Google released a Chrome security update fixing two high-severity flaws that could enable code execution or crashes via malicious websites.
Users could be tricked into running arbitrary code, but the issue was patched last week.
A zero-click flaw in Anthropic’s Claude Desktop Extensions allows attackers to trigger remote code execution via Google ...
Apple has pushed an urgent software update to its massive global iPhone user base after security researchers identified ...
Security issue impacts Firefox web browser and Thunderbird email client, potentially enabling attackers to execute arbitrary code.
Fortinet has fixed nine vulnerabilities, including high-severity command execution and authentication bypass flaws.
Notepad++ improves security mechanisms and closes a new vulnerability that allows attackers to execute malicious code.
BeyondTrust warned customers to patch a critical security flaw in its Remote Support (RS) and Privileged Remote Access (PRA) software that could allow unauthenticated attackers to execute arbitrary ...
Fortinet fixes critical FortiClientEMS SQL injection flaw (CVSS 9.1) enabling code execution; separate SSO bug actively exploited.
TL;DR: WinRAR has a critical security vulnerability (CVE-2025-6218) allowing remote code execution via directory traversal in Windows versions. This exploit risks sensitive data and system integrity.
PandasAI, an open source project by SinaptikAI, has been found vulnerable to Prompt Injection attacks. An attacker with access to the chat prompt can craft malicious input that is interpreted as code, ...
A new vulnerability has been discovered in the R programming language that allows arbitrary code execution upon deserializing specially crafted RDS and RDX files. R is an open-source programming ...