news.opensuse.org
openSUSE Kudos Recognitions for July 2026
Welcome to our monthly report from the openSUSE Kudos recognition platform, where we take a moment to put a spotlight on the people who stepped up, helped ot...
#CVE is an active hashtag on Bluesky. In the last 30 days, 82 people shared 3,607 posts with it — around 120 a day. Activity is down 2% versus the previous week, peaking on Jul 21 with 221 posts.
Tags most often used together with #CVE.
news.opensuse.org
openSUSE Kudos Recognitions for July 2026
Welcome to our monthly report from the openSUSE Kudos recognition platform, where we take a moment to put a spotlight on the people who stepped up, helped ot...
stackflag.com
CVE-2026-45272: MyBooks (Talebook) allows attackers to run malicious code
MyBooks, a personal ebook management web server, has a security issue in versions 3.41.2 and earlier.
www.valtersit.com
Python Automation Scripts | Valters IT Hub
Production-ready Python automation scripts for AI pipelines, DevOps, PostgreSQL and security tools. Built and tested in real production systems.
stemshop.top
CVE-2026-47301 — Microsoft SCCM Attack Chain Can Lead to SYSTEM RCE
CVE-2026-47301 affects Microsoft Configuration Manager (SCCM). Public research demonstrates an attack chain that can lead to remote code execution as SYSTEM.
www.deutschlandfunk.de
Computer und Kommunikation
Das Neueste aus Computertechnik und Informationstechnologie. Beiträge und Interviews zu IT-Sicherheit, Informatik, Datenschutz, Smartphones, Cloud-Computing
stackflag.com
CVE-2026-72201: Linux Kernel: Unvalidated Index Entries in NTFS File System
The Linux kernel's NTFS file system does not immediately check index entries for validity when reading from disk.
github.com
GitHub - BushidoUK/Ransomware-Vulnerability-Matrix: A collection of CVEs weaponized by ransomware operators
A collection of CVEs weaponized by ransomware operators - BushidoUK/Ransomware-Vulnerability-Matrix
sethmlarson.dev
New era of slop security reports for open source
I'm on the security report triage team for CPython, pip, urllib3, Requests, and a handful of other open source projects. I'm also in a trusted position such that I get "tagged in" to other open sou...
stackflag.com
CVE-2026-62681: Orval generates malicious JavaScript in OpenAPI specifications
Orval, a tool for generating TypeScript clients, has a bug that allows attackers to inject malicious code into generated JavaScript.
stackflag.com
CVE-2026-75949: J-BusinessDirectory Joomla Extension: Unsecured File Upload/Deletion
An unsecured Joomla extension called J-BusinessDirectory allows attackers to upload or delete any file on the server.
stackflag.com
CVE-2026-71866: Orval generates malicious JavaScript code in generated clients
Orval, a tool for generating JavaScript clients, had a bug in versions 8.19.0 to 8.21.0.
stackflag.com
CVE-2026-71865: Orval generates malicious JavaScript code in TypeScript clients
A security issue in Orval allows attackers to inject malicious JavaScript code when using certain query parameters.
stackflag.com
CVE-2026-71864: Orval generates malicious JavaScript when using double quotes in headers
A security issue in Orval's generated code could allow attackers to execute code on a developer's machine.
stackflag.com
CVE-2026-66794: Multicluster Engine for Kubernetes: Unauthenticated Access to Internal Services
An attacker can access internal services without logging in.
stackflag.com
CVE-2026-62681: Orval generates malicious JavaScript in OpenAPI specifications
Orval, a tool for generating TypeScript clients, has a bug that allows attackers to inject malicious code into generated JavaScript.
stackflag.com
CVE-2026-70496: Search-v2-operator has excessive cluster administrator permissions
The Search-v2-operator has too many permissions, which could allow an attacker to take control of the cluster.
Posts are pulled live from Bluesky and cached briefly. Posts with content labels are hidden.