Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 901-925 di 4328 risultati
Pagina 37 di 174

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2026-33896 Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation)15-04-2026901
MSRC Security UpdateCVE-2026-33895 Forge has signature forgery in Ed25519 due to missing S > L check15-04-2026902
MSRC Security UpdateCVE-2026-33671 Picomatch has a ReDoS vulnerability via extglob quantifiers15-04-2026903
MSRC Security UpdateCVE-2025-1220 Null byte termination in hostnames15-04-2026904
MSRC Security UpdateCVE-2026-1519 Excessive NSEC3 iterations cause high CPU load during insecure delegation validation15-04-2026905
MSRC Security UpdateCVE-2026-33636 LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch6415-04-2026906
MSRC Security UpdateCVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE`15-04-2026907
MSRC Security UpdateCVE-2025-30258 In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS."15-04-2026908
MSRC Security UpdateCVE-2025-62718 Axios has a NO_PROXY Hostname Normalization Bypass Leads to SSRF15-04-2026909
MSRC Security UpdateCVE-2026-40175 Axios has Unrestricted Cloud Metadata Exfiltration via Header Injection Chain15-04-2026910
MSRC Security UpdateCVE-2026-34480 Apache Log4j Core: Silent log event loss in XmlLayout due to unescaped XML 1.0 forbidden characters15-04-2026911
MSRC Security UpdateCVE-2026-34479 Apache Log4j 1 to Log4j 2 bridge: Silent log event loss in Log4j1XmlLayout due to unescaped XML 1.0 forbidden characters15-04-2026912
MSRC Security UpdateCVE-2026-34481 Apache Log4j JSON Template Layout: Improper serialization of non-finite floating-point values in JsonTemplateLayout15-04-2026913
MSRC Security UpdateCVE-2026-35201 Discount has an Out-of-bounds Read in rdiscount15-04-2026914
MSRC Security UpdateCVE-2026-1502 HTTP client proxy tunnel headers not validated for CR/LF15-04-2026915
MSRC Security UpdateCVE-2026-5446 wolfSSL ARIA-GCM TLS 1.2/DTLS 1.2 GCM nonce reuse15-04-2026916
MSRC Security UpdateCVE-2026-5392 wolfSSL heap OOB read in PKCS7 SignedData streaming15-04-2026917
MSRC Security UpdateCVE-2026-5263 URI nameConstraints not enforced in ConfirmNameConstraints()15-04-2026918
MSRC Security UpdateCVE-2026-5460 Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.315-04-2026919
MSRC Security UpdateCVE-2026-5772 MatchDomainName 1-Byte Stack Buffer Over-Read in Hostname Validation15-04-2026920
MSRC Security UpdateCVE-2026-5447 Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifier15-04-2026921
MSRC Security UpdateCVE-2026-5778 Integer underflow leads to out-of-bounds access in sniffer ChaCha decrypt path.15-04-2026922
MSRC Security UpdateCVE-2026-5188 Integer underflow in X.509 SAN parsing in wolfSSL15-04-2026923
MSRC Security UpdateCVE-2026-5295 Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OID15-04-2026924
MSRC Security UpdateCVE-2026-5264 DTLS 1.3 ACK heap buffer overflow15-04-2026925
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter