From Our Security Partners
CVE-2025-68296 drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup
CVE-2026-41086 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability
CVE-2026-45637 Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-4367 Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing
CVE-2026-46140 Bluetooth: btmtk: validate WMT event SKB length before struct access
[R2] Nessus Version 10.12.1 Fixes SQL Injection Vulnerabilities
This post was originally published on this site.[R2] Nessus Version 10.12.1 Fixes SQL Injection Vulnerabilities Aaron Roy Wed, 06/24/2026 – 14:16 Vulnerabilities have been identified in Nessus version 10.12.0 and lower. An attacker can potentially perform SQL injection via reverse DNS records and scan result files injected by a privileged Nessus user. These attack vectors […]
[R3] Tenable Identity Exposure Version 3.93.5 Fixes Multiple Vulnerabilities
This post was originally published on this site.[R3] Tenable Identity Exposure Version 3.93.5 Fixes Multiple Vulnerabilities Aaron Roy Tue, 06/23/2026 – 16:43 Tenable Identity Exposure leverages third-party software to help provide underlying functionality. Several of the third-party components (.NET Windows Server Hosting, NodeJS, Erlang OTP, SQL Server, OpenSSL, Curl) were found to contain vulnerabilities, and […]