi: Disable the ncsi work before freeing the associated structure txtify archive
CVE-2026-57455 Vim: Stack out-of-bounds write in `spell_soundfold_sofo()` via an over-length `soundfold()` argument txtify archive
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory txtify archive
CVE-2024-49970 drm/amd/display: Implement bounds check for stream encoder creation in DCN401 txtify archive
CVE-2026-6324 Libsoup: libsoup: http request smuggling via unsigned to signed conversion error txtify archive
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 txtify archive
CVE-2026-52947 net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove txtify archive
CVE-2026-53143 drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 txtify archive
CVE-2024-49918 drm/amd/display: Add null check for head_pipe in dcn32_acquire_idle_pipe_for_head_pipe_in_layer txtify archive
CVE-2026-46147 KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() txtify archive
CVE-2024-47702 bpf: Fail verification for sign-extension of packet data/data_end/data_meta txtify archive
CVE-2024-49916 drm/amd/display: Add NULL check for clk_mgr and clk_mgr->funcs in dcn401_init_hw txtify archive
CVE-2026-53247 net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown txtify archive
CVE-2026-55200 libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c txtify archive
CVE-2024-49908 drm/amd/display: Add null check for 'afb' in amdgpu_dm_update_cursor (v2) txtify archive
CVE-2024-49910 drm/amd/display: Add NULL check for function pointer in dcn401_set_output_transfer_func txtify archive
CVE-2024-47662 drm/amd/display: Remove register from DCN35 DMCUB diagnostic collection txtify archive
CVE-2026-45571 go-git: Crafted repositories may modify main and submodule .git directories txtify archive
CVE-2024-46834 ethtool: fail closed if we can't get max channel used in indirection tables txtify archive
CVE-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http txtify archive
CVE-2024-46808 drm/amd/display: Add missing NULL pointer check within dpcd_extend_address_range txtify archive
CVE-2024-46727 drm/amd/display: Add otg_master NULL check within resource_log_pipe_topology_update txtify archive
CVE-2025-37861 scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue txtify archive
CVE-2026-53242 ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams txtify archive
CVE-2025-4035 Libsoup: cookie domain validation bypass via uppercase characters in libsoup txtify archive
CVE-2024-1151 Kernel: stack overflow problem in open vswitch kernel module leading to dos txtify archive
CVE-2025-46327 Go Snowflake Driver has race condition when checking access to Easy Logging configuration file txtify archive
CVE-2025-39932 smb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work) txtify archive
CVE-2024-43824 PCI: endpoint: pci-epf-test: Make use of cached 'epc_features' in pci_epf_test_core_init() txtify archive
CVE-2026-53239 xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() txtify archive
CVE-2025-39905 net: phylink: add lock for serializing concurrent pl->phydev writes with resolver txtify archive
CVE-2024-26672 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' txtify archive
CVE-2026-45934 btrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation txtify archive
CVE-2025-29923 go-redis allows potential out of order responses when `CLIENT SETINFO` times out during connection establishment txtify archive
CVE-2026-53166 futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock txtify archive
CVE-2026-53080 net/sched: cls_fw: fix NULL dereference of "old" filters before change() txtify archive
CVE-2026-53198 ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL txtify archive
CVE-2026-45859 netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation txtify archive
CVE-2019-11254 Kubernetes API Server denial of service vulnerability from malicious YAML payloads txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2024-58089 btrfs: fix double accounting race when btrfs_run_delalloc_range() failed txtify archive
CVE-2013-1633 easy_install in setuptools before 0.7 uses HTTP to retrieve packages from the PyPI repository, and does not perform integrity checks on package contents, which allows man-in-the-middle attackers to execute arbitrary code via a crafted response to the default use of the product. txtify archive
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file txtify archive
CVE-2026-53178 staging: rtl8723bs: rtw_mlme: add bounds checks before ie_length subtraction txtify archive
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums txtify archive
CVE-2024-25740 A memory leak flaw was found in the UBI driver in drivers/mtd/ubi/attach.c in the Linux kernel through 6.7.4 for UBI_IOCATT, because kobj->name is not released. txtify archive
CVE-2024-24864 Race condition vulnerability in Linux kernel media/dvb-core in dvbdmx_write() txtify archive
CVE-2024-23848 In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c. txtify archive
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems. txtify archive
CVE-2026-53655 node-tar applies PAX size override to intermediary GNU long-name/long-link headers, causing tar parser interpretation differential (file smuggling) txtify archive
CVE-2026-44889 WebOb: Location header normalization during redirect leads to open redirect txtify archive
'I survived, but I lost my life. I wish I died that day': Chef, 28, applies to be euthanised two years after 'ex-boyfriend beat her up so badly she lost her sense of smell and taste' txtify archive
Heartbreaking final moments of 'Sleeping Beauty of Everest' who begged climber 'don't leave me here to die' before her body froze in time in mountain 'death zone' txtify archive
Chromium: CVE-2026-13021 Inappropriate implementation in DeviceBoundSessionCredentials txtify archive
NATO Secretary General Mark Rutte: Expect deals in Ankara, plus a sharp message to Moscow txtify archive
Chhangani quoted in WSJ article on how Chinese technology makes dollar alternatives more viable txtify archive
Magnus B on X: “The SpaceX Starfall Demonstration capsule was successfully recovered off the coast of California following its launch [from] Florida. The recovery vessel Shannon brought the capsule into the Port of Long Beach, where it was unloaded and trucked away for post-flight inspections.” txtify archive
CVE-2026-4367 Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing txtify archive
CVE-2026-41086 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability txtify archive
STOCKSTAY Another Day: The Latest Addition to Turla’s Intelligence Gathering Apparatus txtify archive
CVE-2026-4367 Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing txtify archive
New CISA Guide Assists Federal Agencies with Transitioning to Modernized Zero Trust Architectures txtify archive
Zero-Day Exploitation of Vulnerability (CVE-2026-20245) in Cisco Catalyst SD-WAN Manager txtify archive
The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration txtify archive
CVE-2026-45446 Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes txtify archive
CVE-2026-42768 Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() txtify archive
CVE-2026-10275 OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow txtify archive
CVE-2026-8376 Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds txtify archive
CVE-2026-43966 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/2 txtify archive
Best open-source or low-cost toolchain to map historical social graphs? [No Enterprise SaaS] txtify archive
CVE-2026-47645 Microsoft 365 Copilot's Business Chat Elevation of Privilege Vulnerability txtify archive
Remarks by Secretary of War Pete Hegseth at the 2026 NATO Defense Ministerial in Brussels (As Delivered) txtify archive
CVE-2026-46293 clk: microchip: mpfs-ccc: fix out of bounds access during output registration txtify archive
CVE-2026-43308 btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2026-48854 Unbounded request body accumulation causes memory exhaustion in elixir-grpc/grpc txtify archive
New Abuse of the ClickOnce Technology, Part 2: Stop Threat Actors from Clicking Once and Staying Forever txtify archive
New Abuse of the ClickOnce Technology, Part 1: The Inner Workings of ClickOnce Application Deployment txtify archive
Secretary of War Pete Hegseth Hosted Bilateral Meeting With the Italian Republic Defense Minister His Excellency Guido Crosetto at the Pentagon txtify archive
CVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability txtify archive
CVE-2026-45602 Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability txtify archive
CVE-2026-54411 Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate's length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext. txtify archive
Secretary of War Pete Hegseth Greets His Excellency Daniel Noboa, the President of the Republic of Ecuador txtify archive
Public and Private Medical Community Targeted by China-Nexus Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research txtify archive
CVE-2026-49762 Unbounded integer parsing in the Version module enables CPU and memory exhaustion denial of service txtify archive
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory txtify archive
