Logo
  • NEWS
  • NVD
  • EXPLOITS
  • SECURITY
    • NCSC
    • SECURELIST
    • US-CERT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

  • Stopping a cyberattack while walking your dog – defensive AI security CEO says it’s not ruff to do

    Corma CEO Alon Pluda says his AI security startup aims to close the “defense gap,” where models are better at offensive …

    16 August 2026
    AI, IT, News
  • Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day

    Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: GitHub Dependabot malware alerts now …

    16 August 2026
    IT, Metabase, Salesforce, ServiceNow, Week
  • Why Do So Many Apps Ask for Phone Number Verification?

    For users, it may feel like one more registration step. For app developers and businesses, however, phone verification solves several …

    16 August 2026
    Apps, Ask, Mobile, Resources, Verification
  • CVE-2026-74797 – OpenTofu versions before 1.11.4 contain a denial of service vulnerability in the tofu …

    OpenTofu versions before 1.11.4 contain a denial of service vulnerability in the tofu init command when processing maliciously-crafted .zip …

    16 August 2026
    NVD
  • CVE-2026-74796 – OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache …

    OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache directory during initialization. Attackers can place a …

    16 August 2026
    NVD
  • CVE-2026-74795 – Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its …

    Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its recursive-descent parser. The parser does not enforce a …

    16 August 2026
    NVD
  • CVE-2026-74794 – Scriban before 6.6.0 contains an infinite recursion vulnerability in object rendering …

    Scriban before 6.6.0 contains an infinite recursion vulnerability in object rendering when the ObjectRecursionLimit property defaults to …

    16 August 2026
    NVD
  • CVE-2026-74792 – Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack overflow vulnerability ...

    Scriban before 7.0.0 (affected versions

    16 August 2026
    NVD
  • CVE-2026-74791 – Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when …

    Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to …

    16 August 2026
    NVD
  • CVE-2026-74790 – Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering …

    Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext …

    16 August 2026
    NVD
  • CVE-2026-74789 – Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only to script ...

    Scriban before 7.0.0 (affected

    16 August 2026
    NVD
  • CVE-2026-74788 – Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory ...

    Scriban before 7.0.0 (affected versions

    16 August 2026
    NVD
{"loadingDistance":1200,"stickyPosts":[],"nextPageLink":"https://itts.at/page/2","queryId":0}

●●●

CookieFree

NVD

  • CVE-2026-74797 – OpenTofu versions before 1.11.4 contain a denial of service vulnerability in the tofu …16 August 2026
  • CVE-2026-19920 – A vulnerability was determined in code-projects Online Shopping System 1.0. Affected is …16 August 2026
  • CVE-2026-19921 – A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by …16 August 2026
  • CVE-2026-19919 – A vulnerability was found in code-projects Online Shopping System 1.0. This impacts an …16 August 2026
  • CVE-2026-19918 – A vulnerability has been found in SpaceX Starlink Router Gen 3 2025.11.14.mr64708.3. This …16 August 2026

EXPLOITS

  • LuCI DHCPv6 – Lease Hostname Stored Cross-Site Scripting11 August 2026
  • mcp-server-kubernetes 3.8.x – Argument Injection11 August 2026
  • PraisonAI praisonaiagents 1.6.77 – Remote Code Execution11 August 2026
  • Apache Gravitino 1.2.1 – SSRF11 August 2026
  • Blocksy Companion 2.1.46 – RCE11 August 2026

SECURELIST

  • APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit14 August 2026
  • Armored Likho expands its cyber-espionage toolkit13 August 2026
  • Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver Pha11 August 2026
  • Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selectio11 August 2026
  • IT threat evolution in Q2 2026. Mobile statistics10 August 2026


Copyright © 2026 ITTS | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.