📡
finiweb
エンジニア向け情報収集ダッシュボード
DoppelCart fraud network uses 119,000 fake shops to steal credit cards
Securitybleepingcomputer9/9 05:35
The EU CRA's Real Question: What Shipped, and When Did You Know?
Securitybleepingcomputer9/9 05:24
Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit
Securitybleepingcomputer9/9 05:08
Microsoft releases Windows 10 KB5122878 extended security update
Securitybleepingcomputer9/9 03:49
Microsoft September 2026 Patch Tuesday fixes 966 flaws, 2 zero-days
Securitybleepingcomputer9/9 03:18
Patch Tuesday Sets Another Record With 974 CVEs
Securitydarkreading9/9 06:26
Attackers Use Multi-Hop Google Redirects for Phishing Campaign
Securitydarkreading9/9 06:03
OpenAI Agents Took Over Wiki Site Before Hugging Face Attack
Securitydarkreading9/9 05:36
ClickFix Campaigns Abuse Legitimate Services for Persistent Access
Securitydarkreading9/9 02:25
[CVE-2026-86437] Lara Dashboard before 1.3.2 authorizes the POST /admin/settings/core-upgrades/upload endpoint with only the settings.edi
SecuritynvdCVSS 7.29/7 22:17
[CVE-2026-86438] Lara Dashboard before 1.3.2 fails to authorize the MarketplaceModuleBrowser installModule Livewire action, allowing non-
SecuritynvdCVSS 7.29/7 22:17
[CVE-2026-86439] knowns versions before 0.30.0 fail to validate filesystem paths in MCP tool arguments, allowing attackers to read, creat
SecuritynvdCVSS 8.89/7 23:16
[CVE-2026-86538] knowns versions before 0.30.0 contain a path traversal vulnerability in the POST /api/templates/preview endpoint that al
SecuritynvdCVSS 7.59/7 23:16
[CVE-2026-86539] knowns through 0.33.0 contains a server-side request forgery vulnerability in the POST /api/embedding-models/test endpoi
SecuritynvdCVSS 7.29/7 23:16