Critical Security Vulnerability in ToDesktop Builder Enables Traffic Interception and Data Tampering
CVE-2025-67229 is a critical security vulnerability affecting applications built using ToDesktop Builder versions prior to 0.32.1.The flaw…
continue reading..
IMGspider WordPress Plugin Vulnerability Could Allow Internal Network Access
CVE-2026-22482 is a Server-Side Request Forgery (SSRF) vulnerability found in the IMGspider plugin for WordPress. SSRF flaws…
continue reading..
Critical Linux Kernel Bugs Could Crash Servers and Disrupt Network Services
Product Name: Linux KernelAffected Components: DAMON, xHCI, ip6 tunnel, BPF, idpf, nfsdProduct Type: Operating System KernelAttack Surface:…
continue reading..
CVE-2026-0755: Critical Zero-Auth RCE Flaw in gemini-mcp-tool Exposes Systems to Full Remote Takeover
CVE-2026-0755 – Command Injection in gemini-mcp-tool (Unauthenticated RCE) Overview CVE ID: CVE-2026-0755Affected component: gemini-mcp-tool – execAsync functionalityVulnerability…
continue reading..
Breaking Security Alert: Critical Langflow Flaws Expose Systems to Unauthenticated and Root-Level Remote Code Execution
Product Details — Langflow Langflow is an open-source platform used to visually design and execute LLM workflows…
continue reading..
CVE-2026-0760: Critical MetaGPT Flaw Exposes AI Systems to Silent Remote Takeover
CVE-2026-0760 Vulnerability Overview Executive Summary A critical unsafe deserialization vulnerability was identified in MetaGPT that allows a…
continue reading..
CVE-2026-24474: Dioxus Components Eval Flaw Opens the Door to Client-Side Code Execution
CVE-2026-24474 — Dioxus Components Client-Side Eval Injection CVE: CVE-2026-24474Name: Dioxus Components Code Injection via EvalCVSS v4.0: 5.3…
continue reading..
Ransomware Follows the Click: Amnesia RAT Spreads Through Phishing Attacks Targeting Russian Users
Amnesia RAT Phishing Campaign Leading to Ransomware Deployment Date Identified: January 26Threat Type: Multi-stage phishing attack →…
continue reading..
New ‘Vect’ Ransomware Emerges, Hits Education and Manufacturing Networks Across Two Continents
Vect Ransomware Date Observed: January 2026Threat Type: Ransomware-as-a-Service (RaaS)Targeted Sectors: Education, ManufacturingAffected Regions: Brazil, South AfricaThreat Status:…
continue reading..
