Vulnerability in PRISMAproduction CVE-2026-3245 30 July 2026A deserialization vulnerability has been identified in PRISMAproduction which could allow an unauthenticated attacker on an adjacent network to execute arbitrary code.
SUSE local privilege escalation “Dirty Frag” CVE-2026-43284 18 May 2026SUSE has released a security update for the Linux kernel addressing the previously disclosed “Dirty Frag” vulnerabilities.
SUSE Linux “Copy Fail” vulnerability CVE-2026-31431 7 May 2026A vulnerability has been discovered in the SUSE Linux kernel which allows a local non-root user to gain full root access to the system.
React Server Components vulnerability CVE-2025-55182 12 December 2025A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1.1, and 19.2.0.
PRISMAproduce Tech Java CVE-2025-21587, CVE-2025-30749, CVE-2025-50059, CVE-2025-50106 and CVE-2024-21147 vulnerabilities 25 November 2025PRISMAproduce Tech Java CVE-2025-30749, CVE-2025-50059, CVE-2025-50106, CVE-2025-21587 and CVE-2024-21147 vulnerabilities.
“Shai-Hulud” worm 17 November 2025“Shai-Hulud” worm specifically engineered to exploit the Node Package Manager (npm) ecosystem.
Apache Log4net vulnerability CVE-2018-1285 28 July 2025Compromised Log4net.dll configuration file can lead to attacks in applications.
Artifex Ghostscript vulnerability CVE-2023-43115 14 December 2023Artifex Ghostscript versions prior to 10.02.0 can lead to remote code execution via crafted PostScript documents.
Libcurl/curl vulnerability CVE-2023-38545 and CVE-2023-38546 14 December 2023Curl heap based buffer overflow when asked to pass the host name to the SOCKS5 proxy to resolve address.
Artifex Ghostscript vulnerability CVE-2023-36664 27 July 2023Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).