CVE-2026-11526 GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle txtify archive
CVE-2026-42768 Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() txtify archive
CVE-2026-40034 gitoxide - Command Injection via Partial .gitmodules Override in gix-submodule txtify archive
CVE-2026-5223 Crates in third party registries can override the cached source of other crates txtify archive
CVE-2023-5678 Excessive time spent in DH check / generation with large Q parameter value txtify archive
CVE-2026-45446 Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes txtify archive
CVE-2026-42768 Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() txtify archive
CVE-2026-44705 tmp: Path Traversal via unsanitized prefix/postfix enables directory escape txtify archive
CVE-2026-47162 Vim: Vimscript Code Injection in netrw NetrwBookHistSave() via crafted directory name txtify archive
CVE-2026-47167 Vim: Vimscript Code Injection in cucumber filetype plugin via crafted step-definition regex txtify archive
CVE-2026-46643 Snappy: Binary path is never shell-escaped due to an inverted is_executable check txtify archive
CVE-2026-8829 HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities txtify archive
CVE-2026-5419 Guntls: gnutls: information disclosure via timing side-channel in pkcs#7 padding removal txtify archive
CVE-2026-11332 Ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution txtify archive
CVE-2026-42012 Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans txtify archive
CVE-2026-5260 Gnutls: gnutls: information disclosure via heap overread in rsa key exchange txtify archive
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling txtify archive
CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name txtify archive
CVE-2026-50263 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow() txtify archive
CVE-2026-50258 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels txtify archive
CVE-2026-50257 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence() txtify archive
CVE-2026-50259 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing txtify archive
CVE-2026-50260 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter() txtify archive
CVE-2026-50262 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes txtify archive
CVE-2026-50256 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch txtify archive
CVE-2026-50261 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter() txtify archive
CVE-2026-10879 DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders txtify archive
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service txtify archive
CVE-2026-44185 Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request` txtify archive
CVE-2026-44631 Apache HTTP Server: Heap Underflow in `ap_regname` via Signed Char Overflow txtify archive
CVE-2026-43951 Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash txtify archive
CVE-2026-44119 Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules txtify archive
CVE-2026-48913 Apache HTTP Server: mod_http2 memory corruption when file handles exhausted txtify archive
How Predators use Marketing Tools, AI & Bad UK Regulations to get into your Kid’s Bedroom The Digital Predator Toolkit "Yellow Bus" comments txtify archive
CVE-2026-45482 Microsoft Visual Studio Code CoPilot Chat Security Feature Bypass Vulnerability txtify archive
CVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability txtify archive
CISA Issues New Directive Improving How Federal Agencies Prioritize the Mitigation of Cyber Vulnerabilities txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-49762 Unbounded integer parsing in the Version module enables CPU and memory exhaustion denial of service txtify archive
CVE-2026-43059 Bluetooth: MGMT: Fix list corruption and UAF in command complete handlers txtify archive
CVE-2026-46293 clk: microchip: mpfs-ccc: fix out of bounds access during output registration txtify archive
CVE-2026-46280 lib: test_hmm: evict device pages on file close to avoid use-after-free txtify archive
CVE-2026-46275 Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths txtify archive
Blinding the Watchmen: Abusing Cloud Logging Services for Defense Evasion and Visibility txtify archive
CVE-2025-10263 ARM: CVE-2025-10263 Completion of affected memory accesses might not be guaranteed by completion of a TLBI [kernel] txtify archive
CVE-2026-40409 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-40404 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-33828 Windows Device Health Attestation (DHA) Elevation of Privilege Vulnerability txtify archive
CVE-2026-34335 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45487 Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-45639 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability txtify archive
CVE-2026-45606 Microsoft UxTheme Library (uxtheme.dll) Denial of Service Vulnerability txtify archive
CVE-2026-45642 Microsoft Azure Attestation service and Device Health Attestation Service Spoofing Vulnerability txtify archive
CVE-2026-45648 Windows Active Directory Domain Services Remote Code Execution Vulnerability txtify archive
CVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability txtify archive
CVE-2026-45482 Microsoft Visual Studio Code CoPilot Chat Extension Security Feature Bypass Vulnerability txtify archive
CVE-2026-45586 Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege Vulnerability txtify archive
CVE-2026-45594 Windows Application Identity (AppID) Information Disclosure Vulnerability txtify archive
CVE-2026-45597 Windows UI Automation Manager (uiamanager.dll) Elevation of Privilege Vulnerability txtify archive
CVE-2026-45601 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45598 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45596 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45602 Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability txtify archive
CVE-2026-45638 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45603 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45647 Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability txtify archive
CVE-2026-42910 Windows Hotpatch Monitoring Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-42836 Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability txtify archive
CVE-2026-42908 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability txtify archive
CVE-2026-42911 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-44809 Windows Common Log File System Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-44805 Windows Network Controller (NC) Host Agent Denial of Service Vulnerability txtify archive
CVE-2020-17103 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory txtify archive
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory txtify archive
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service txtify archive
CVE-2026-10722 cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow txtify archive
CVE-2026-37460 Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. txtify archive
CVE-2026-50219 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetBuffer, XML_Parse, XML_ParseBuffer, XML_ParserFree, or XML_ParserReset from within handlers in cases of a policy violation. Thus, a use-after-free can occur, txtify archive
CVE-2026-50292 In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution txtify archive
CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto txtify archive
CVE-2026-50031 ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is implemented by a large number of hardware manufacturers to support system management. It is most commonly used for sensor reading (e.g., CPU temperatures through the ipmi-sensors command within FreeIPMI) and remote power control (the ipmipower command). The ipmi-oem client command implements a set of a IPMI OEM commands for specific hardware vendors. If a user has supported hardware, they may wish to use the ipmi-oem command to send a request to a server to retrieve specific information. Two subcommands "ipmi-oem dell get-active-directory-config" and "ipmi-oem fujitsu get-sel-entry-long-text" were found to have exploitable buffer overflows on response messages. txtify archive
CVE-2026-48959 IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward txtify archive
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date txtify archive
CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob txtify archive
CVE-2026-42790 nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification txtify archive
CVE-2026-42789 Non-CA certificate accepted as intermediate issuer in public_key path validation txtify archive
CVE-2026-40510 OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c txtify archive
CVE-2026-42496 Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution txtify archive
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile txtify archive
CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile txtify archive
CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template txtify archive
CVE-2026-50263 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow() txtify archive
CVE-2026-50258 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels txtify archive
CVE-2026-50257 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence() txtify archive
CVE-2026-50259 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing txtify archive
CVE-2026-50260 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter() txtify archive
CVE-2026-50262 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes txtify archive
CVE-2026-50256 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch txtify archive
CVE-2026-50261 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter() txtify archive
CVE-2026-10879 DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders txtify archive
CVE-2026-40930 LIBPNG: Chunk smuggling in push-mode APNG parser via unconsumed chunk body txtify archive
CVE-2026-50265 Rejected reason: This CVE ID was assigned as a duplicate of CVE-2026-50292 txtify archive
The women raped by the Taliban: Victims describe horrific sexual abuse at the hands of multiple men as punishment for getting a job or posting on social media txtify archive
CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory txtify archive
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory txtify archive
CVE-2026-8829 HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities txtify archive
CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service txtify archive
CVE-2026-5419 Guntls: gnutls: information disclosure via timing side-channel in pkcs#7 padding removal txtify archive
CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto txtify archive
CVE-2026-37460 Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. txtify archive
CVE-2026-10722 cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow txtify archive
CVE-2026-50219 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetBuffer, XML_Parse, XML_ParseBuffer, XML_ParserFree, or XML_ParserReset from within handlers in cases of a policy violation. Thus, a use-after-free can occur, txtify archive
CVE-2026-11332 Ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution txtify archive
Inside the Russian resistance looking to bring down Putin: Exclusive footage shows pro-Ukraine 'Black Spark' rebels 'carrying out bomb attacks on strategic targets' txtify archive
Inside South Africa's whites-only enclave where young people are flocking after deciding 'it's not so wonderful elsewhere' and it's nicer to be 'the majority' txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file txtify archive
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-43964 Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number. txtify archive
CVE-2026-41140 Poetry: Path traversal in tar extraction on Python 3.10.0 - 3.10.12 and 3.11.0 - 3.11.4 txtify archive
CVE-2026-35414 OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters. txtify archive
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API txtify archive
CVE-2026-8177 XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences txtify archive
CVE-2026-43895 jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts txtify archive
CVE-2026-43894 jq: Wild stack write via signed-integer overflow in decNumber D2U() macro txtify archive
CVE-2026-40226 In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file. txtify archive
CVE-2026-5223 Crates in third party registries can override the cached source of other crates txtify archive
CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile txtify archive
CVE-2026-41889 pgx: SQL Injection via placeholder confusion with dollar quoted string literals txtify archive
CVE-2026-8466 Unbounded buffer accumulation in multipart header parsing causes denial of service in cowboy txtify archive
CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile txtify archive
CVE-2026-39834 Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh txtify archive
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls txtify archive
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil txtify archive
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh txtify archive
CVE-2026-39830 Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh txtify archive
CVE-2026-32282 TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix txtify archive
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go txtify archive
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2025-13462 tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-33846 Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly txtify archive
CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template txtify archive
CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution txtify archive
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-6383 Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation txtify archive
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences txtify archive
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 txtify archive
CVE-2026-37457 An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component. txtify archive
CVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x509 txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2025-60876 BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20). txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http txtify archive
CVE-2026-4948 Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization txtify archive
CVE-2026-3087 shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs txtify archive
CVE-2026-40356 In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message. txtify archive
CVE-2025-55554 pytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long(). txtify archive
CVE-2026-40355 In MIT Kerberos 5 (aka krb5) before 1.22.3, there is a NULL pointer dereference if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, causing the process to terminate in parse_nego_message. txtify archive
CVE-2025-55551 An issue in the component torch.linalg.lu of pytorch v2.8.0 allows attackers to cause a Denial of Service (DoS) when performing a slice operation. txtify archive
CVE-2026-41526 In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading to an escape from the shell. All applications relying on this method in a security-critical path to handle user input are affected and could be exploited. In particular, because sendInput() sends a string to a terminal, a control character such as \x01 can be used during injection. txtify archive
CVE-2026-42009 Gnutls: gnutls: denial of service via dtls packet reordering vulnerability txtify archive
CVE-2024-58266 The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection. txtify archive
CVE-2026-45803 gh: GitHub Actions log output in `gh run view` allows terminal escape sequence injection txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2025-46327 Go Snowflake Driver has race condition when checking access to Easy Logging configuration file txtify archive
CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address txtify archive
CVE-2025-46394 In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences. txtify archive
CVE-2026-8368 LWP::UserAgent versions before 6.83 for Perl leak Authorization and Proxy-Authorization headers on cross-origin redirects txtify archive
CVE-2024-58251 In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim. txtify archive
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 txtify archive
CVE-2025-29923 go-redis allows potential out of order responses when `CLIENT SETINFO` times out during connection establishment txtify archive
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS txtify archive
CVE-2026-43969 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 txtify archive
CVE-2024-7598 Network restriction bypass via race condition during namespace termination txtify archive
CVE-2026-40225 In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output. txtify archive
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection txtify archive
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command txtify archive
CVE-2025-1180 GNU Binutils ld elf-eh-frame.c _bfd_elf_write_section_eh_frame memory corruption txtify archive
CVE-2024-30896 InfluxDB OSS 2.x through 2.7.11 stores the administrative operator token under the default organization which allows authorized users with read access to the authorization resource of the default organization to retrieve the operator token. InfluxDB OSS 1.x, Enterprise, Cloud, Cloud Dedicated and Clustered are not affected. NOTE: The researcher states that InfluxDB allows allAccess administrators to retrieve all raw tokens via an "influx auth ls" command. The supplier indicates that the organizations feature is operating as intended and that users may choose to add users to non-default organizations. A future release of InfluxDB 2.x will remove the ability to retrieve tokens from the API. txtify archive
CVE-2026-42304 Twisted: Denial of Service (DoS) in twisted.names via Crafted DNS Compression Pointer Chains txtify archive
CVE-2019-11254 Kubernetes API Server denial of service vulnerability from malicious YAML payloads txtify archive
CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open() txtify archive
CVE-2013-1633 easy_install in setuptools before 0.7 uses HTTP to retrieve packages from the PyPI repository, and does not perform integrity checks on package contents, which allows man-in-the-middle attackers to execute arbitrary code via a crafted response to the default use of the product. txtify archive
CVE-2026-6100 Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure txtify archive
CVE-2023-27043 The email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wrong portion of an RFC2822 header is identified as the value of the addr-spec. In some applications, an attacker can bypass a protection mechanism in which application access is granted only after verifying receipt of e-mail to a specific domain (e.g., only @company.example.com addresses may be used for signup). This occurs in email/_parseaddr.py in recent versions of Python. txtify archive
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date txtify archive
CVE-2026-25833 Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function txtify archive
CVE-2026-34873 An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. txtify archive
CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0. txtify archive
CVE-2025-15504 lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference txtify archive
CVE-2026-34875 An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys. txtify archive
CVE-2026-34871 An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG). txtify archive
CVE-2026-21711 A flaw in Node.js Permission Model network enforcement leaves Unix Domain Socket (UDS) server operations without the required permission checks, while all comparable network paths correctly enforce them. As a result, code running under `--permission` without `--allow-net` can create and expose local IPC endpoints, allowing communication with other processes on the same host outside of the intended network restriction boundary. This vulnerability affects Node.js **25.x** processes using the Permission Model where `--allow-net` is intentionally omitted to restrict network access. Note that `--allow-net` is currently an experimental feature. txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-25835 Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). txtify archive
CVE-2026-33672 Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching txtify archive
CVE-2026-34872 An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle). txtify archive
CVE-2017-3736 There is a carry propagating bug in the x86_64 Montgomery squaring procedure in OpenSSL before 1.0.2m and 1.1.0 before 1.1.0g. No EC algorithms are affected. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be very significant and likely only accessible to a limited number of attackers. An attacker would additionally need online access to an unpatched system using the target private key in a scenario with persistent DH parameters and a private key that is shared between multiple clients. This only affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen. txtify archive
CVE-2025-66442 In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected. txtify archive
CVE-2026-34876 An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API. txtify archive
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling txtify archive
CVE-2026-9538 Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header txtify archive
CVE-2026-7259 Null pointer dereference in php_mb_check_encoding() via mb_ereg_search_init() txtify archive
CVE-2026-7262 NULL pointer dereference in SOAP apache:Map decoder with missing <value> txtify archive
CVE-2026-46121 mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock txtify archive
CVE-2026-7261 SoapServer session-persisted object use-after-free via SOAP header fault txtify archive
CVE-2026-35579 CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports txtify archive
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure txtify archive
CVE-2026-6402 webpack-dev-server vulnerable to cross-origin source code exposure on non-HTTPS origins txtify archive
CVE-2026-41080 libexpat before 2.8.0 uses insufficient entropy, and thus hash flooding can occur via a crafted XML document. txtify archive
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2026-39834 Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-39830 Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh txtify archive
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39832 Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-42508 Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-21717 A flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8's internal string table, an attacker can significantly degrade performance of the Node.js process. The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table. This vulnerability affects **20.x, 22.x, 24.x, and 25.x**. txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh txtify archive
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna txtify archive
CVE-2026-46595 Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/x/crypto/ssh txtify archive
CVE-2026-39831 Invoking bypass of FIDO/U2F security keys physical interaction in golang.org/x/crypto/ssh txtify archive
CVE-2026-39824 Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows txtify archive
CVE-2025-14575 Uncontrolled Search Path Element in Qt Network OpenSSL TLS backend allows rogue CA certificate loading txtify archive
CVE-2026-8723 qs.stringify crashes on null/undefined entries in comma-format arrays under encodeValuesOnly txtify archive
CVE-2026-42009 Gnutls: gnutls: denial of service via dtls packet reordering vulnerability txtify archive
CVE-2025-23167 A flaw in Node.js 20's HTTP parser allows improper termination of HTTP/1 headers using `\r\n\rX` instead of the required `\r\n\r\n`. This inconsistency enables request smuggling, allowing attackers to bypass proxy-based access controls and submit unauthorized requests. The issue was resolved by upgrading `llhttp` to version 9, which enforces correct header termination. Impact: * This vulnerability affects only Node.js 20.x users prior to the `llhttp` v9 upgrade. txtify archive
CVE-2026-48959 IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward txtify archive
CVE-2026-6324 Libsoup: libsoup: http request smuggling via unsigned to signed conversion error txtify archive
CVE-2026-10028 Glib-networking: infinite loop in glib-networking gnutls backend allows remote denial of service via circular certificate chain txtify archive
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-21717 A flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8's internal string table, an attacker can significantly degrade performance of the Node.js process. The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table. This vulnerability affects **20.x, 22.x, 24.x, and 25.x**. txtify archive
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) txtify archive
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) txtify archive
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) txtify archive
CVE-2025-23167 A flaw in Node.js 20's HTTP parser allows improper termination of HTTP/1 headers using `\r\n\rX` instead of the required `\r\n\r\n`. This inconsistency enables request smuggling, allowing attackers to bypass proxy-based access controls and submit unauthorized requests. The issue was resolved by upgrading `llhttp` to version 9, which enforces correct header termination. Impact: * This vulnerability affects only Node.js 20.x users prior to the `llhttp` v9 upgrade. txtify archive
CVE-2024-36137 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-write flag is used. Node.js Permission Model do not operate on file descriptors, however, operations such as fs.fchown or fs.fchmod can use a "read-only" file descriptor to change the owner and permissions of a file. txtify archive
CVE-2024-22018 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-read flag is used. This flaw arises from an inadequate permission model that fails to restrict file stats through the fs.lstat API. As a result, malicious actors can retrieve stats from files that they do not have explicit read access to. This vulnerability affects all users using the experimental permission model in Node.js 20 and Node.js 21. Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js. txtify archive
CVE-2026-40034 gitoxide - Command Injection via Partial .gitmodules Override in gix-submodule txtify archive
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date txtify archive
CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob txtify archive
CVE-2026-25833 Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function txtify archive
CVE-2026-34873 An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. txtify archive
CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0. txtify archive
CVE-2025-15504 lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference txtify archive
CVE-2026-34875 An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys. txtify archive
CVE-2026-34871 An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG). txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-25835 Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). txtify archive
