U.S. CISA adds MRLG, PHPMailer, Rails Ruby on Rails, and Synacor Zimbra Collaboration Suite flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 8, 14:13 UTC · Jul 8, 2025Exploit / PoC in the wildCVE-2014-3931CVE-2016-10033CVE-2019-5418+1 CVEs60
Vulnerability Spotlight: Ruby Rails Gem XSS VulnerabilitiesCisco Talos·Jan 10, 14:03 UTC · Jan 10, 2018Vulnerability in the wildCVE-2017-12097CVE-2017-1209860
RubyMiner Monero Cryptominer affected 30% of networks worldwide in just 24hSecurity Affairs·Jan 17, 20:13 UTC · Jan 17, 2018MalwareCVE-2013-015647
Passkey technology is elegant, but it’s most definitely not usable securityArs Technica · Security·Dec 30, 12:00 UTC · Dec 30, 2024Data breach57
Does CVSS 4.0 solve the exploitability problem?Help Net Security·Jan 31, 00:00 UTC · Jan 31, 2024VulnerabilityCVE-2023-34103CVE-2023-22523CVE-2023-328247
Veracode platform enhancements improve developers’ ability to secure software supply chainsHelp Net Security·Aug 10, 00:00 UTC · Aug 10, 2022Vulnerability42
Podcast: Landlords Demand Your Workplace Logins to Scrape Paystubs404 Media·Oct 1, 13:00 UTC · Oct 1, 2025Industry42
Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential TheftThe Hacker News·May 1, 09:43 UTC · May 1, 2026Data breach57
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as GitThe Hacker News·Jul 26, 07:47 UTC · Jul 26, 2026Exploit / PoC in the wild60
npm, PyPI, and RubyGems Packages Found Sending Developer Data to Discord ChannelsThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2025Data breach157