Anwendungssicherheit
🟠 CVE-2026-13485: High Schwachstelle
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file...
🟠 CVE-2026-10643: High Schwachstelle
Zephyr's IP socket recvmsg() implementation (subsys/net/lib/sockets/sockets_inet.c, insert_pktinfo()) validated the user-supplied ancillary (msg_control) buffer using only the payload length (msg-msg_...
🔴 CVE-2026-58053: Critical Schwachstelle
Gitea act_runner with the Docker backend (through act 0.262.0) passes a workflow's container.options string to the Docker job container's HostConfig...
ANWENDUNGSSICHERHEIT
Unpatchable ‚usbliter8‘ Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
Security researchers at Paradigm Shift have published a working exploit, dubbed usbliter8, that achieves arbitrary code execution inside the SecureROM of Apple's A12...
ANWENDUNGSSICHERHEIT
Dawn of the Apex Agentic Adversary
We are standing at the end of an era we never thought to mourn: the era of human-speed threats. For...
🟠 CVE-2026-11702: High Schwachstelle
Bytes::Random::Secure::Tiny versions through 1.011 for Perl share internal state across forked processes. When an object is initialised before forking, then...
🟠 CVE-2026-11625: High Schwachstelle
Bytes::Random::Secure versions through 0.29 for Perl share internal state across forked processes. When an object is initialised before forking, or...
🟠 CVE-2026-10835: High Schwachstelle
The SALESmanago & Leadoo WordPress plugin before 3.11.3 does not properly sanitise and escape a parameter passed to one of...
🟠 CVE-2026-40711: High Schwachstelle
Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-powerflex v2.16.0, csi-powermax v2.16.0, contain(s) an Improper Neutralization of Special...
🟠 CVE-2026-56031: High Schwachstelle
Unauthenticated PHP Object Injection in Uncanny Automator