Recent Advisories

Severity ID Title Vendor Product Date Type
NONE THN:AEE9050720F...

Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)_THN:AEE9050720F4221CAE4212FDF733F7E8

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiuT21gubKVL2cAsQrEiju_yAE3Pxe1IPxsl9RlGfhMEeis2IuQglnZjwTme6xM1_IJNymXFY1kZsouMGecR2...

N/A N/A THN
NONE THN:03D274E5DC0...

New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare_THN:03D274E5DC00F0C51BABA09EEB613CF0

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhP07q0cgsa0a9VyTU6oPpxqvoZ5Gg2spx-ClmUIzn9LjYzDfuKNxnLXNuXMexiMB8GjKewhk7CnAL5HXgpCL...

N/A N/A THN
NONE H1:3773293

curl: curl/libcurl 8.20.0 NOPROXY bypass via uppercase-hex IPv4 aliases leaks off-proxy Basic credentials to the configured proxy_H1:3773293

## Summary: curl/libcurl 8.20.0 fails to enforce `CURLOPT_NOPROXY`, `--noproxy`, and `NO_PROXY` consistently for uppercase-hex IPv4 aliases such as...

N/A N/A HACKERONE
NONE MALWAREBYTES:85...

These convincing copyright notices are designed to steal Google logins_MALWAREBYTES:85EC87F7CBD6CC83B7BF9E5573AE598C

A new scam is targeting people who publish Chrome extensions. The scam arrives as an official-looking "copyright removal request" claiming your e...

N/A N/A MALWAREBYTES
HIGH 8.4 THN:5042E49AA00...

Google June 2026 Android Update Patches 124 Flaws, One Actively Exploited_THN:5042E49AA00F0CB8BDF02D51DF7758F5

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgu6SfsDfrb_dr_5DP0MiwOMy86maTi3XyrtkQLw-sHAGlBZbhZ0uEfRkamwFqXGT4qNmVIqg6LQtaaRVLr_o...

N/A N/A THN
CRITICAL 9.8 AVLEONOV:68E701...

May Linux Patch Wednesday_AVLEONOV:68E7010A21B0F3420D3F6FE77C9479F4

![May Linux Patch Wednesday](https://avleonov.com/wp-content/uploads/2026/06/[email protected]) **May Linux Patch Wednesday.** A total of 1,638 vu...

N/A N/A AVLEONOV
NONE MSSECURE:B9ED78...

Microsoft Build 2026: Securing code, agents, and models across the development lifecycle_MSSECURE:B9ED7816138DDCF9595DC80BC4BD5769

In this article 1. Secure your code 2. Secure your agents 3. Trust agents with your data 4. Secure your models 5. Trust starts with secu...

N/A N/A MSSECURE
NONE HACKREAD:04E55A...

Fake ChatGPT Desktop App Ads Used to Push Password-Stealing Malware_HACKREAD:04E55A6848EC05ADD19EF1203CE058E7

Fake ChatGPT desktop app ads pushed password-stealing malware by abusing trusted AI links, hiding from scanners, and tricking users into downloads.

N/A N/A HACKREAD
NONE WIRED:CAC1E18E4...

Android Is Fighting Phone Scams With a New Feature to Prove Who’s Calling_WIRED:CAC1E18E4DDE17F26161566540D00A57

Available for Android 12 and later, the anti-scam feature is baked into Google Dialer, which sends a silent “confirmation signal” to ensure whoever...

N/A N/A WIRED
HIGH 7.5 THN:1DB8C609A00...

Oracle WebLogic CVE-2024-21182 Added to KEV Catalog After Active Exploitation_THN:1DB8C609A0019C07637C95FF2CBAEDDE

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjyTRAA7jrm-wO7d39ZhI2e75GnwqNE6t-CKpScXYfVikGGVRC4fYajbw5kn3aHqZc9rmbdjIqft5nwFLWAxC...

N/A N/A THN