CVE-2026-33672 Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching txtify archive
CVE-2026-34872 An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle). txtify archive
CVE-2017-3736 There is a carry propagating bug in the x86_64 Montgomery squaring procedure in OpenSSL before 1.0.2m and 1.1.0 before 1.1.0g. No EC algorithms are affected. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be very significant and likely only accessible to a limited number of attackers. An attacker would additionally need online access to an unpatched system using the target private key in a scenario with persistent DH parameters and a private key that is shared between multiple clients. This only affects processors that support the BMI1, BMI2 and ADX extensions like Intel Broadwell (5th generation) and later or AMD Ryzen. txtify archive
CVE-2025-66442 In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected. txtify archive
CVE-2026-34876 An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API. txtify archive
CVE-2026-48864 Libsolv: heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data txtify archive
CVE-2026-9804 Kubevirt: kubevirt: vmexport directory symlink escape enables exporter pod file read txtify archive
CVE-2026-7374 Kubevirt: kubevirt virt-handler: privilege escalation and node compromise via symlink following vulnerability txtify archive
CVE-2026-42012 Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans txtify archive
CVE-2026-5260 Gnutls: gnutls: information disclosure via heap overread in rsa key exchange txtify archive
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling txtify archive
CVE-2026-42013 Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name txtify archive
CVE-2026-42790 nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification txtify archive
CVE-2026-42789 Non-CA certificate accepted as intermediate issuer in public_key path validation txtify archive
CVE-2026-40510 OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c txtify archive
CVE-2026-21711 A flaw in Node.js Permission Model network enforcement leaves Unix Domain Socket (UDS) server operations without the required permission checks, while all comparable network paths correctly enforce them. As a result, code running under `--permission` without `--allow-net` can create and expose local IPC endpoints, allowing communication with other processes on the same host outside of the intended network restriction boundary. This vulnerability affects Node.js **25.x** processes using the Permission Model where `--allow-net` is intentionally omitted to restrict network access. Note that `--allow-net` is currently an experimental feature. txtify archive
Secretary of War Pete Hegseth Holds a Press Availability at the U.S. Embassy in Singapore txtify archive
CVE-2026-46138 Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt txtify archive
CVE-2026-46196 tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() txtify archive
CVE-2026-46149 scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show() txtify archive
CVE-2026-46180 wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task txtify archive
CVE-2026-46209 drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() txtify archive
CVE-2026-46174 x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache txtify archive
CVE-2026-46121 mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock txtify archive
CVE-2026-46147 KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() txtify archive
CVE-2026-46187 wifi: rsi: fix kthread lifetime race between self-exit and external-stop txtify archive
CVE-2026-46227 sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL txtify archive
CVE-2026-26168 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-24293 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-41088 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-45859 netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation txtify archive
CVE-2026-46033 crypto: authencesn - reject short ahash digests during instance creation txtify archive
CVE-2026-46094 ext4: fix bounds check in check_xattrs() to prevent out-of-bounds access txtify archive
CVE-2026-45934 btrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation txtify archive
CVE-2026-46174 x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache txtify archive
CVE-2026-46121 mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock txtify archive
CVE-2026-9538 Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header txtify archive
CVE-2026-42497 Archive::Tar versions before 3.08 for Perl extract hardlinks to attacker controlled paths outside the extraction directory txtify archive
CVE-2026-42496 Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory txtify archive
CVE-2026-46138 Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt txtify archive
CVE-2026-46147 KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() txtify archive
CVE-2026-46187 wifi: rsi: fix kthread lifetime race between self-exit and external-stop txtify archive
CVE-2026-46227 sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL txtify archive
CVE-2026-46132 net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfinfo txtify archive
CVE-2026-46196 tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() txtify archive
CVE-2026-46149 scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show() txtify archive
CVE-2026-46159 btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-leak txtify archive
CVE-2026-46180 wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task txtify archive
CVE-2026-46209 drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() txtify archive
CVE-2026-5223 Crates in third party registries can override the cached source of other crates txtify archive
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file txtify archive
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums txtify archive
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2026-46094 ext4: fix bounds check in check_xattrs() to prevent out-of-bounds access txtify archive
CVE-2026-45934 btrfs: fix EEXIST abort due to non-consecutive gaps in chunk allocation txtify archive
CVE-2026-45956 drm/exynos: vidi: use priv->vidi_dev for ctx lookup in vidi_connection_ioctl() txtify archive
CVE-2026-46065 fbdev: defio: Disconnect deferred I/O from the lifetime of struct fb_info txtify archive
CVE-2026-45859 netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation txtify archive
CVE-2026-46040 inotify: fix watch count leak when fsnotify_add_inode_mark_locked() fails txtify archive
CVE-2026-45571 go-git: Crafted repositories may modify main and submodule .git directories txtify archive
CVE-2026-46033 crypto: authencesn - reject short ahash digests during instance creation txtify archive
CVE-2026-46088 ALSA: control: Validate buf_len before strnlen() in snd_ctl_elem_init_enum_names() txtify archive
CVE-2026-46075 crypto: atmel-sha204a - Fix potential UAF and memory leak in remove path txtify archive
CVE-2026-46011 media: mtk-jpeg: fix use-after-free in release path due to uncancelled work txtify archive
CVE-2026-40225 In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output. txtify archive
CVE-2026-40226 In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file. txtify archive
CVE-2026-5223 Crates in third party registries can override the cached source of other crates txtify archive
CVE-2026-8466 Unbounded buffer accumulation in multipart header parsing causes denial of service in cowboy txtify archive
CVE-2026-6402 webpack-dev-server vulnerable to cross-origin source code exposure on non-HTTPS origins txtify archive
CVE-2026-9149 Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file txtify archive
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums txtify archive
CVE-2026-42508 Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts txtify archive
CVE-2026-46595 Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/x/crypto/ssh txtify archive
CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-39832 Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent txtify archive
CVE-2026-39834 Invoking infinite loop on large channel writes in golang.org/x/crypto/ssh txtify archive
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh txtify archive
CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-39831 Invoking bypass of FIDO/U2F security keys physical interaction in golang.org/x/crypto/ssh txtify archive
CVE-2026-46597 Invoking byte arithmetic causes underflow and panic in golang.org/x/crypto/ssh txtify archive
CVE-2026-39830 Invoking client can cause server deadlock on unexpected responses in golang.org/x/crypto/ssh txtify archive
CVE-2026-39829 Invoking pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh txtify archive
CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html txtify archive
CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-39824 Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows txtify archive
CVE-2026-25680 Invoking denial of service when parsing arbitrary HTML in golang.org/x/net/html txtify archive
CVE-2026-42506 Invoking incorrect handling of namespaced elements in foreign content in golang.org/x/net/html txtify archive
CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna txtify archive
CVE-2026-8376 Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds txtify archive
CVE-2026-43503 net: skbuff: propagate shared-frag marker through frag-transfer helpers txtify archive
CISA Announces Revised Town Hall Schedule to Engage with Stakeholders on Cyber Incident Reporting for Critical Infrastructure txtify archive
CVE-2026-44283 etcd: Read access via PrevKv in etcd transactions may bypass RBAC authorization checks txtify archive
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 txtify archive
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-41054 Missing exit out of permission check in haveged could lead to root exploit txtify archive
CVE-2026-7246 Pallets Click contains a command injection via Unsanitized Filename "click.edit()" txtify archive
CVE-2026-44390 Unbounded name compression in certain cases causes degradation of service txtify archive
CVE-2025-51480 Path Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0 allows attackers to overwrite arbitrary files by supplying crafted external_data.location paths containing traversal sequences, bypassing intended directory restrictions. txtify archive
CVE-2026-41035 In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable. txtify archive
CVE-2026-42960 Possible cache poisoning via promiscuous records for the authority section txtify archive
CVE-2026-29518 Rsync < 3.4.3 TOCTOU Race Condition Allows Symlink-Based Arbitrary File Write txtify archive
CVE-2025-14575 Uncontrolled Search Path Element in Qt Network OpenSSL TLS backend allows rogue CA certificate loading txtify archive
CVE-2026-8723 qs.stringify crashes on null/undefined entries in comma-format arrays under encodeValuesOnly txtify archive
CVE-2026-41054 Missing exit out of permission check in haveged could lead to root exploit txtify archive
CVE-2026-42009 Gnutls: gnutls: denial of service via dtls packet reordering vulnerability txtify archive
CVE-2026-3593 Heap use-after-free vulnerability in BIND 9 DNS-over-HTTPS implementation txtify archive
Media Invitation Announced for United States v. Khalid Shaikh Mohammad et al. Pre-Trial Hearing txtify archive
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing txtify archive
CVE-2026-43416 powerpc, perf: Check that current->mm is alive before getting user callchain txtify archive
CVE-2026-23272 netfilter: nf_tables: unconditionally bump set->nelems before insertion txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2025-38585 staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() txtify archive
CVE-2025-38269 btrfs: exit after state insertion failure at btrfs_convert_extent_bit() txtify archive
CVE-2025-38279 bpf: Do not include stack ptr register in precision backtracking bookkeeping txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2026-31771 Bluetooth: hci_event: move wake reason storage into validated event handlers txtify archive
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() txtify archive
CVE-2026-43049 HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2025-37861 scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue txtify archive
CVE-2024-26672 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' txtify archive
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED txtify archive
CVE-2025-39932 smb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work) txtify archive
CVE-2025-39905 net: phylink: add lock for serializing concurrent pl->phydev writes with resolver txtify archive
CVE-2026-31767 drm/i915/dsi: Don't do DSC horizontal timing adjustments in command mode txtify archive
CVE-2024-50217 btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() txtify archive
CVE-2026-43496 net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peeked txtify archive
CVE-2026-43495 net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handler txtify archive
Military Commissions Media Invitation Announced for United States v. Abd al-Rahim al-Nashiri Pre-Trial Hearing txtify archive
CVE-2026-43970 Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame txtify archive
CVE-2026-45803 gh: GitHub Actions log output in `gh run view` allows terminal escape sequence injection txtify archive
CVE-2026-44390 Unbounded name compression in certain cases causes degradation of service txtify archive
CVE-2026-42960 Possible cache poisoning via promiscuous records for the authority section txtify archive
CVE-2026-29518 Rsync < 3.4.3 TOCTOU Race Condition Allows Symlink-Based Arbitrary File Write txtify archive
CVE-2026-47783 In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass. txtify archive
CVE-2026-47784 In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by sasl_server_userdb_checkpass. txtify archive
CVE-2026-46483 Vim: Command injection in tar#Vimuntar via missing shellescape {special} flag txtify archive
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command txtify archive
CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address txtify archive
CVE-2026-7246 Pallets Click contains a command injection via Unsanitized Filename "click.edit()" txtify archive
CVE-2026-43443 ASoC: amd: acp-mach-common: Add missing error check for clock acquisition txtify archive
CVE-2026-44662 rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding txtify archive
CVE-2026-41673 xmldom: Denial of service via uncontrolled recursion in XML serialization txtify archive
CVE-2026-41675 xmldom: XML node injection through unvalidated processing instruction serialization txtify archive
CVE-2026-43868 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern txtify archive
CVE-2026-41082 In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory. txtify archive
CVE-2026-25833 Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow in the x509_inet_pton_ipv6() function txtify archive
CVE-2026-34872 An issue was discovered in Mbed TLS 3.5.x and 3.6.x through 3.6.5 and TF-PSA-Crypto 1.0. There is a lack of contributory behavior in FFDH due to improper input validation. Using finite-field Diffie-Hellman, the other party can force the shared secret into a small set of values (lack of contributory behavior). This is a problem for protocols that depend on contributory behavior (which is not the case for TLS). The attack can be carried by the peer, or depending on the protocol by an active network attacker (person in the middle). txtify archive
CVE-2026-34871 An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG). txtify archive
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection txtify archive
CVE-2026-34873 An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. txtify archive
CVE-2025-66442 In Mbed TLS through 4.0.0, there is a compiler-induced timing side channel (in RSA and CBC/ECB decryption) that only occurs with LLVM's select-optimize feature. TF-PSA-Crypto through 1.0.0 is also affected. txtify archive
CVE-2026-42011 Gnutls: gnutls: security bypass due to incorrect name constraint handling txtify archive
CVE-2026-25835 Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a Pseudo-Random Number Generator (PRNG). txtify archive
CVE-2026-34876 An issue was discovered in Mbed TLS 3.x before 3.6.6. An out-of-bounds read vulnerability in mbedtls_ccm_finish() in library/ccm.c allows attackers to obtain adjacent CCM context data via invocation of the multipart CCM API with an oversized tag_len parameter. This is caused by missing validation of the tag_len parameter against the size of the internal 16-byte authentication buffer. The issue affects the public multipart CCM API in Mbed TLS 3.x, where mbedtls_ccm_finish() can be invoked directly by applications. In Mbed TLS 4.x versions prior to the fix, the same missing validation exists in the internal implementation; however, the function is not exposed as part of the public API. Exploitation requires application-level invocation of the multipart CCM API. txtify archive
CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0. txtify archive
CVE-2026-3833 Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison txtify archive
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet txtify archive
CVE-2026-6210 Type confusion and heap-buffer-overflow in Qt SVG marker handling causing application crash txtify archive
CVE-2026-43176 wifi: rtw89: pci: validate release report content before using for RTL8922DE txtify archive
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go txtify archive
CVE-2026-40170 ngtcp2 has a qlog transport parameter serialization stack buffer overflow txtify archive
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil txtify archive
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference txtify archive
CVE-2026-31715 f2fs: fix UAF caused by decrementing sbi->nr_pages[] in f2fs_write_end_io() txtify archive
CVE-2026-3087 shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2026-45186 In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input. txtify archive
CVE-2026-42256 net-imap: Denial of service via high iteration count for `SCRAM-*` authentication txtify archive
CVE-2026-37459 An integer underflow in FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message. txtify archive
