Topic: cvss ratings
-
Microsoft's Valentine's Day Patch: 6 Critical Zero-Day Fixes
Microsoft's February security update patched 59 vulnerabilities, with six actively exploited as zero-days before the fix, indicating a more aggressive threat landscape. Among the critical flaws patched were high-severity security feature bypasses in Windows Shell and Internet Explorer, which coul...
Read More » -
AI Supply Chains at Risk from Critical PickleScan Flaws
Researchers discovered three critical zero-day vulnerabilities (CVSS 9.3) in PickleScan, a tool for inspecting Python pickle files and PyTorch models, which allow attackers to bypass security checks and distribute malicious machine learning models. The flaws include a file extension bypass, a dis...
Read More » -
Critical Windows 0-Day Fixed: CISA Issues Urgent Alert
A critical Windows zero-day vulnerability (CVE-2026-20805) is being actively exploited, prompting urgent patching and a CISA mandate for federal agencies to apply the fix by February 3. The flaw undermines the ASLR security mechanism by leaking a memory address, which can be chained with other bu...
Read More »