Tag

#vulnerabilities

64 stories taggedvulnerabilities · page 4 of 5.

A large, modern data center with rows of servers, blue and green LED indicators, and a focus on security measures
AI Security

IBM and Red Hat Launch $5 Billion Initiative to Secure Open-Source Software

IBM and Red Hat invest heavily in Project Lightwell to address open-source software vulnerabilities revealed by Anthropic's AI.

3 min read
Apple devices like iPhones and Macbooks receiving updates, symbolizing increased security measures
AI Security

Apple Shifts Security Update Strategy Amid AI-Driven Cyber Threats

Apple now releases security patches more frequently to tackle the growing threats posed by AI-enhanced cyberattacks.

2 min read
Vulnerabilities

CISA Flags SharePoint Deserialization Bug CVE-2026-45659 as Actively Exploited

The RCE flaw joins KEV with a three-week federal patch deadline. Attribution details remain thin.

2 min read
Vulnerabilities

Apple Ships Multi-Component Patch Round Covering iOS, macOS, and Safari

Fixes land for WebKit, the kernel, WebRTC, and Web Extensions — touching every major Apple platform in a single release cycle.

2 min read
Vulnerabilities

Citrix Ships Fixes for Six NetScaler Bugs, Including a File-Read Flaw Scoring 8.8

The patch batch covers NetScaler ADC and Gateway, with input-validation and DoS issues that admins should not sit on.

2 min read
Vulnerabilities

CISA Flags Three Daktronics Controller Flaws That Could Let Attackers Hijack Highway Signs

A researcher found the vulnerabilities in controllers widely used to drive digital billboards and roadway message signs. Exploitation could mean someone else controls what drivers read.

2 min read
Vulnerabilities

DirtyClone: New Linux Kernel Flaw Hands Unprivileged Users the Root Keys

A page-cache manipulation bug related to DirtyFrag lets local, unprivileged attackers escalate to root — no credentials required beyond a shell.

2 min read
Vulnerabilities

CISA Flags Active Exploitation of Lantronix EDS5000 Code Injection Bug

CVE-2025-67038 carries a 9.8 CVSS. Federal agencies have until June 26, 2026 to patch — but if it's already being hit in the wild, that runway looks generous.

2 min read
Vulnerabilities

GitHub Tightens Security to Counter Pwn Request Attacks

GitHub introduces actions/checkout v7 to block insecure pull request workflows.

2 min read
Vulnerabilities

Microsoft's October Dump: 206 CVEs, Three Already Public

A record Patch Tuesday hauls in 39 Critical bugs and a trio of zero-days that were knocking around before the fix shipped.

2 min read
Vulnerabilities

Cisco SD-WAN Manager Bug Under Active Exploit, No Fix Yet

CVE-2026-20245 affects on-prem and FedRAMP deployments. Cisco confirms exploitation in the wild while customers wait on a patch.

2 min read
AI Security

Project Glasswing Expands: 150 More Companies Join AI Vulnerability Initiative

Anthropic's AI-driven bug-hunting project adds critical infrastructure partners, but the patching bottleneck looms.

2 min read
Vulnerabilities

CISA Adds Two-Year-Old Oracle WebLogic Flaw to KEV, Gives Feds Four Days to Patch

CVE-2024-21182 sat quietly at CVSS 7.3 for two years before threat actors noticed the unpatched stragglers. Now federal agencies have until Thursday.

2 min read
Policy & Regulation

Weekly Recap: Linux Privilege Flaw, PAN-OS Exploitation, and OAuth Phishing Surge

A patchy Monday across auth paths, repos, and dev tooling — with regulators watching the disclosure clock.

3 min read
AI Security

AI in Cyber Operations: From Scripts to Autonomous Systems

AI's role in cyber operations is not just about speed anymore. It's about scale and autonomy, reshaping offensive capabilities.

2 min read
© 2026 Threat Vectr