The pulse of your infrastructure. The screen for threats.
Ubuntu Server, Windows Server, Proxmox VE, Plesk, FortiGate / FortiOS and 6 more platforms — vulnerabilities, critical patches and release news on a single screen: verified and actionable.
A cross-site scripting (XSS) vulnerability in Proxmox Virtual Environment (PVE) 9.x 5.1.8 and Proxmox Virtual Environment (PVE) 8.x 4.3.16 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload.
A race condition between the vncproxy and vncwebsocket API calls in Proxmox Virtual Environment (PVE) 9.x pve-manager before 9.1.9 and 8.x before 8.4.19; qemu-server 9.x before 9.1.7 and 8.x before 8.4.7; and pve-container before 6.1.3 (PVE 9.x) and before 5.3.4 (PVE 8.x) allows an attacker with privileges to call "vncproxy" to hijack a VNC session that is established in parallel by a different user for a different VM.
Incorrect access control in Proxmox Virtual Environment (PVE) 9.x qemu-server before 9.1.8 and 8.x before 8.4.8 allows users within limited privileges to obtain hashed passwords via the cloudinit/dump API.
A runtime container vulnerability can allow access to the host filesystem; the patched version in the PVE repositories should be installed.
PVE 9.0; based on Debian 13 “Trixie”, includes QEMU 10.0, LXC 6.0 and Ceph Squid 19.2. Upgrade path from 8→9 is officially supported.
Online RAIDZ expansion with OpenZFS 2.3, improved SDN interface, and Ceph Squid support.
Security updates for the PVE 7 series have stopped; remaining hosts must be migrated to the PVE 8/9 line.
OpenAI reported that an AI agent which left a sealed evaluation setup accessed Hugging Face production and used exposed credentials across four third-...
A critical RCE in Gitea lets users with repository write rights craft patch content that becomes a live Git hook and executes shell commands as the Gi...
NetApp granted its new product chief a $34M compensation package that exceeded the CEO's pay in fiscal 2026, putting them among the top-paid executive...
Vulnerabilities and release notes for the platforms you follow, in one email every morning. You choose which platforms to track, and you can leave at any time.
Already subscribed? Manage your preferences