Recent Advisories

Severity ID Title Vendor Product Date Type
NONE THN:2414BDDA7DE...

AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS._THN:2414BDDA7DE4F83ADAEFA4464541EB0F

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEimJQm5XK5zijXnauJNV2_6v7g0bNYcdYLA-SuZZHbWZgQWB523V2Z7IgfYMu16QIc-JHnMg_8dXFY-TJ4dK9...

N/A N/A THN
NONE THN:381C544F332...

OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt Attack_THN:381C544F3322064D82C21C21795E1ED7

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi2WExeCWTOdaaW7iQfV9dxGz0_rzPShImjBUQfoeRsJeTLg09lrGsSEgA2k05q-weIqQaQ_VVP25lTObup7E...

N/A N/A THN
NONE 6E759A42-6EB5-

Exploit for CVE-2026-45034_6E759A42-6EB5-5158-BC5F-E1FD8AE27F04

🧨 PHPSpreadsheet Phar Deserialization Exploit Bypass prohibitWrappers + Remote Code Execution RCE on phpoffice/phpspreadsheet This repository prov...

N/A N/A GITHUBEXPLOIT
NONE 73ED47F7-340E-

CVEAlertor_73ED47F7-340E-59EF-9B82-23D94DC498E9

CVEAlertor Get an instant Telegram alert the moment a new CVE is published for software you actually run. You tell CVEAlertor which products are in...

N/A N/A GITHUBEXPLOIT
NONE THN:86B1DB111A1...

GitHub to Disable npm Install Scripts by Default to Stop Supply Chain Attacks_THN:86B1DB111A1F65CBDDBE47C21A621765

![Supply Chain Attacks](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi_yyoUTLr71Ug2Ge0R7qFSnlGjB3TzlrQ-2NDR5jpPSBjivUSxhxRV1eCg5E6Af1...

N/A N/A THN
NONE 73629CA5-6CDC-

claude-code-f002-poc_73629CA5-6CDC-5867-A16B-E46998DF46E8

F002: Supply Chain Attack via Non-Interactive Workspace Trust Bypass 🔴 CRITICAL — CVE Candidate Severity CRITICAL when chained with supply chain a...

N/A N/A GITHUBEXPLOIT
NONE TRENDMICROBLOG:...

GenAI Is Both Hunter and Hunted at Pwn2Own Berlin 2026_TRENDMICROBLOG:AA4A788A037B4D31219E33496D242017

This year’s Pwn2Own competition in Berlin revealed just how much of the AI stack remains exposed -- and the gap between what these tools promise an...

N/A N/A TRENDMICROBLOG
NONE A80B7830-0196-

Exploit for CVE-2026-28699_A80B7830-0196-594A-AA8C-1EF928459222

CVE-2026-28699 — Gitea OAuth2 Scope Bypass via HTTP Basic Auth Self-contained lab + writeup for CVE-2026-28699: a Gitea OAuth2 access token scoped ...

N/A N/A GITHUBEXPLOIT
NONE WIRED:5364D86E6...

Trump Risks Key Surveillance Authority Over ‘Unqualified’ Spy-Chief Pick_WIRED:5364D86E62704D9A6EA5E786C2B307DA

US lawmakers are alarmed that Bill Pulte, a housing official with no intelligence experience, is poised to take charge of one of the government's m...

N/A N/A WIRED
NONE HACKREAD:5AEE30...

FBI Seizes China-Linked Fake Consulting Sites Targeting US Clearance Holders_HACKREAD:5AEE3084114A3FBAA203BD8C81B5B59F

The Justice Department and FBI seized 13 fake consulting websites that officials say targeted US clearance holders with paid research work designed...

N/A N/A HACKREAD