A critical vulnerability (CVE-2024-13059) in the open-source AI framework AnythingLLM was disclosed in February 2025, enabling attackers with administrative privileges to execute remote code...
A newly disclosed vulnerability in the Linux kernel’s ipset component, tracked as CVE-2024-53141, has raised significant security concerns after a proof-of-concept (PoC) exploit was...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding an actively exploited vulnerability in Microsoft Windows, tracked as CVE-2025-24054,...
A critical vulnerability (CVE-2025-32433) in Erlang/OTP's SSH implementation allows unauthenticated attackers to execute arbitrary code on vulnerable systems, earning the maximum CVSS score of...
The Cybersecurity and Infrastructure Security Agency (CISA) has released critical guidance following reports of potential unauthorized access to a legacy Oracle Cloud environment, raising...