Thursday, October 8, 2026

Vulnerabilities

NVIDIA Infrastructure Controller Hit by 14 Flaws Enabling Code Execution and Privilege Escalation

NVIDIA has released version 2.0 of its Infrastructure Controller to address 14 vulnerabilities found in its Linux-based infrastructure management software. This update includes a...

Google Chrome 153 Update Fixes 16 Security Flaws, Including Two Critical Vulnerabilities

Google has released Chrome version 153 to the Stable desktop channel, addressing 16 security vulnerabilities, including two critical-severity flaws affecting the Dawn graphics component...

Hackers Exploit MikroTik Vulnerabilities to Take Over MikroTik Routers Without Authentication

Attackers are actively exploiting a critical vulnerability chain dubbed MikroTrick to seize full administrative control of internet-exposed MikroTik RouterOS devices without valid credentials. CERT...

BIND 9.20.29 Fixes 14 Security Flaws Enabling DNSSEC Bypass and Denial-of-Service Attacks

The Internet Systems Consortium (ISC) has released BIND 9.20.29, which addresses 14 security vulnerabilities. These vulnerabilities could enable remote attackers to bypass DNSSEC protections,...

Docker Sandboxes Vulnerabilities Let Malicious Guests Escape Workspace and Access Host Files

Docker has released security fixes for two serious vulnerabilities in Docker Sandboxes that could let a malicious guest environment bypass workspace isolation and access...

Jenkins Patches 20 Plugin Flaws Leading to RCE, XSS and Credential Theft

Jenkins has released security updates addressing 20 vulnerabilities across 13 plugins, including multiple high-severity flaws that could allow authorized attackers to bypass Groovy sandbox...

Microsoft Offers $60,000 Bounty for Critical Cross-Tenant Vulnerabilities

Microsoft has expanded its incentives for security researchers focusing on Dynamics 365 and Power Platform, offering rewards ranging from $1,250 to $60,000 for qualifying...

Critical GitLab Flaws Let Attackers Read Arbitrary Files, Steal Credentials and Execute Code

GitLab has issued an emergency security update to address two critical vulnerabilities that could lead to unauthenticated file disclosure and authenticated credential theft, as...