Collected every two hours from specialised publications — each link leads to the original article.
update to 2.31.5: fixes high GHSA-vh5x-56v6-4368 and moderate GHSA- gr92-w2r5-qw5p https://discourse.nixos.org/t/security-advisory-local-privilege-escalation-i…
Jaroslav Loba'evski from GitHub Security Lab discovered a memory corruption vulnerability in the RAR module of p7zip, a now unmaintained fork of 7-Zip, a file …
Update to .NET SDK 10.0.107 and Runtime 10.0.7 Fixes: CVE-2026-40372 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.7/10…
Update to .NET SDK 10.0.107 and Runtime 10.0.7 Fixes: CVE-2026-40372 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.7/10…
Update the openssl crate to version 0.10.78 and the openssl-sys crate to version 0.9.114. Release notes: openssl 0.10.77 / openssl-sys 0.9.113: https://github.…
Upstream release 2.98.0. https://github.com/jfrog/jfrog-cli/releases/tag/v2.98.0 Resolves the following security issues: CVE-2025-11579 CVE-2025-66564 CVE-2026…
Multiple vulnerabilities where identified in polkit, a toolkit for defining and handling the policy that allows unprivileged processes to speak to privileged p…
Update to 0.6.26, fixing several CVEs https://github.com/libexif/libexif/releases/tag/v0.6.26
An update to patch a security vulnerability. Advisory: https://github.com/AndrewGMorgan/libcap_mirror/security/advisories/GHS A-f78v-p5hx-m7hh Changelog * Mon …
Update to v1.36.0 Full changelog: https://github.com/AzureAD/microsoft-authentication-library-for- python/releases/tag/1.36.0
update to 2.31.4 fixes nix-daemon critical GHSA-g3g9-5vj6-r3gj (CVE-2026-39860) https://github.com/NixOS/nix/security/advisories/GHSA-g3g9-5vj6-r3gj
Update to 0.6.26, fixing several CVEs https://github.com/libexif/libexif/releases/tag/v0.6.26
update to 2.31.4 fixes nix-daemon critical GHSA-g3g9-5vj6-r3gj (CVE-2026-39860): https://github.com/NixOS/nix/security/advisories/GHSA-g3g9-5vj6-r3gj
Security fix for CVE-2026-31899: https://nvd.nist.gov/vuln/detail/CVE-2026-31899 / https://github.com/Kozea/CairoSVG/security/advisories/GHSA-f38f-5xpm-9r7c Ex…
OpenAI revealed a GitHub Actions workflow used to sign its macOS apps led to the download of the malicious Axios library on March 31, but noted that no user da…
An update to patch a security vulnerability. Advisory: https://github.com/AndrewGMorgan/libcap_mirror/security/advisories/GHS A-f78v-p5hx-m7hh Changelog * Mon …
Too many changes to list. See: https://github.com/domoticz/domoticz/blob/2026.1/History.txt This also fixes a security vulnerability.
Update to 0.37.2 Fixes silent TLS certificate verification bypass on HTTPS Redirect via proxy (CVE-2026-32627, rhbz#2448105) Source: https://github.com/yhirose…
Update to version 1.7.1. Includes the fix for CVE-2026-26076: https://github.com/pendulum-project/ntpd- rs/security/advisories/GHSA-c7j7-rmvr-fjmv Release note…
This is the March 2026 release of .NET 8 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/8.0/8.0.25/8.0.125.md Runtime: https://git…
This is the March 2026 release of .NET 9. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/9.0/9.0.14/9.0.115.md Runtime: https://gi…
This is the March 2026 release of .NET 10. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.4/10.0.104.md Runtime: https:/…
This is the March 2026 release of .NET 10. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.4/10.0.104.md Runtime: https:/…
A threat actor known as UNC6426 leveraged keys stolen following the supply chain compromise of the nx npm package last year to completely breach a victim's clo…