top of page

Notícias

Vulnerabilidades

4 de dezembro de 2025

Your Android phone may be in critical danger - update it ASAP

Google just gave you 107 reasons to update your Android phone, including high-severity vulnerabilities and several that are the worst of the worst.

4 de dezembro de 2025

Max-severity vulnerability in React, Node.js patched, update ASAP (CVE-2025-55182)

A critical vulnerability (CVE-2025-55182) in React Server Components (RSC) may allow unauthenticated attackers to achieve remote code exection on the application server, the React development team warned on Wednesday. The maximum-severity vulnerability was privately reported by Lachlan Davidson and has been fixed. At this moment, there are no public reports of it being exploited by attackers and no confirmed public PoC exploits (for now). Nevertheless, affected users have been advised to upgrade to a non-vulnerable … More → The post Max-severity vulnerability in React, Node.js patched, update ASAP (CVE-2025-55182) appeared first on Help Net Security.

4 de dezembro de 2025

WebXR Flaw Hits 4 Billion Chromium Users, Update Your Browser Now

Cybersecurity startup AISLE discovered a Medium severity flaw in the WebXR component of Chrome, Edge, and other Chromium browsers. Over 4 billion devices were at risk. Update now.

4 de dezembro de 2025

NCSC's 'Proactive Notifications' warns orgs of flaws in exposed devices

The UK's National Cyber Security Center (NCSC) announced the testing phase of a new service called Proactive Notifications, designed to inform organizations in the country of vulnerabilities present in their environment. [...]

3 de dezembro de 2025

PyTorch Users at Risk: Unveiling 3 Zero-Day PickleScan Vulnerabilities

submitted by /u/SRMish3 [link] [comments]

3 de dezembro de 2025

Exploits and vulnerabilities in Q3 2025

This report provides statistical data on vulnerabilities published and exploits we researched during the third quarter of 2025. It also includes summary data on the use of C2 frameworks.

3 de dezembro de 2025

University of Phoenix discloses data breach after Oracle hack

The University of Phoenix (UoPX) has joined a growing list of U.S. universities breached in a Clop data theft campaign targeting vulnerable Oracle E-Business Suite instances in August 2025. [...]

3 de dezembro de 2025

Chrome 143 Patches High-Severity Vulnerabilities

Chrome 143 stable was released with patches for 13 vulnerabilities, including a high-severity flaw in the V8 JavaScript engine. The post Chrome 143 Patches High-Severity Vulnerabilities appeared first on SecurityWeek.

3 de dezembro de 2025

Developers scramble as critical React flaw threatens major apps

The open-source code library is one of the most extensively used application frameworks. Wiz found vulnerable versions in around 39% of cloud environments. The post Developers scramble as critical React flaw threatens major apps appeared first on CyberScoop.

3 de dezembro de 2025

Patch Management Procedure: Building a Secure and Efficient Update Process

Reading Time: 6 minutes Cyber threats are growing more advanced every year, and unpatched systems remain one of the biggest reasons organizations suffer data breaches. In fact, many attacks rely on known vulnerabilities that could have been prevented with proper updates. That's why having a strong patch management procedure is essential for IT managers, cybersecurity teams, and business leaders.... The post Patch Management Procedure: Building a Secure and Efficient Update Process appeared first on Comodo News and Internet Security Information.

bottom of page