Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 701-725 di 4149 risultati
Pagina 29 di 166

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2026-2673 OpenSSL TLS 1.3 server may choose unexpected key agreement group15-04-2026701
MSRC Security UpdateCVE-2026-32287 Infinite loop in github.com/antchfx/xpath15-04-2026702
MSRC Security UpdateCVE-2026-32777 15-04-2026703
MSRC Security UpdateCVE-2026-4739 Integer overflow vulnerabilities in InsightSoftwareConsortium/ITK15-04-2026704
MSRC Security UpdateCVE-2026-32778 15-04-2026705
MSRC Security UpdateCVE-2026-32776 15-04-2026706
MSRC Security UpdateCVE-2026-4176 Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib15-04-2026707
MSRC Security UpdateCVE-2026-27171 zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition.15-04-2026708
MSRC Security UpdateCVE-2026-27139 FileInfo can escape from a Root in os15-04-2026709
MSRC Security UpdateCVE-2025-14523 Libsoup: libsoup: duplicate host header handling causes host-parsing discrepancy (first- vs last-value wins)15-04-2026710
MSRC Security UpdateCVE-2026-33940 Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial15-04-2026711
MSRC Security UpdateCVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x50915-04-2026712
MSRC Security UpdateCVE-2026-33939 Handlebars.js has Denial of Service via Malformed Decorator Syntax in Template Compilation15-04-2026713
MSRC Security UpdateCVE-2026-33941 Handlebars.js has JavaScript Injection in CLI Precompiler via Unescaped Names and Options15-04-2026714
MSRC Security UpdateCVE-2026-33938 Handlebars.js has JavaScript Injection via AST Type Confusion by tampering @partial-block15-04-2026715
MSRC Security UpdateCVE-2026-33891 Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input15-04-2026716
MSRC Security UpdateCVE-2026-33896 Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation)15-04-2026717
MSRC Security UpdateCVE-2026-33895 Forge has signature forgery in Ed25519 due to missing S > L check15-04-2026718
MSRC Security UpdateCVE-2026-33671 Picomatch has a ReDoS vulnerability via extglob quantifiers15-04-2026719
MSRC Security UpdateCVE-2025-1220 Null byte termination in hostnames15-04-2026720
MSRC Security UpdateCVE-2026-1519 Excessive NSEC3 iterations cause high CPU load during insecure delegation validation15-04-2026721
MSRC Security UpdateCVE-2026-33636 LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch6415-04-2026722
MSRC Security UpdateCVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`15-04-2026723
MSRC Security UpdateCVE-2025-30258 In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS."15-04-2026724
MSRC Security UpdateCVE-2025-62718 Axios has a NO_PROXY Hostname Normalization Bypass Leads to SSRF15-04-2026725
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter