Collected every two hours from specialised publications — each link leads to the original article.
Update to 2.1.13. The following security vulnerabilites are fixed in this update: GHSA-fj29-64w6-73h6 CVE-2026-63383 https://github.com/libevent/libevent/secur…
Backport object injection RCE fix - see https://github.com/dokuwiki/dokuwiki/issues/4752
Version 2.5.2 of opam fixes CVE-2026-57825. See https://github.com/ocaml/opam/releases/tag/2.5.2 for more information.
Version 2.5.2 of opam fixes CVE-2026-57825. See https://github.com/ocaml/opam/releases/tag/2.5.2 for more information.
update to 3.7, remove upstreamed patch Upstream ChangeLog: https://raw.githubusercontent.com/tmux/tmux/3.7/CHANGES CHANGES FROM 3.6b TO 3.7 Add floating panes.…
update to 3.7, remove upstreamed patch Upstream ChangeLog: https://raw.githubusercontent.com/tmux/tmux/3.7/CHANGES CHANGES FROM 3.6b TO 3.7 Add floating panes.…
Attackers are hiding a data-stealing trojan inside fake exploit code aimed at the people who hunt bugs for a living. The malware, called ChocoPoC, travels in P…
See https://github.com/jupytext/jupytext/releases/tag/v1.19.4 for changes in version 1.19.4. Notable, this update fixes CVE-2026-45736 and CVE-2026-48779.
See https://github.com/jupytext/jupytext/releases/tag/v1.19.4 for changes in version 1.19.4. Notable, this update fixes CVE-2026-45736 and CVE-2026-48779.
The Linux Foundation has officially launched Akrites, a coordinated industry initiative designed to improve how critical open source vulnerabilities are valida…
Update to .NET SDK 8.0.128 and Runtime 8.0.28 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 9.0.118 and Runtime 9.0.17 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 8.0.128 and Runtime 8.0.28 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 9.0.118 and Runtime 9.0.17 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/…
Update to .NET SDK 10.0.109 and Runtime 10.0.9 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main…
Update to .NET SDK 10.0.109 and Runtime 10.0.9 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main…
AI-assisted patches are already showing up across open source. Small GitHub projects, package updates, kernel-adjacent tools, system libraries. It’s not a futu…
Moderate: golang-github-openprinting-ipp-usb security update
Fix editor command injection vulnerability (only affectsversion 2.6.0). (#1432) https://github.com/jonas/tig/issues/1432
Fix editor command injection vulnerability (only affectsversion 2.6.0). (#1432) https://github.com/jonas/tig/issues/1432
update to 2.31.5: fixes high GHSA-vh5x-56v6-4368 and moderate GHSA- gr92-w2r5-qw5p https://discourse.nixos.org/t/security-advisory-local-privilege-escalation-i…
Jaroslav Loba'evski from GitHub Security Lab discovered a memory corruption vulnerability in the RAR module of p7zip, a now unmaintained fork of 7-Zip, a file …
Update to .NET SDK 10.0.107 and Runtime 10.0.7 Fixes: CVE-2026-40372 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.7/10…
Update to .NET SDK 10.0.107 and Runtime 10.0.7 Fixes: CVE-2026-40372 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.7/10…