DEV Community

# vulnerability

Discussions about specific security vulnerabilities and CVEs.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
AI Supply Chain & SQLite Defenses: Flathub Policy, Protestware, Agentic Code

AI Supply Chain & SQLite Defenses: Flathub Policy, Protestware, Agentic Code

Comments
3 min read
GHES Key Rotation, Bug Bounty Program Refocus, AI Agent Permission Fatigue

GHES Key Rotation, Bug Bounty Program Refocus, AI Agent Permission Fatigue

Comments
3 min read
Supply Chain & AI Security: GlassWorm Takedown, Prompt Injection RCE, Ubuntu 24 Hardening

Supply Chain & AI Security: GlassWorm Takedown, Prompt Injection RCE, Ubuntu 24 Hardening

Comments
4 min read
Zero-Day Exploits, GitHub Actions Supply Chain Attacks, and OTP Auth Flaws

Zero-Day Exploits, GitHub Actions Supply Chain Attacks, and OTP Auth Flaws

Comments
3 min read
Nginx CVE-2026-9256, AI Prompt Injection Defenses, and Claude AI Data Leak Demo

Nginx CVE-2026-9256, AI Prompt Injection Defenses, and Claude AI Data Leak Demo

Comments
4 min read
AI Prompt Injection, Drupal SQLi Exploitation, and Nmap for Hardening

AI Prompt Injection, Drupal SQLi Exploitation, and Nmap for Hardening

Comments
3 min read
When Vulnerability Becomes Machine-Readable

When Vulnerability Becomes Machine-Readable

Comments
3 min read
Megalodon GitHub Supply Chain, Anthropic's Mythos AI for Vulns, & NoEyes Security Map

Megalodon GitHub Supply Chain, Anthropic's Mythos AI for Vulns, & NoEyes Security Map

Comments
2 min read
Microsoft Defender Zero-Days, GitHub Supply Chain Breaches, and Python Package Compromises

Microsoft Defender Zero-Days, GitHub Supply Chain Breaches, and Python Package Compromises

Comments
3 min read
GitHub Breach via VSCode Extension, ZTE Router CVE-2026-34472, & Public Repo Secrets Leaks

GitHub Breach via VSCode Extension, ZTE Router CVE-2026-34472, & Public Repo Secrets Leaks

Comments
3 min read
NGINX CVE-2026-42945: An 18-Year-Old Heap Overflow Now Actively Exploited

NGINX CVE-2026-42945: An 18-Year-Old Heap Overflow Now Actively Exploited

Comments
3 min read
NPM Supply Chain Compromise, cPanel Root RCE, AWS Pathfinding Labs

NPM Supply Chain Compromise, cPanel Root RCE, AWS Pathfinding Labs

Comments
3 min read
Windows MiniPlasma Zero-Day, TanStack Supply Chain Hardening & AudioHijack AI Attacks on LLMs

Windows MiniPlasma Zero-Day, TanStack Supply Chain Hardening & AudioHijack AI Attacks on LLMs

1
Comments
3 min read
macOS ping OOB Write Disclosed, Grafana Mass CVE Scanner, AI Code Security Risks

macOS ping OOB Write Disclosed, Grafana Mass CVE Scanner, AI Code Security Risks

Comments
3 min read
Linux Kernel SSH Key Flaw, CrushFTP Yara Detection, & Vercel Typosquatting Attack

Linux Kernel SSH Key Flaw, CrushFTP Yara Detection, & Vercel Typosquatting Attack

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.