FEED ACTIVE last sync Sep 11 · 13:54Z tracking 20 advisories LIVE
tech · ai · security

The signal, not the noise.

Auto-updated intelligence on technology, AI, and the latest disclosed security advisories. Pulled daily, ranked by what matters.

Critical Advisories

all CVEs →
adobe · campaign · CVSS 10 · Sep 8

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An…

NVD detail →
— · — · CVSS 9.9 · Sep 7

A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function platform_event_pingTest of the file /cgi-bin/json.cgi?PingTest of the component PingTest Handler. The manipulation of the argument…

NVD detail →
— · — · CVSS 9.9 · Sep 7

A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and…

NVD detail →
— · — · CVSS 9.8 · Sep 11

Hugo is a static site generator. From v0.161.0, Hugo executes Node tools under Node's permission model, but TailwindCSS — included in the default security.exec.allow list — requires a highly permissive configuration (--allow-addons…

NVD detail →
CVE-2026-8778 CRITICAL
— · — · CVSS 9.8 · Sep 11

The MIPL Grouped Checkout Fields for WooCommerce – Customize & Organize Checkout Fields. plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the `mipl_wc_upload_file` function in all versions…

NVD detail →
— · — · CVSS 9.8 · Sep 10

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote attacker to execute arbitrary code due to code injection during graph construction.

NVD detail →