Buscar noticias

Ctrl/Cmd para multiselección
Total: 3982

It was discovered that Mako incorrectly handled URIs with double-slash prefixes in TemplateLookup. A remote attacker could possibly use this issue to obtain sensitive information.

Ubuntu 2026-05-05 18:27 UTC · 2026-05-05 15:27 -03

Andrew MacPherson discovered that nghttp2 did not properly validate internal state when the session termination API was called. A remote attacker could possibly use this issue to cause nghttp2 to crash, resulting in a denial of service.

Ubuntu 2026-05-05 17:07 UTC · 2026-05-05 14:07 -03

It was discovered that Django did not vary cached response headers on cookies when sessions were not modified while SESSION_SAVE_EVERY_REQUEST was enabled. A remote attacker could possibly use this issue to steal a user's session. (CVE-202…

Ubuntu CVE-2026-35192CVE-2026-5766CVE-2026-6907 CVSS 6.3 2026-05-05 15:30 UTC · 2026-05-05 12:30 -03

Released: 2026-05-??

DirectAdmin 2026-05-05 12:00 UTC · 2026-05-05 09:00 -03

EasyApache 4 25.57

⚠️ Importante

Security and maintenance updates We released updated packages for EasyApache 4. This security release updates ea-apache24 to 2.4.67, addressing 11 CVEs including an important remote code execution vulnerability (CVE-2026-23918 in mod_http2…

cPanel Release Notes (RSS) CVE-2026-23918 CVSS 8.8 2026-05-05 03:30 UTC · 2026-05-05 00:30 -03