On October 5, 2026, Atlassian published a security advisory for CVE-2026-21589, a critical arbitrary file access vulnerability affecting eight products: Bitbucket Data Center, Confluence Data Center, ...
The operational reality: A new attack surface How agent activity fits existing security operations How security teams can prepare for agent-to-agent communication Build agent security into the SOC ...
In multiple functions of PduParser.java, there is a possible persistent denial of service due to a missing bounds check. This could lead to remote denial of service with no additional execution ...
The Twenty20 Image Before-After plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'offset' Shortcode Attribute in all versions up to, and including, 2.0.5 due to insufficient input ...
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions that are affected are 8.61 and 8.62. Easily ...
BOSTON — March 26, 2026 — Rapid7, Inc. (NASDAQ: RPD), a global leader in AI-powered managed cybersecurity operations, announced it has acquired Kenzo Security, an agentic AI security platform built to ...
Why is higher education so difficult to secure? Why multi-campus fragmentation increases cyber risk What should university systems change? Higher education faces a difficult security equation.
OpenRun is an open-source, self-hosted GitOps platform for deploying web apps and internal tools to Docker or Kubernetes. Prior to version 0.17.7, the restrictions on redirect URLs in openrun can be ...
CVSS 3.1 Base Score: 4.3 CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N) With curated Threat Intelligence, you can see which vulnerabilities truly put ...
The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report Patch management is the process of distributing and applying updates to software. These patches are often ...
In the Ransomware Radar Report, Rapid7 Labs researchers conducted independent research and analyzed data samples from Rapid7’s incident response teams to uncover trends in attacker behavior that could ...