-
Vulnerability Watch No15
Pre-Auth Heap Overflow in libssh2 Clients • libssh2 Bounds Check Bug Leaks Memory • Stored XSS Hits Loytec OPC XML-DA • Loytec Privilege Management Flaw Enables Password Resets • Critical Symlink Attack Leads to Root on Loytec…
-
Vulnerability Watch No12
Fastify Static Path Traversal Guard Bypass • facil.io WebSocket Parser Input Validation Flaw • Oracle Fusion Middleware Java Platform Takeover Risk • Oracle Java Security Component HTTP Compromise • Oracle Platform Security HTTP Takeover Vulnerability…
-
Vulnerability Watch No8
FeliCa IC Chips Exposed by Missing Cryptographic Step • Zyxel Router Command Injection Enables OS Command Execution • Public D-Link NAS Upload Flaw Allows Remote File Uploads • D-Link DNS-320 Faces Another Remote Upload Vulnerability • D-Link DNS-320 Upload Endpoint Vulnerable to Remote Abuse…
-
Vulnerability Watch No7
Network-AI Backup Prune Arbitrary File Deletion • xrdp DoS Bug Enables CPU Exhaustion • Network-AI Sandbox Bypass Leads to Command Execution • Network-AI MCP Server Authentication Bypass • WhatsApp MCP Server Exposes Files and Messaging…