FEED ACTIVE last sync Jun 11 · 01:04Z tracking 20 advisories LIVE
tech · ai · security

The signal, not the noise.

Auto-updated intelligence on technology, AI, and the latest disclosed security advisories. Pulled daily, ranked by what matters.

Critical Advisories

all CVEs →
— · — · CVSS 10 · Jun 9

Adobe Campaign Classic (ACC) versions 7.4.3 build 9394 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does…

NVD detail →
microsoft · azure horizondb · CVSS 10 · Jun 4

Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.

NVD detail →
— · — · CVSS 9.9 · Jun 9

SAP NetWeaver Application Server ABAP and ABAP Platform allows an authenticated attacker with normal privileges to obtain a valid signed message and send modified signed XML documents to the verifier. This may result in acceptance of…

NVD detail →
— · — · CVSS 9.8 · Jun 10

In Splunk Enterprise versions below 10.2.4 and 10.0.7, and Splunk Cloud Platform versions below 10.4.2604.3 and 10.2.2510.14, an unauthenticated user could create or truncate arbitrary files through a PostgreSQL sidecar service…

NVD detail →
CVE-2025-6254 CRITICAL
— · — · CVSS 9.8 · Jun 10

The Doctreat Core plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.6.8. This is due to the doctreat_process_registration() function not properly restricting the roles that a user can…

NVD detail →
— · — · CVSS 9.8 · Jun 9

External control of file name or path in Azure Stack Edge allows an unauthorized attacker to execute code over a network.

NVD detail →