An Easier Way to Keep Old Python Code Healthy and SecureThe Hacker News·Jul 25, 15:47 UTC · Jul 25, 2022Vulnerability55
Webinar: How to Stop Python Supply Chain Attacks—and the Expert Tools You NeedThe Hacker News·Aug 7, 15:33 UTC · Aug 7, 2025Vulnerability55
Python team fixes bug that allowed takeover of PyPI repositoryThe Record·Dec 14, 00:00 UTC · Dec 14, 2022Vulnerability155
A 15-Year-Old Unpatched Python bug potentially impacts +350K projectsSecurity Affairs·Sep 22, 13:28 UTC · Sep 22, 2022VulnerabilityCVE-2007-4559CVE-2001-126760
Unpatched Python and Java Flaws Let Hackers Bypass Firewall Using FTP InjectionThe Hacker News·Feb 21, 17:45 UTC · Feb 21, 2017Vulnerability155
GitHub adds Python support for security alertsHelp Net Security·Dec 15, 12:29 UTC · Dec 15, 2023Vulnerability55
Researchers Uncover Flaws in Python Package for AI Models and PDF.js Used by FirefoxThe Hacker News·May 21, 10:22 UTC · May 21, 2024VulnerabilityCVE-2024-34359CVE-2024-4367160
Two Additional Malicious Python Libraries Found on PyPI RepositoryInfosecurity Magazine·Aug 16, 17:30 UTC · Aug 16, 2022Vulnerability155
New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System CommandsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026VulnerabilityCVE-2025-68668CVE-2025-68613160
Python tarfile vulnerability affects 350,000 open-source projects (CVE-2007-4559)Help Net Security·Sep 22, 00:00 UTC · Sep 22, 2022VulnerabilityCVE-2007-455960
ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesThe Hacker News·May 15, 00:00 UTC · May 15, 2026VulnerabilityCVE-2026-030060
PyPI Python Package Repository Patches Critical Supply Chain FlawThe Hacker News·Aug 2, 10:50 UTC · Aug 2, 2021Vulnerability155
SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model FilesThe Hacker News·Apr 20, 17:14 UTC · Apr 20, 2026VulnerabilityCVE-2026-5760CVE-2024-34359CVE-2025-6162060
Critical Vulnerabilities Found in NVIDIA's Triton Inference ServerInfosecurity Magazine·Aug 5, 15:45 UTC · Aug 5, 2025VulnerabilityCVE-2025-23319CVE-2025-23320CVE-2025-23334+1 CVEs60
Security Risks Persist in Open Source EcosystemInfosecurity Magazine·Dec 4, 14:00 UTC · Dec 4, 2024Vulnerability55
Why Developers Hate Changing Language VersionsThe Hacker News·Jul 8, 11:08 UTC · Jul 8, 2022Vulnerability55
Critical and High Severity n8n Sandbox Flaws Allow RCEInfosecurity Magazine·Jan 28, 16:00 UTC · Jan 28, 2026VulnerabilityCVE-2026-1470CVE-2026-086360
Critical Grist-Core Vulnerability Allows RCE Attacks via Spreadsheet FormulasThe Hacker News·Jan 27, 14:07 UTC · Jan 27, 2026VulnerabilityCVE-2026-24002CVE-2025-6866860
Chaining NVIDIA's Triton Server flaws exposes AI systems to remote takeoverSecurity Affairs·Aug 5, 07:35 UTC · Aug 5, 2025VulnerabilityCVE-2025-23319CVE-2025-23320CVE-2025-2333460
Unmasking the new persistent attacks on JapanCisco Talos·Mar 6, 11:00 UTC · Mar 6, 2025VulnerabilityCVE-2024-4577160
350K Open-Source Projects At Risk of Supply Chain VulnerabilityInfosecurity Magazine·Sep 21, 17:00 UTC · Sep 21, 2022Vulnerability55
Researchers Find Bugs in Over A Dozen Widely Used URL Parser LibrariesThe Hacker News·Aug 2, 11:07 UTC · Aug 2, 2022VulnerabilityCVE-2021-33056CVE-2021-23414CVE-2021-37352+5 CVEs160
Ubuntu’s Crash Report Tool Allows Remote Code ExecutionThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2016VulnerabilityCVE-2016-9949CVE-2016-995060
Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX ChatbotsThe Hacker News·Jul 7, 17:02 UTC · Jul 7, 2026Vulnerability55
Attackers use MS Teams, fake mailbox repair utility to breach organizationsHelp Net Security·Apr 27, 00:00 UTC · Apr 27, 2026Vulnerability55
Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container EscapeThe Hacker News·Apr 22, 07:16 UTC · Apr 22, 2026VulnerabilityCVE-2026-5752160
Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of DisclosureThe Hacker News·Mar 26, 06:26 UTC · Mar 26, 2026Vulnerability in the wildCVE-2026-33017CVE-2025-324860
Critical n8n Flaw CVE-2026-25049 Enables System Command Execution via Malicious WorkflowsThe Hacker News·Feb 6, 09:39 UTC · Feb 6, 2026VulnerabilityCVE-2026-25049CVE-2025-68613CVE-2026-21893+10 CVEs160
Trends and dangers in open-source software dependenciesHelp Net Security·Sep 16, 00:00 UTC · Sep 16, 2024Vulnerability155
Transitioning to memory-safe languages: Challenges and considerationsHelp Net Security·Mar 11, 00:00 UTC · Mar 11, 2024Vulnerability155
Warning: New Malware Emerges in Attacks Exploiting Ivanti VPN VulnerabilitiesThe Hacker News·Feb 2, 04:53 UTC · Feb 2, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Six typosquatting packages in PyPI repository laced with crypto minerSecurity Affairs·Jun 28, 06:46 UTC · Jun 28, 2021Vulnerability55
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs60
AI-powered honeypots: Turning the tables on malicious AI agentsCisco Talos·Apr 29, 10:00 UTC · Apr 29, 2026VulnerabilityCVE-2014-627160
Picklescan Bugs Allow Malicious PyTorch Models to Evade Scans and Execute CodeThe Hacker News·Dec 3, 11:44 UTC · Dec 3, 2025VulnerabilityCVE-2025-10155CVE-2025-10156CVE-2025-10157+1 CVEs60
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference FrameworksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2025VulnerabilityCVE-2024-50050CVE-2025-30165CVE-2025-23254+1 CVEs60
Russia-Aligned TAG-110 Targets Asia and Europe with HATVIBE and CHERRYSPYRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025VulnerabilityCVE-2024-2369260