zkVM Underconstrained Vulnerability

Due to a missing constraint in the rv32im circuit, any 3-register RISC-V instruction (including remu and divu) in risc0-zkvm 2.0.0, 2.0.1, and 2.0.2 are vulnerable to an attack by a malicious prover. ...

Continue Reading
CVE-2025-48059 PowSyBl Core Contains a Polynomial ReDoS in RegexCriterion

PowSyBl (Power System Blocks) is a framework to build power system oriented software. In com.powsybl:powsybl-iidm-criteria versions 6.3.0 to before 6.7.2 and com.powsybl:powsybl-contingency-api versio ...

Continue Reading
CVE-2024-4994 Cross-Site Request Forgery (CSRF) in GitLab

An issue has been discovered in GitLab CE/EE affecting all versions from 16.1.0 before 16.11.5, all versions starting from 17.0 before 17.0.3, all versions starting from 17.1.0 before 17.1.1 which all ...

Continue Reading
CVE-2024-4994 Cross-Site Request Forgery (CSRF) in GitLab

An issue has been discovered in GitLab CE/EE affecting all versions from 16.1.0 before 16.11.5, all versions starting from 17.0 before 17.0.3, all versions starting from 17.1.0 before 17.1.1 which all ...

Continue Reading
Updated chromium-browser-stable packages fix security vulnerabilities

CVE-2025-5063: Use after free in Compositing. CVE-2025-5280: Out of bounds write in V8. CVE-2025-5064: Inappropriate implementation in Background Fetch API. CVE-2025-5065: Inappropriate implementation ...

Continue Reading
CVE-2025-52825

creation_timestamp| type| source ---|---|--- 2025-06-20 17:13:08+00:00| seen|...Read More ...

Continue Reading
CVE-2025-6193

creation_timestamp| type| source ---|---|--- 2025-06-20 16:40:48+00:00| seen|...Read More ...

Continue Reading
CVE-2025-32875

creation_timestamp| type| source ---|---|--- 2025-06-20 17:33:09+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: