curl: Account/Repository Takeover via Abandoned GitHub Username in curl’s href_extractor.c

Vulnerability description not...Read More ...

Continue Reading
curl: Disk Space Exhaustion leading to a Denial of Service (DoS)

Vulnerability description not...Read More ...

Continue Reading
curl: ## Title Heap Use-After-Free Vulnerability in `curl` Leading to Potential Code Execution

Vulnerability description not...Read More ...

Continue Reading
Khan Academy: 337k users and 1 employee leaked credentials

The Khan Academy website experienced a data breach, resulting in the leakage of 337.7k user accounts and one employee account. The leaked credentials, including email addresses and passwords, were dis ...

Continue Reading
Node.js: CWE-195 in ExternalMemoryAccounter::Increase()

Vulnerability description not...Read More ...

Continue Reading
Tucows (VDP): Business Logic Error – Bypass of OTP Verification During Signup on hover.com

The Business Logic Error – Bypass of OTP Verification During Signup on hover.com was a vulnerability that allowed an attacker to register an account on www.hover.com using any email address without ...

Continue Reading
curl: WebSocket Fragmentation DoS on Curl Client

Vulnerability description not...Read More ...

Continue Reading
Node.js: Windows Device Names Still Allow Path Traversal in UNC Paths After CVE-2025-27210 Fix

Vulnerability description not...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: