Search found 45 matches

by Starburst-David
Fri May 29, 2026 5:16 pm
Forum: General
Topic: CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 - Notepad++ Vulnerabilities
Replies: 1
Views: 19

Re: CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 - Notepad++ Vulnerabilities

Ref. : Notepad++ Patches High-Severity RCE Flaws in Version 8.9.6.1

The developers behind Notepad++ have released version 8.9.6.1 to address multiple security vulnerabilities, including critical flaws that could expose users to remote code execution (RCE) attacks under certain conditions. The ...
by Starburst-David
Fri May 29, 2026 5:14 pm
Forum: General
Topic: Google Patches 151 Vulnerabilities in Chrome, Including 22 Critical Ones
Replies: 0
Views: 1

Google Patches 151 Vulnerabilities in Chrome, Including 22 Critical Ones

Current version (as of 2026-05-29) of Chrome on Windows is: Version 148.0.7778.217 (Official Build) (64-bit)

Some of the CVE's are:
CVE-2026-9893 CVE-2026-9892 CVE-2026-9891 CVE-2026-9890 CVE-2026-9889 CVE-2026-9888 CVE-2026-9887 CVE-2026-9886 CVE-2026-9885 CVE-2026-9884 CVE-2026-9883 CVE-2026 ...
by Starburst-David
Thu May 28, 2026 11:05 am
Forum: Cats
Topic: U Shall Not Enter
Replies: 0
Views: 17

U Shall Not Enter

707693556_1041876088197081_6047832248546284981_n.jpg
707693556_1041876088197081_6047832248546284981_n.jpg (99.63 KiB) Viewed 17 times
by Starburst-David
Thu May 28, 2026 11:00 am
Forum: General
Topic: CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 - Notepad++ Vulnerabilities
Replies: 1
Views: 19

CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 - Notepad++ Vulnerabilities

Notepad++, one of the most widely used open-source text editors for Windows, has released an urgent security update addressing three vulnerabilities, including two arbitrary code execution flaws that could allow attackers to silently run malicious programs on a victim’s machine.

The Notepad ...
by Starburst-David
Thu May 28, 2026 10:59 am
Forum: General
Topic: CVE-2026-48172 — LiteSpeed User-End cPanel Plugin Privilege Escalation
Replies: 0
Views: 8

CVE-2026-48172 — LiteSpeed User-End cPanel Plugin Privilege Escalation

Overview

CISA has added CVE-2026-48172 to its Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. The flaw is a maximum-severity privilege escalation vulnerability (CVSS v4.0: 10.0) residing in the LiteSpeed User-End cPanel Plugin versions 2.3 through 2.4.4 ...
by Starburst-David
Thu May 28, 2026 10:57 am
Forum: General
Topic: CVE-2026-40369 - Windows Kernel Vulnerability Allows Attackers to Modify Kernel Memory Counters
Replies: 0
Views: 8

CVE-2026-40369 - Windows Kernel Vulnerability Allows Attackers to Modify Kernel Memory Counters

A critical Windows kernel vulnerability, tracked as CVE-2026-40369, has been disclosed, enabling attackers to achieve full SYSTEM-level privilege escalation even from the most restricted environments, including browser sandboxes.

Discovered by security researcher Ori Nimron, the flaw affects ...
by Starburst-David
Tue May 26, 2026 12:12 am
Forum: General
Topic: CVE-2026-48849 - Roundcube Webmail Stored XSS/HTML/CSS Injection
Replies: 0
Views: 13

CVE-2026-48849 - Roundcube Webmail Stored XSS/HTML/CSS Injection

CVE ID: CVE-2026-48849
Published: May 25, 2026
Description: In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, an unsanitized subject field in the draft restored value could lead to stored XSS/HTML/CSS injection on shared mailboxes.
Severity: 4.4 | MEDIUM

Visit the link for more ...
by Starburst-David
Tue May 26, 2026 12:11 am
Forum: General
Topic: CVE-2026-48848 - Roundcube Webmail CSS Injection Vulnerability
Replies: 0
Views: 7

CVE-2026-48848 - Roundcube Webmail CSS Injection Vulnerability

CVE ID: CVE-2026-48848
Published: May 25, 2026
Description: Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insufficient HTML sanitization that could lead to Cascading Style Sheets (CSS) injection via an SVG document that has an animate element with the attributeName attribute ...
by Starburst-David
Tue May 26, 2026 12:10 am
Forum: General
Topic: CVE-2026-48847 - Roundcube Webmail Redis/Memcache File Deletion Vulnerabilit
Replies: 0
Views: 7

CVE-2026-48847 - Roundcube Webmail Redis/Memcache File Deletion Vulnerabilit

CVE ID: CVE-2026-48847
Published: May 25, 2026
Description: Roundcube Webmail 1.6.x before 1.6.16, and 1.7.x before 1.7.1 allows pre-authentication arbitrary file deletion via redis/memcache session poisoning bypass.
Severity: 3.7 | LOW

Visit the link for more details, such as CVSS details ...
by Starburst-David
Tue May 26, 2026 12:08 am
Forum: General
Topic: CVE-2026-48846 - Roundcube Webmail CSS Injection Vulnerability
Replies: 0
Views: 12

CVE-2026-48846 - Roundcube Webmail CSS Injection Vulnerability

CVE ID: CVE-2026-48846
Published: May 25, 2026
Description: In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, the remote image blocking feature can be bypassed via a crafted CSS var() value in an e-mail message, which may lead to information disclosure or access-control bypass ...