📡
finiweb
エンジニア向け情報収集ダッシュボード
Australia warns of global campaign targeting vulnerable CMS platforms
Securitybleepingcomputer7/11 23:18
'Ghostcommit' hides prompt injection in images to fool AI agents, steal secrets
Securitybleepingcomputer7/11 18:03
[CVE-2026-44795] Spinnaker is an open source, multi-cloud continuous delivery platform. Prior to 2026.1.0, 2026.0.3, 2025.4.4, and 2025.3
SecuritynvdCVSS 8.87/10 22:16
[CVE-2026-49213] TypeBot is a chatbot builder tool. Prior to 3.17.2, Typebot's shared SSRF validator in packages/lib/src/ssrf/validateHtt
SecuritynvdCVSS 8.17/10 22:16
[CVE-2026-52747] ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Prior to
SecuritynvdCVSS 8.67/10 22:16
[CVE-2026-14480] OpenPLC Runtime v3 contains an authenticated arbitrary file write vulnerability in the legacy web UI program‑upload wor
SecuritynvdCVSS 9.97/10 23:16
[CVE-2026-20744] The charging station websocket endpoint accepts connections without proper authentication, which could lead to privileg
SecuritynvdCVSS 9.87/10 23:16