Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

seclists.org

Open Source Security

Get the latest updates from Open Source Security directly as they happen.

Follow now 74 followers

Latest posts

Last updated about 1 hour ago

Heads-up: Upcoming Samba security releases (2026-05-26)

about 1 hour ago

Posted by Douglas Bagnall on May 19The Samba security release that was...

PCManFM-Qt allows arbitrary files to be opened via the org.freedesktop.FileManager1.ShowFolders method

about 2 hours ago

Posted by Aaron Rainbolt on May 19This issue was mentioned in the...

CVE-2026-41054: haveged — privilege escalation via command socket

about 5 hours ago

Posted by Jiri Hladky on May 19Hello A privilege escalation vulnerability was...

Re: On the issue of MIME handlers that execute arbitrary code (e.g. Wine)

about 5 hours ago

Posted by Aaron Rainbolt on May 19Someone in the Wine bug report...

Re: On the issue of MIME handlers that execute arbitrary code (e.g. Wine)

about 5 hours ago

Posted by Aaron Rainbolt on May 19(Hmm, seems the address I sent...

CVE-2026-5090: Template::Plugin::HTML versions through 3.102 for Perl allows HTML and JavaScript to be injected

about 7 hours ago

Posted by Robert Rothenberg on May 19======================================================================== CVE-2026-5090                                        CPAN Security Group ========================================================================...

[OSSA-2026-013] Ironic: Denial of Service via specially crafted deployment requests (CVE-2026-44919)

about 7 hours ago

Posted by Jay Faulkner on May 19====================================================================================== OSSA-2026-013: Denial of Service in...

Re: On the issue of MIME handlers that execute arbitrary code (e.g. Wine)

about 7 hours ago

Posted by Gabriel Corona on May 19Hi Yes, MIME type registration (and...

Re: PinTheft Linux LPE

about 7 hours ago

Posted by Jelle van der Waa on May 19Fedora seems "unaffected", CONFIG_RDS=m...

CVE-2026-27173: Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments

about 11 hours ago

Posted by Vincent Beck on May 19Severity: Moderate Affected versions: - Apache...

Evince/Atril/Xreader command injection CVE-2026-46529

about 11 hours ago

Posted by Michael Catanzaro on May 19Hi CVE-2026-46529 is a command injection...