Secure Bulletin Navigating the cyber sea with knowledge
Home > Categoria > Vulnerability
Latest news

Wireshark 4.6.1: critical security update addresses major vulnerabilities

24 November 2025  |  dark6  |  Vulnerability

A recent update from the Wireshark Foundation addresses critical vulnerabilities impacting the widely used network protocol analyzer, potentially exposing users to denial-of-service conditions. The vulnerability lies within the...

>> read more

Chrome: a rapid-response Zero-Day exploits type confusion vulnerabilities

18 November 2025  |  dark6  |  Vulnerability

Google’s Chrome browser has found itself squarely in the crosshairs. A critical, previously unknown vulnerability – a zero-day – is actively being leveraged in the wild, triggering a...

>> read more

FortiWeb CVE-2025-64446 PoC: a critical weapon now widely available

16 November 2025  |  dark6  |  Vulnerability

The cybersecurity landscape has shifted once again, driven by the public release of a proof-of-concept exploit targeting the critical vulnerability CVE-2025-64446 within FortiWeb devices. This disclosure, originating from...

>> read more

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025  |  dark6  |  Vulnerability

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The disclosure, detailed in a critical security update, centers...

>> read more

Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms

6 June 2025  |  securebulletin.com  |  Vulnerability

A decade-old Remote Code Execution (RCE) flaw in Roundcube, the widely used open-source email client, has escalated into a global cybersecurity emergency. Designated CVE-2025-49113 with a near-maximum CVSS...

>> read more

Windows 11 fails to start after KB5058405 update

29 May 2025  |  securebulletin.com  |  Vulnerability

The recent disclosure by Microsoft regarding the KB5058405 cumulative update for Windows 11 has significant implications for enterprise cybersecurity and IT operations. This update, released as part of...

>> read more

Analysis of recent high-severity vulnerabilities in GitLab and Atlassian products

22 May 2025  |  securebulletin.com  |  Vulnerability

Both GitLab and Atlassian have recently released critical security patches addressing a series of high-severity vulnerabilities across their core product lines. This coordinated disclosure and remediation effort underscores...

>> read more

Malicious npm packages hijack macOS Cursor AI IDE

9 May 2025  |  securebulletin.com  |  Vulnerability

The Socket Threat Research Team has uncovered a sophisticated supply chain attack targeting macOS developers using the Cursor AI code editor. Three malicious npm packages-sw-cur, sw-cur1, and aiide-cur-have...

>> read more