Anwendungssicherheit

Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution ANWENDUNGSSICHERHEIT

Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution

Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber. In...

21. Juli 2026 Keine Kommentare
🟠 CVE-2026-63809: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-63809: High Schwachstelle

In the Linux kernel, the following vulnerability has been resolved: bpf: use kvfree() for replaced sysctl write buffer proc_sys_call_handler() allocates...

21. Juli 2026 Keine Kommentare
🟠 CVE-2026-53390: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-53390: High Schwachstelle

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds read in smb_check_perm_dacl() The permission-check ACE walk...

21. Juli 2026 Keine Kommentare
🟠 CVE-2026-63831: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-63831: High Schwachstelle

In the Linux kernel, the following vulnerability has been resolved: mac802154: llsec: add skb_cow_data() before in-place crypto llsec_do_encrypt_unauth(), llsec_do_encrypt_auth(), llsec_do_decrypt_u...

21. Juli 2026 Keine Kommentare
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution ANWENDUNGSSICHERHEIT

Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow...

20. Juli 2026 Keine Kommentare
World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent ANWENDUNGSSICHERHEIT

World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of a hack...

20. Juli 2026 Keine Kommentare
🟡 CVE-2024-58370: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2024-58370: Medium Schwachstelle

SurrealDB versions before 1.1.0 fail to enforce recursion depth limits when parsing nested SurrealQL statements including IF, RELATE, and attribute...

20. Juli 2026 Keine Kommentare
🟠 CVE-2026-16154: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-16154: High Schwachstelle

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality...

20. Juli 2026 Keine Kommentare
🟠 CVE-2026-16152: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-16152: High Schwachstelle

A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file...

20. Juli 2026 Keine Kommentare
🟠 CVE-2026-16084: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-16084: High Schwachstelle

A weakness has been identified in Sipeed PicoClaw up to 0.2.9. This impacts the function web_fetch of the file pkg/tools/integration/web.go....

20. Juli 2026 Keine Kommentare