DEV Community

Cybersecurity

Articles related to cybersecurity and much more

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2026-24739: The Equalizer: How a Single Character Deleted Your Drive

CVE-2026-24739: The Equalizer: How a Single Character Deleted Your Drive

Comments
2 min read
GHSA-GPX9-96J6-PP87: The Call Is Coming From Inside The Container: TaskWeaver's Docker Escape

GHSA-GPX9-96J6-PP87: The Call Is Coming From Inside The Container: TaskWeaver's Docker Escape

Comments
2 min read
Clickjacking — when your users click things they never meant to

Clickjacking — when your users click things they never meant to

1
Comments
1 min read
The $1.8M FOOM Club Exploit: When a Groth16 Verifier Misconfiguration Breaks Soundness

The $1.8M FOOM Club Exploit: When a Groth16 Verifier Misconfiguration Breaks Soundness

Comments 1
3 min read
CVE-2024-4990: Magic Methods, Tragic Endings: RCE in Yii2 via Unsafe Reflection

CVE-2024-4990: Magic Methods, Tragic Endings: RCE in Yii2 via Unsafe Reflection

Comments
2 min read
CVE-2025-54997: The Janitor's Key: Turning OpenBao Audit Logs into RCE

CVE-2025-54997: The Janitor's Key: Turning OpenBao Audit Logs into RCE

Comments
2 min read
CVE-2026-22817: Identity Theft on the Edge: Exploiting JWT Algorithm Confusion in Hono

CVE-2026-22817: Identity Theft on the Edge: Exploiting JWT Algorithm Confusion in Hono

Comments
2 min read
đź”’ The Hidden Cost of Dependency Confusion

đź”’ The Hidden Cost of Dependency Confusion

1
Comments
4 min read
⚙️ Endpoint Evasion Lessons Learned

⚙️ Endpoint Evasion Lessons Learned

Comments
4 min read
CVE-2026-22785: Orval Overload: From OpenAPI Spec to Remote Code Execution

CVE-2026-22785: Orval Overload: From OpenAPI Spec to Remote Code Execution

Comments
2 min read
GHSA-F2MF-Q878-GH58: Parsl Tongue: SQL Injection in High-Performance Computing Visualization

GHSA-F2MF-Q878-GH58: Parsl Tongue: SQL Injection in High-Performance Computing Visualization

Comments
2 min read
GHSA-VX9W-5CX4-9796: Crawl4AI: When Web Scrapers Become File Servers

GHSA-VX9W-5CX4-9796: Crawl4AI: When Web Scrapers Become File Servers

Comments
2 min read
CVE-2026-23996: The Tell-Tale Delay: Timing Side-Channels in fastapi-api-key

CVE-2026-23996: The Tell-Tale Delay: Timing Side-Channels in fastapi-api-key

Comments
2 min read
CVE-2026-21441: The Invisible Avalanche: urllib3 Decompression Bomb

CVE-2026-21441: The Invisible Avalanche: urllib3 Decompression Bomb

Comments
2 min read
CVE-2026-22708: Trust Issues: Bypassing Cursor AI's 'Safe Mode' via Shell Built-ins

CVE-2026-22708: Trust Issues: Bypassing Cursor AI's 'Safe Mode' via Shell Built-ins

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.