Zoom has patched a vulnerability that could allow attackers to execute code on other meeting participants’ systems.
CISA confirmed today that ransomware gangs have begun abusing a high-severity Microsoft SharePoint remote code execution ...
Researchers built a Zoom zero-click RCE exploit in under 24 hours using AI, exposing risks to Windows, macOS, iOS, and Android users.
WordPress fixes CVE-2026-64638, a pre-auth login XSS affecting every version, with a demonstrated path to PHP execution under ...
Adobe patches CVE-2026-48449, a CVSS 10.0 Campaign Classic flaw that could allow code execution without user interaction, ...
Intel and AMD on Tuesday announced patches for a total of more than 80 vulnerabilities across their products. Intel has published 42 new advisories covering 72 vulnerabilities. Th ...
SAP has patched a CVSS 10.0 vulnerability in Commerce Cloud that could allow an unauthenticated attacker to execute arbitrary code. The flaw, tracked as CVE-2026-58231, affects the Data Hub Adapter ...
JetBrains is warning of a critical authentication bypass vulnerability affecting TeamCity On-Premises that could be exploited to achieve remote code execution.
One of the vulnerabilities in a newly disclosed SCCM exploit chain was patched by Microsoft but the fix, allegedly, does not close the path to complete control on the Configuration Manager site server ...
Source: VentureBeat created with Imagen. MCP's STDIO transport, the default for connecting an AI agent to a local tool, executes any operating system command it receives. No sanitization. No execution ...
A flaw in Hugging Face Transformers could allow malicious AI models to execute code, exposing credentials and highlighting AI supply chain risks. Organizations using vulnerable versions of the Hugging ...