CVE-2026-37458 Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message. txtify archive
CVE-2026-28808 ScriptAlias CGI targets bypass directory auth in inets httpd (mod_auth vs mod_cgi path mismatch) txtify archive
CVE-2026-41080 libexpat before 2.8.0 uses insufficient entropy, and thus hash flooding can occur via a crafted XML document. txtify archive
CVE-2026-6477 PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory txtify archive
CVE-2026-42822 Azure Local Disconnected Operations (ALDO) Elevation of Privilege Vulnerability txtify archive
CVE-2026-43308 btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() txtify archive
CVE-2026-8328 FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address txtify archive
CVE-2026-8368 LWP::UserAgent versions before 6.83 for Perl leak Authorization and Proxy-Authorization headers on cross-origin redirects txtify archive
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection txtify archive
CVE-2026-44283 etcd: Read access via PrevKv in etcd transactions may bypass RBAC authorization checks txtify archive
CVE-2026-46483 Vim: Command injection in tar#Vimuntar via missing shellescape {special} flag txtify archive
CVE-2026-44662 rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding txtify archive
CVE-2026-44431 urllib3: Sensitive headers forwarded across origins in proxied low-level redirects txtify archive
CVE-2026-6479 PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion txtify archive
CVE-2026-6477 PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory txtify archive
CVE-2026-6472 PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege txtify archive
CVE-2026-6475 PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice txtify archive
CVE-2026-32161 Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 txtify archive
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS txtify archive
CVE-2026-43969 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 txtify archive
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection txtify archive
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command txtify archive
CVE-2026-42011 Gnutls: gnutls: security bypass due to incorrect name constraint handling txtify archive
CVE-2026-42304 Twisted: Denial of Service (DoS) in twisted.names via Crafted DNS Compression Pointer Chains txtify archive
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. txtify archive
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API txtify archive
CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload txtify archive
CVE-2026-6210 Type confusion and heap-buffer-overflow in Qt SVG marker handling causing application crash txtify archive
CVE-2026-8177 XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences txtify archive
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go txtify archive
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-31767 drm/i915/dsi: Don't do DSC horizontal timing adjustments in command mode txtify archive
CVE-2026-43895 jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts txtify archive
CVE-2026-43894 jq: Wild stack write via signed-integer overflow in decNumber D2U() macro txtify archive
CVE-2026-34343 Windows Application Identity (AppID) Subsystem Elevation of Privilege Vulnerability txtify archive
CVE-2026-34344 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-34345 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-35416 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-35418 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-40380 Windows Volume Manager Extension Driver Remote Code Execution Vulnerability txtify archive
CVE-2026-40407 Windows Common Log File System Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-40417 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability txtify archive
CVE-2026-41088 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-41109 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability txtify archive
CVE-2026-32161 Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability txtify archive
CVE-2026-33835 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-34337 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-34339 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability txtify archive
CVE-2026-34341 Windows Link-Layer Discovery Protocol (LLDP) Elevation of Privilege Vulnerability txtify archive
CVE-2026-40397 Windows Common Log File System Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-41086 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability txtify archive
CVE-2026-41103 Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege Vulnerability txtify archive
CVE-2026-42830 Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies txtify archive
Secretary of War Pete Hegseth Hosted Bilateral Meeting With the Republic of Korea Minister of National Defense Ahn Gyu-back at the Pentagon txtify archive
GTIG AI Threat Tracker: Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2026-31579 wireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit txtify archive
CVE-2026-43308 btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() txtify archive
CVE-2026-43294 drm: renesas: rz-du: mipi_dsi: fix kernel panic when rebooting for some panels txtify archive
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED txtify archive
CVE-2026-43299 btrfs: do not ASSERT() when the fs flips RO inside btrfs_repair_io_failure() txtify archive
CVE-2024-53201 drm/amd/display: Fix null check for pipe_ctx->plane_state in dcn20_program_pipe txtify archive
CVE-2026-43305 drm/amd/display: Fix mismatched unlock for DMUB HW lock in HWSS fast path txtify archive
CVE-2025-38585 staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() txtify archive
CVE-2025-38269 btrfs: exit after state insertion failure at btrfs_convert_extent_bit() txtify archive
CVE-2026-43443 ASoC: amd: acp-mach-common: Add missing error check for clock acquisition txtify archive
CVE-2025-38279 bpf: Do not include stack ptr register in precision backtracking bookkeeping txtify archive
CVE-2026-43300 drm/panel: Fix a possible null-pointer dereference in jdi_panel_dsi_remove() txtify archive
CVE-2025-71299 spi: cadence-quadspi: Parse DT for flashes with the rest of the DT parsing txtify archive
CVE-2026-43416 powerpc, perf: Check that current->mm is alive before getting user callchain txtify archive
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing txtify archive
CVE-2026-23272 netfilter: nf_tables: unconditionally bump set->nelems before insertion txtify archive
CVE-2024-36024 drm/amd/display: Disable idle reallow as part of command/gpint execution txtify archive
CVE-2025-40325 md/raid10: wait barrier before returning discard request with REQ_NOWAIT txtify archive
CVE-2024-50217 btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet txtify archive
CVE-2024-24856 NULL pointer deference in acpi_db_convert_to_package of Linux acpi module txtify archive
CVE-2024-57898 wifi: cfg80211: clear link ID from bitmap during link delete after clean up txtify archive
CVE-2025-22115 btrfs: fix block group refcount race in btrfs_create_pending_block_groups() txtify archive
CVE-2024-49945 net/ncsi: Disable the ncsi work before freeing the associated structure txtify archive
CVE-2025-21885 RDMA/bnxt_re: Fix the page details for the srq created by kernel consumers txtify archive
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() txtify archive
CVE-2024-47702 bpf: Fail verification for sign-extension of packet data/data_end/data_meta txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2024-47662 drm/amd/display: Remove register from DCN35 DMCUB diagnostic collection txtify archive
CVE-2024-46834 ethtool: fail closed if we can't get max channel used in indirection tables txtify archive
CVE-2026-31715 f2fs: fix UAF caused by decrementing sbi->nr_pages[] in f2fs_write_end_io() txtify archive
CVE-2024-46727 drm/amd/display: Add otg_master NULL check within resource_log_pipe_topology_update txtify archive
CVE-2024-1151 Kernel: stack overflow problem in open vswitch kernel module leading to dos txtify archive
CVE-2025-37861 scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue txtify archive
CVE-2026-31771 Bluetooth: hci_event: move wake reason storage into validated event handlers txtify archive
CVE-2026-43049 HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure txtify archive
CVE-2024-26672 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' txtify archive
CVE-2024-58089 btrfs: fix double accounting race when btrfs_run_delalloc_range() failed txtify archive
CVE-2024-25740 A memory leak flaw was found in the UBI driver in drivers/mtd/ubi/attach.c in the Linux kernel through 6.7.4 for UBI_IOCATT, because kobj->name is not released. txtify archive
CVE-2024-23848 In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c. txtify archive
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems. txtify archive
CVE-2026-7259 Null pointer dereference in php_mb_check_encoding() via mb_ereg_search_init() txtify archive
CVE-2026-7262 NULL pointer dereference in SOAP apache:Map decoder with missing <value> txtify archive
CVE-2026-7261 SoapServer session-persisted object use-after-free via SOAP header fault txtify archive
CVE-2026-42256 net-imap: Denial of service via high iteration count for `SCRAM-*` authentication txtify archive
CVE-2026-41889 pgx: SQL Injection via placeholder confusion with dollar quoted string literals txtify archive
CVE-2026-33079 Mistune ReDoS in LINK_TITLE_RE allows denial of service with crafted Markdown titles txtify archive
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil txtify archive
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response txtify archive
CVE-2026-4948 Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization txtify archive
CVE-2026-43274 mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq() txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2026-25589 RedisBloom RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-25588 RedisTimeSeries RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution txtify archive
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-41673 xmldom: Denial of service via uncontrolled recursion in XML serialization txtify archive
CVE-2026-41675 xmldom: XML node injection through unvalidated processing instruction serialization txtify archive
Chromium: CVE-2026-7944 Insufficient validation of untrusted input in Persistent Cache txtify archive
CVE-2026-33821 Microsoft Dynamics 365 Customer Insights Elevation of Privilege Vulnerability txtify archive
CVE-2026-41105 Azure Monitor Action Group Notification System Elevation of Privilege Vulnerability txtify archive
CVE-2026-33109 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability txtify archive
CVE-2026-40379 Microsoft Enterprise Security Token Service (ESTS) Spoofing Vulnerability txtify archive
CVE-2026-33844 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability txtify archive
CVE-2026-6383 Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation txtify archive
CVE-2026-34032 Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string) txtify archive
CVE-2026-34059 Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data() txtify archive
CVE-2026-33523 Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line txtify archive
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response txtify archive
CVE-2026-3833 Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison txtify archive
CVE-2026-28810 Predictable DNS Transaction IDs Enable Cache Poisoning in Built-in Resolver txtify archive
CVE-2026-43868 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet txtify archive
CVE-2026-43237 drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 txtify archive
CVE-2026-43191 drm/amd/display: Adjust PHY FSM transition to TX_EN-to-PLL_ON for TMDS on DCN35 txtify archive
CVE-2026-43274 mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq() txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2026-43176 wifi: rtw89: pci: validate release report content before using for RTL8922DE txtify archive
CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload txtify archive
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API txtify archive
CVE-2026-35579 CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports txtify archive
CVE-2026-32934 CoreDNS DNS-over-QUIC unbounded goroutine growth leads to denial of service txtify archive
CVE-2026-32936 CoreDNS DoH GET path missing size validation causes CPU and memory amplification txtify archive
CVE-2026-33489 CoreDNS transfer plugin subzone ACL bypass via lexicographic zone comparison txtify archive
CVE-2026-34003 Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access txtify archive
CVE-2026-33999 Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibility map handling txtify archive
CVE-2026-34001 Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption txtify archive
CVE-2026-41066 lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs of Staff Gen. Dan Caine Hold a Press Briefing txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference txtify archive
CVE-2026-27141 Sending certain HTTP/2 frames can cause a server to panic in golang.org/x/net txtify archive
CVE-2026-40170 ngtcp2 has a qlog transport parameter serialization stack buffer overflow txtify archive
CVE-2026-32148 Lockfile checksums not verified in Hex allows dependency integrity bypass txtify archive
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference txtify archive
CVE-2026-6846 Binutils: binutils: arbitrary code execution via malformed xcoff object file processing txtify archive
CVE-2026-31608 smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() txtify archive
CVE-2026-4948 Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization txtify archive
CVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization txtify archive
CVE-2026-27456 util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing txtify archive
CVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling txtify archive
CVE-2026-25645 Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility function txtify archive
CVE-2026-3731 libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds txtify archive
CVE-2026-3087 shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. txtify archive
CVE-2026-31609 smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush() txtify archive
CVE-2026-31608 smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() txtify archive
CVE-2026-31599 media: vidtv: fix NULL pointer dereference in vidtv_channel_pmt_match_sections txtify archive
CVE-2026-24051 OpenTelemetry-Go Affected by Arbitrary Code Execution via PATH Hijacking txtify archive
CVE-2026-41898 rust-openssl: Unchecked callback-returned length in PSK and cookie generate trampolines can cause OpenSSL to leak adjacent memory to the network peer txtify archive
CVE-2026-2708 Libsoup: libsoup: http request smuggling via duplicate content-length headers txtify archive
CVE-2026-5778 Integer underflow leads to out-of-bounds access in sniffer ChaCha decrypt path. txtify archive
CVE-2026-5295 Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OID txtify archive
CVE-2026-5503 out-of-bounds write in TLSX_EchChangeSNI via attacker-controlled publicName txtify archive
CVE-2026-34477 Apache Log4j Core: verifyHostName attribute silently ignored in TLS configuration, allowing hostname verification bypass txtify archive
CVE-2026-35206 Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment txtify archive
CVE-2026-3298 Out-of-bounds write in Windows asyncio.ProacterEventLoop.sock_recvfrom_into() when using nbytes txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2025-15504 lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference txtify archive
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls txtify archive
CVE-2026-41681 rust-openssl: MdCtxRef::digest_final() writes past caller buffer with no length check txtify archive
CVE-2026-41677 rust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized length txtify archive
CVE-2026-6409 Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input txtify archive
CVE-2026-34978 OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside CacheDir/rss (and clobbering of job.cache) txtify archive
CVE-2026-41676 rust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1 txtify archive
CVE-2026-31512 Bluetooth: L2CAP: Validate PDU length before reading SDU length in l2cap_ecred_data_rcv() txtify archive
CVE-2026-34073 cryptography has incomplete DNS name constraint enforcement on peer names txtify archive
CVE-2026-2100 P11-kit: p11-kit: null dereference via c_derivekey with specific null parameters txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-34043 Serialize JavaScript has CPU Exhaustion Denial of Service via crafted array-like objects txtify archive
CVE-2026-33916 Handlebars.js has Prototype Pollution Leading to XSS through Partial Template Injection txtify archive
CVE-2026-23422 dpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler txtify archive
CVE-2026-33542 Incus does not verify combined fingerprint when downloading images from simplestreams servers txtify archive
CVE-2026-31576 media: hackrf: fix to not free memory after the device is registered in hackrf_probe() txtify archive
CVE-2026-1005 Integer underflow leads to out-of-bounds access in sniffer AES-GCM/CCM/ARIA-GCM decrypt path txtify archive
CVE-2026-34480 Apache Log4j Core: Silent log event loss in XmlLayout due to unescaped XML 1.0 forbidden characters txtify archive
CVE-2026-34479 Apache Log4j 1 to Log4j 2 bridge: Silent log event loss in Log4j1XmlLayout due to unescaped XML 1.0 forbidden characters txtify archive
CVE-2026-34481 Apache Log4j JSON Template Layout: Improper serialization of non-finite floating-point values in JsonTemplateLayout txtify archive
CVE-2026-5460 Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3 txtify archive
CVE-2026-31500 Bluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock txtify archive
CVE-2026-31507 net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer txtify archive
CVE-2026-31619 ALSA: fireworks: bound device-supplied status before string array lookup txtify archive
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2026-31588 KVM: x86: Use scratch field in MMIO fragment to hold small write values txtify archive