Topic: input sanitization

  • Google Ignores Critical Gemini ASCII Attack

    Google Ignores Critical Gemini ASCII Attack

    A newly discovered ASCII smuggling vulnerability in Google's Gemini AI allows attackers to use invisible Unicode characters to manipulate the system, potentially spreading false information or accessing unauthorized data. This security flaw affects multiple AI platforms including Google Gemini, D...

    Read More »
  • Critical jsPDF Flaw Exposes Secrets in Generated PDFs

    Critical jsPDF Flaw Exposes Secrets in Generated PDFs

    A high-severity vulnerability (CVE-2025-68428) in the widely used jsPDF library allows attackers to steal local server files by exploiting a path traversal flaw in its Node.js version. The flaw affects several file-loading functions and was fixed in version 4.0.0, which uses Node.js's permission ...

    Read More »