📡
finiweb
エンジニア向け情報収集ダッシュボード
GitHub, PyPI add time-based defenses against supply chain attacks
Securitybleepingcomputer7/26 23:13
Steam forum ClickFix attacks infect gamers with XMRig cryptominers
Securitybleepingcomputer7/26 07:37
[CVE-2026-15962] The Fluent Forms Pro Add On Pack plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and i
SecuritynvdCVSS 8.87/26 02:16
[CVE-2026-63720] datamodel-code-generator prior to version 0.70.0 contains a code injection vulnerability that allows attackers who contr
SecuritynvdCVSS 7.57/26 05:16
[CVE-2026-17496] NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into t
SecuritynvdCVSS 8.17/26 15:16
[CVE-2026-17497] NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with ar
SecuritynvdCVSS 8.37/26 15:16
[CVE-2026-57989] Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over
SecuritynvdCVSS 7.47/26 18:18