DEV Community

# vulnerability

Discussions about specific security vulnerabilities and CVEs.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
The Repository That Steals Your API Key: A Story About Environment Overrides in Claude Code

The Repository That Steals Your API Key: A Story About Environment Overrides in Claude Code

Comments
7 min read
CVE-2025-12758: Unicode Variation Selectors Bypass in 'validator' library (isLength)

CVE-2025-12758: Unicode Variation Selectors Bypass in 'validator' library (isLength)

Comments
1 min read
How We Found 15 Vulnerabilities in a Mass Notification System Used by the Governments

How We Found 15 Vulnerabilities in a Mass Notification System Used by the Governments

Comments
1 min read
Two High-Severity n8n Flaws Allow Authenticated Remote Code Execution

Two High-Severity n8n Flaws Allow Authenticated Remote Code Execution

Comments
1 min read
Two High-Severity n8n Flaws Allow Authenticated Remote Code Execution

Two High-Severity n8n Flaws Allow Authenticated Remote Code Execution

Comments
1 min read
Re: Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)

Re: Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)

Comments
1 min read
Cisco fixes Unified Communications RCE zero day exploited in attacks

Cisco fixes Unified Communications RCE zero day exploited in attacks

Comments
1 min read
Re: Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)

Re: Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)

Comments
1 min read
Re: Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)

Re: Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)

Comments
1 min read
Fortinet blocks exploited FortiCloud SSO zero day until patch is ready

Fortinet blocks exploited FortiCloud SSO zero day until patch is ready

Comments
1 min read
AIs Are Getting Better at Finding and Exploiting Security Vulnerabilities

AIs Are Getting Better at Finding and Exploiting Security Vulnerabilities

Comments
1 min read
SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 Score

SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 Score

Comments
1 min read
19th January – Threat Intelligence Report

19th January – Threat Intelligence Report

Comments
1 min read
Zoom and GitLab Release Security Updates Fixing RCE, DoS, and 2FA Bypass Flaws

Zoom and GitLab Release Security Updates Fixing RCE, DoS, and 2FA Bypass Flaws

Comments
1 min read
Microsoft releases update to address zero-day vulnerability in Microsoft Office

Microsoft releases update to address zero-day vulnerability in Microsoft Office

Comments
1 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.