Breach of Confidence: 10 April 2026
I spent most of one day this week trying to access a perfectly ordinary online service and felt like I was applying for witness protection. By the end of it, I’d supplied a password, a code, a backup ...
Related Vulnerabilities
- CVE-2026-40097: Step CA is an online certificate authority for secure, automated certificate management for DevOps. LOW
- CVE-2026-23780: An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A SQL injection vulnerability in HIGH
- CVE-2026-40089: Sonicverse is a Self-hosted Docker Compose stack for live radio streaming. The Sonicverse Radio Audi MEDIUM
- CVE-2026-6067: A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds HIGH
- CVE-2026-3498: The BlockArt Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'clien MEDIUM
Related Coverage
Threat Actors