DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2026-22200: Paper Cuts to Pwnage: Turning osTicket PDF Exports into RCE

CVE-2026-22200: Paper Cuts to Pwnage: Turning osTicket PDF Exports into RCE

Comments
2 min read
CVE-2025-32444: Pickle Rick-Roll: Critical RCE in vLLM's Mooncake Integration

CVE-2025-32444: Pickle Rick-Roll: Critical RCE in vLLM's Mooncake Integration

Comments
2 min read
CVE-2026-22708: Trust Issues: Bypassing Cursor AI's 'Safe Mode' via Shell Built-ins

CVE-2026-22708: Trust Issues: Bypassing Cursor AI's 'Safe Mode' via Shell Built-ins

Comments
2 min read
GHSA-RHFX-M35P-FF5J: Borrow Checker's Revenge: Stacked Borrows Violation in Rust's `lru` Crate

GHSA-RHFX-M35P-FF5J: Borrow Checker's Revenge: Stacked Borrows Violation in Rust's `lru` Crate

Comments
2 min read
CVE-2026-21441: The Invisible Avalanche: urllib3 Decompression Bomb

CVE-2026-21441: The Invisible Avalanche: urllib3 Decompression Bomb

Comments
2 min read
CVE-2026-23498: Shopware 6: Mapping Your Way to RCE via Twig Type Juggling

CVE-2026-23498: Shopware 6: Mapping Your Way to RCE via Twig Type Juggling

Comments
2 min read
CVE-2025-61984: Bash a Newline: The SSH ProxyCommand RCE You Didn't Know You Had

CVE-2025-61984: Bash a Newline: The SSH ProxyCommand RCE You Didn't Know You Had

Comments
2 min read
Why Risk-Based Code Paths Beat Full Visualization

Why Risk-Based Code Paths Beat Full Visualization

1
Comments
9 min read
Modeling identity and access hierarchy in Postgres with ltree

Modeling identity and access hierarchy in Postgres with ltree

Comments
7 min read
Building Cryptographically Secure Random Number Generators for High-Stakes Distributed Systems

Building Cryptographically Secure Random Number Generators for High-Stakes Distributed Systems

Comments
7 min read
I built a 6-pass security scanner for OpenClaw skills after 824 malicious ones were found on ClawHub

I built a 6-pass security scanner for OpenClaw skills after 824 malicious ones were found on ClawHub

2
Comments
2 min read
CVE-2025-66648: Vega's Visual Betrayal: Leaking the Window via Internal Functions

CVE-2025-66648: Vega's Visual Betrayal: Leaking the Window via Internal Functions

Comments
2 min read
CVE-2026-24785: The Sound of Silence: Breaking Clatter's Post-Quantum Promises (CVE-2026-24785)

CVE-2026-24785: The Sound of Silence: Breaking Clatter's Post-Quantum Promises (CVE-2026-24785)

Comments
2 min read
When macOS Gatekeeper Blocks a Legit App: Fixing Launch Errors in AzkaOS (app) on Sonoma

When macOS Gatekeeper Blocks a Legit App: Fixing Launch Errors in AzkaOS (app) on Sonoma

Comments
3 min read
“Meta-Security: Rethinking Trust, Incentives, and the Insider Threat”

“Meta-Security: Rethinking Trust, Incentives, and the Insider Threat”

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.