Overview
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Krytyczna podatność bezpieczeństwa CVE-2026-5757 w Ollamie pozwala na wykradanie danych z serwerów za pomocą specjalnie spreparowanych plików GGUF. Luka ta wykorzystuje brak walidacji metadanych w mechanizmie kwantyzacji, co może prowadzić do nieautoryzowanego dostępu do wrażliwych informacji.
#si #ai #sztucznainteligencja #wiadomości #informacje #technologia
Overview
- BerriAI
- litellm
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
🚨 CRITICAL: CVE-2026-42208 in BerriAI LiteLLM (v1.81.16 – 1.83.6) enables unauthenticated SQL injection via API key processing. Patch to v1.83.7 immediately to protect credentials and data. Details: https://radar.offseq.com/threat/cve-2026-42208-cwe-89-improper-neutralization-of-s-1213f296 #OffSeq #SQLInjection #Vuln #Security
Overview
- Microsoft
- Azure DevOps
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
🚨 CVE-2026-42826 (CRITICAL, CVSS 10.0) in Azure DevOps exposes sensitive data to unauthorized actors remotely. Microsoft has released a fix — ensure your environment is fully updated. More info: https://radar.offseq.com/threat/cve-2026-42826-cwe-200-exposure-of-sensitive-infor-a9bb0e45 #OffSeq #AzureDevOps #Vuln #InfoSec
Overview
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
Overview
- Revolution Slider
- Slider Revolution
Description
Statistics
- 1 Post
- 1 Interaction
Overview
Description
Statistics
- 2 Posts
Overview
- GitHub
- Enterprise Server
Description
Statistics
- 1 Post
Fediverse
@DrHyde To put a fine point on it: GitHub's status page showed nothing alarming on April 23—no major outage, no partial outage—because its calculus excludes "Degraded Performance" from downtime numbers. The platform never went down; it was just silently producing wrong merge results, corrupting repository history across 230 organizations and about 3,000 pull requests. That's not a blip. That's a data integrity failure.
Here's GitHub's own heavily-spun blog post on the matter (which also covers another incident on April 27).
Bonus: Five days after the merge queue incident, GitHub disclosed CVE-2026-3854, a critical remote code execution vulnerability where a crafted git push could execute code on GitHub's servers. Patched on github.com in 75 minutes, but 88% of GitHub Enterprise Server instances were still exposed when the disclosure went public.
One bad week doesn't explain a year of red squares, but it does crystallize the pattern.
/cc @choroba
Overview
- Apache Software Foundation
- Apache HTTP Server
Description
Statistics
- 1 Post
Overview
- Microsoft
- Windows Admin Center
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post