Latest News for: cve

Edit

NIST Limits CVE Enrichment After 263% Surge In Vulnerability Submissions

Slashdot 18 Apr 2026
"This change is driven by a surge in CVE submissions, which increased 263% between 2020 and 2025 ... - NIST will no longer routinely provide a separate severity score for a CVE where the CVE Numbering Authority has already provided a severity score.
Edit

A Deep Dive Into Attempted Exploitation of CVE-2023-33538 (Palo Alto Networks Inc)

Public Technologies 17 Apr 2026
). The text version of this document is not available ... Disclaimer ... (noodl. 130999332) .
Edit

Surging CVE disclosures force NIST to shake up workflows

Computer Weekly 17 Apr 2026
“This change is driven by a surge in CVE submissions, which increased 263% between 2020 and 2025 ... been assigned one by the CVE Numbering Authority – firms such as Microsoft, etc – that submitted it.
Edit

Anthropic's Project Glasswing CVE tally is still anyone's guess

The Register 16 Apr 2026
Like the majority of the companies participating, it remains a mystery.
Edit

Seal Security Launches Mythos Readiness Program to Close the "Silent Patch Gap" Between Fix Commits and CVE Advisories

PR Newswire 16 Apr 2026
Research shows 94% of CVE fix commits are pushed publicly before the advisory - a median 11-day window in which attackers can now weaponize a bug in minutes using frontier AI agents ... CVE advisories.
Edit

Conclusion Paper: Digital P/CVE for Policy-Makers (European Commission - Directorate General for Migration and Home Affairs)

Public Technologies 10 Apr 2026
On 27-28 November 2025, the EU Knowledge Hub on Prevention of Radicalisation organised in Brussels the third Strategic Communications training on Digital P/CVE for 25 ... Digital P/CVE for Policy-Makers.
Edit

Hopper Launches SUPPLYSHIELD™: A Secure Open Source Supply Layer Delivering Zero-CVE, Malware-Free Components Through a Trusted Registry

PR Newswire 03 Apr 2026
Open source software powers nearly every modern application, yet recent supply chain attacks have exposed a critical weakness in how it is consumed ... SUPPLYSHIELD replaces this model entirely ... SUPPLYSHIELD represents that shift ... About Hopper ... 21% ... .
Edit

Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse (Crowdstrike Holdings Inc)

Public Technologies 01 Apr 2026
) CVE-2026-20929, a vulnerability with a CVSS of 7.5 that was patched in the January 2026 Patch Tuesday update, enables attackers to exploit Kerberos authentication ...
Edit

Eclypsium Detects F5 BIG-IP Remote Code Execution Vulnerability (CVE-2025-53521) (Eclypsium Inc)

Public Technologies 01 Apr 2026
) Blog By ... CVE-2025-53521 was disclosed on October 15, 2025, but only added to the KEV on March 27, 2026 ... Attachments Original document Permalink. Disclaimer.
Edit

Cribl is now a CVE Numbering Authority (CNA) (Cribl Inc)

Public Technologies 24 Mar 2026
Today, Cribl is officially a CVE Numbering Authority (CNA). That means we can assign CVE IDs and publish CVE Records for vulnerabilities in Cribl products ... [...] ... Disclaimer.
Edit

Oracle vulnerability (CVE-2026-21992) impacts core products (Sophos Group Ltd)

Public Technologies 23 Mar 2026
) On March 20, 2026, Oracle disclosed a critical (CVSS score of 9.8) vulnerability (CVE-2026-21992) impacting two Oracle Fusion Middleware components ... [...] ... Attachments Original document Permalink. Disclaimer ... (noodl.
Edit

Operationalising National–Local Cooperation in Early Detection and Signalling Mechanisms: Towards a Strategic Protocol of P/CVE (European Commission - Directorate General for Migration and Home Affairs)

Public Technologies 20 Mar 2026
... essential yet persistently underdeveloped components of Preventing and Countering Violent Extremism (P/CVE) strategies across EU Member States and MENA countries ... Towards a Strategic Protocol of P/CVE.
×