Public entries tagged #vulnerability

New.

Pillar Security: Zero Click Unauthenticated RCE in n8n: A Contact Form That Executes Shell Commands pillar.security/blog/zero-clic

More:

The Hacker News: Critical n8n Flaws Allow Remote Code Execution and Exposure of Stored Credentials thehackernews.com/2026/03/crit @thehackernews

Continue reading →

🚨 CVE-2026-3826 (CRITICAL): WellChoose IFTOP PHP LFI lets unauthenticated attackers execute remote code. No patch yet. Isolate affected systems & monitor for LFI attempts. Act now to avoid full compromise! radar.offseq.com/threat/cve-20

Continue reading →

Medium-severity advisory from AMD:

CVE-2025-0037: Versal Adaptive SoC – Overwriting Protected Memory Regions through PLM Firmware amd.com/en/resources/product-s

A long list of advisories from Adobe: helpx.adobe.com/security/secur

Dell patches for multiple vulnerabilities:

Security Update for Dell Connectrix B-Series SANnav Vulnerabilities dell.com/support/kbdoc/en-us/0

Security Update for Dell Connectrix B-Series FOS and SANnav Vulnerabilities dell.com/support/kbdoc/en-us/0

Security Update for Dell Avamar Data Store Gen5A Multiple Third-Party Component Vulnerabilities dell.com/support/kbdoc/en-us/0

Continue reading →

New.

"Within three weeks of going viral, the project had published over 200 GitHub Security Advisories, but only a portion have corresponding CVE identifiers."

Socket: OpenClaw Advisory Surge Highlights Gaps Between GHSA and CVE Tracking socket.dev/blog/openclaw-advis @SocketSecurity

Continue reading →

The Conversation You Didn't Have

There's a particular ache in the things we don't say—the words we rehearse in the shower, the clarifications we prepare while falling asleep, the apologies or confessions that never quite make it across the table. This spring, consider one conversation you've been carrying with y

Continue reading →

🛡️ CVE-2026-3715: HIGH-severity stack overflow in Wavlink WL-WN579X3-C routers (v231124). Remote attackers can execute code w/o auth. Exploit code is public — patch to 20260226 now! radar.offseq.com/threat/cve-20

Continue reading →

🚨 CRITICAL CVE-2026-30861: Tencent WeKnora (0.2.5 – 0.2.9) OS command injection enables unauth RCE — full system compromise possible. Patch to 0.2.10 now! More info: radar.offseq.com/threat/cve-20

Continue reading →

Subscribe to #vulnerability entries via RSS feed