Recent Advisories

Severity ID Title Vendor Product Date Type
NONE QUALYSBLOG:60D1...

Advancing Cybersecurity in the Age of Frontier AI: Qualys Steps into Project Glasswing_QUALYSBLOG:60D16A3D311E41CF4392798E379C6F5B

The cybersecurity industry has spent much of the last two years debating how attackers might use AI. That debate matters, but it misses a larger po...

N/A N/A QUALYSBLOG
NONE HACKREAD:1D37B2...

Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords_HACKREAD:1D37B22B6A0B5E80724BF3D61C9DD448

Threat actors are deploying an updated SHub Stealer variant named Reaper that exploits the native macOS Script Editor to bypass OS-level protection...

N/A N/A HACKREAD
NONE SCHNEIER:B1D260...

AI Worm_SCHNEIER:B1D2603916F84F7F7C9F6533DC094D65

Researchers have prototyped an AI-powered internet worm. The coolest thing about the prototype is that it carries its own LLM with it, and runs it...

N/A N/A SCHNEIER
NONE THN:38B4A872A5C...

New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework_THN:38B4A872A5CA191303381BD0807C4FBB

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiab_7FEmO4woH_bG4spUNJRFCFvvmpF9ggnhOlkIf7f0Ma7z4oEwL0MxFSe4CstBBQRLFsYxObArJESQWOkw...

N/A N/A THN
NONE EDB-ID:52609

WordPress Contest Gallery 28.1.4 – Unauthenticated Blind SQL Injection_EDB-ID:52609

Exploit Title: WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection Google Dork: N/A Date: 2026-06-02 Exploit Author: cardosource...

N/A N/A EXPLOITDB
MEDIUM 4.3 08A7282A-1685-

Exploit for Exposure of Sensitive Information to an Unauthorized Actor in Microsoft_08A7282A-1685-5425-BE60-4C9CA3030800

Security Vulnerability CVE-2026-33829 Overview A MEDIUM vulnerability, classified as CVE-2026-33829, has been identified, categorized under CWE-200...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 718B8940-9B73-

Exploit for Improper Input Validation in Unrealircd_718B8940-9B73-51E2-8CE6-791317706E69

CVE-2010-2075 – UnrealIRCd Backdoor Remote Code Execution Overview This repository documents the analysis and exploitation of CVE-2010-2075, a back...

N/A N/A GITHUBEXPLOIT
HIGH 8.3 CVE-2026-11237

CVE-2026-11237_CVE-2026-11237

Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the rende...

Google Chrome 149.0.7827.53 CVE
MEDIUM 5.4 CVE-2026-11232

CVE-2026-11232_CVE-2026-11232

Inappropriate implementation in TabGroups in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via malicious ne...

Google Chrome 149.0.7827.53 CVE
HIGH 8.8 CVE-2026-11188

CVE-2026-11188_CVE-2026-11188

Use after free in USB in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a cr...

Google Chrome 149.0.7827.53 CVE