Security researcher Norbert Szetei has unveiled a fully functional proof-of-concept exploit for CVE-2025-37947, a deterministic out-of-bounds write vulnerability in the Linux kernel’s ksmbd filesystem...
GitLab has released a critical security update addressing several denial-of-service (DoS) vulnerabilities in both Community Edition (CE) and Enterprise Edition (EE).
Organizations running self-managed...
Discord discovered that threat actors had gained unauthorized access to the customer service environment of Zendesk, the outsourced support provider that handles Discord’s Trust...
The vulnerabilities, designated as CVE-2025-42701 and CVE-2025-42706, both require attackers to have previously established code execution capabilities on the target system.
CVE-2025-42701 represents a...