Nvidia: 16 CVEs Across GPU Drivers and vGPU Disclosed in Single-Day Advisory
Nvidia disclosed 16 vulnerabilities on May 26, 2026, spanning GPU Display Drivers, vGPU software, and the Transformers4Rec AI library, with seven rated High severity.
Stories cluster related articles into a single narrative, linked to the underlying CVEs and affected products. 3,771 stories synthesized.
Nvidia disclosed 16 vulnerabilities on May 26, 2026, spanning GPU Display Drivers, vGPU software, and the Transformers4Rec AI library, with seven rated High severity.
MyPillow has been named as a victim by the Play ransomware group, which threatens to leak stolen data including client documents and payroll unless a ransom is paid.
Microsoft patched a high-severity vulnerability in Visual Studio Code that let attackers embed hidden malicious settings inside MCP server install links, granting persistent code execution on developer machines.
High-severity flaws in the Angular Language Service VS Code extension allow remote code execution via JSDoc hover injection and insecure tsdk configuration loading.
The Joomla Project disclosed 18 vulnerabilities on May 26, 2026, including six critical-severity bugs spanning SQL injection, local file inclusion, privilege escalation, and unauthorized webservice access.
A new Linux malware called Quasar Linux (QLNX) is targeting developers and DevOps engineers with fileless execution and an eBPF rootkit, stealing SSH keys and cloud credentials.
A China-linked threat actor is targeting edge routers in Southeast Asia with a custom Linux implant that hijacks DNS traffic and deploys Cobalt Strike on Windows endpoints.
CISA published an advisory for CVE-2025-7745, a buffer over-read vulnerability in ABB AC500 V2 programmable logic controllers that could leak sensitive Modbus data to unauthenticated attackers.
CISA has published an advisory for CVE-2025-8754, a high-severity missing authentication vulnerability in ABB Ability™ zenon that allows unauthenticated attackers on the local network to remotely reboot affected systems.
CISA has issued an advisory for CVE-2026-7251, a critical hard-coded password vulnerability in Eppendorf BioFlo 320 bioreactors that could allow unauthenticated remote attackers to take full control of the device.
CISA warns of multiple critical vulnerabilities in ABB Ability Camera Connect due to an outdated VLC media player component, with CVSS scores up to 9.8.
CISA issued an advisory for CVE-2025-9970, a high-severity cleartext storage vulnerability in ABB LVS MConfig that could allow local attackers to extract plaintext passwords from memory dumps.
CISA published an advisory for CVE-2025-5517, a heap-based buffer overflow in ABB Terra AC wallbox chargers that could let attackers remotely control the device and alter firmware via crafted OCPP messages.
Iranian state-linked group MuddyWater targeted nine organizations across nine countries in Q1 2026 using DLL side-loading to deliver malware and steal data.
Lithuanian prosecutors are investigating a major breach of the state Centre of Registers, where attackers stole over 600,000 records including personal and property data, with suspicions of Russian involvement.
Google Threat Intelligence Group identifies a dozen mature Chinese-language PhaaS offerings that primarily target non-Chinese organizations, signaling a shift in the global phishing landscape.
Microsoft Defender for Endpoint automatically isolates compromised workstations upon detecting high-confidence ransomware or sophisticated attacks, cutting network access while preserving telemetry.
Malwarebytes uncovers a campaign using fake installers for ChatGPT, Claude, and other software on GitHub and SourceForge to deliver the DinDoor RAT, which leverages the Deno runtime for stealth.
A rapidly expanding ransomware operation codenamed NightSpire has compromised at least 64 organizations across 33 countries since March 2025, relying on trusted remote administration tools like Chrome Remote Desktop and AnyDesk for stealthy persistence.
Microsoft is testing a new automatic endpoint isolation feature in Defender for Endpoint that cuts compromised devices off from the network while maintaining security monitoring.
A cyberattack on 7-Eleven exposed personal data of approximately 185,000 people, with the ShinyHunters extortion gang claiming responsibility and leaking a 9.4 GB archive.
A timing side-channel vulnerability in Memcached's SASL authentication, CVE-2026-47783, allows attackers to infer valid usernames, lowering the barrier for brute-force attacks.
The open-source tool DockSec, now an OWASP incubator project, correlates findings from Trivy, Hadolint, and Docker Scout and uses an LLM to produce plain-English remediation and exact Dockerfile patches.
Microsoft patched CVE-2026-45659, a high-severity remote code execution vulnerability in SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016.