Robuta

Sponsor of the Day: Jerkmate
https://seclists.org/oss-sec/2026/q2/247 oss-sec: Xen Security Advisory 485 v2 (CVE-2026-31786) - Linux kernel out of bounds read via... oss sec xenv2 cve 2026security advisorylinux kernelbounds read https://seclists.org/oss-sec/2026/q2/256 oss-sec: Re: [SECURITY] Out-of-Bounds Read in MPLS Extension Parsing — traceroute 2.1.2 oss secbounds read2 1securitympls https://seclists.org/oss-sec/2021/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2014/q1/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/194 oss-sec: CVE-2017-20230: Storable versions before 3.05 for Perl has a stack overflow oss sec cve3 05stack overflow2017storable https://seclists.org/oss-sec/2013/q2/523 oss-sec: Re: CVE request: Debian's package "mysql-server" leaks credential information oss seccve requestmysql serverdebianpackage https://seclists.org/oss-sec/2026/q2/54 oss-sec: X41 Advisory X41-2026-001: Guardrail Sandbox Escape in LiteLLM oss secadvisory 2026x41001guardrail https://seclists.org/oss-sec/2018/q3/251 oss-sec: Linux kernel: potential local priviledge escalation bug in vmacache code oss seclinux kernelescalation bugpotentiallocal https://seclists.org/oss-sec/2026/q2/245 oss-sec: Xen Security Advisory 483 v2 (CVE-2026-23556) - oxenstored keeps quota related use counts... oss sec xenv2 cve 2026security advisory https://seclists.org/oss-sec/2023/q1/110 oss-sec: Re: Re: double-free vulnerability in OpenSSH server 9.1 (CVE-2023-25136) oss secdouble freeopenssh server9 1cve 2023 https://seclists.org/oss-sec/2026/q2/254 oss-sec: Re: Coordinated Disclosure in the LLM Age oss seccoordinated disclosurellm age https://seclists.org/oss-sec/2026/q2/183 oss-sec: [ADVISORY] CVE-2026-5367: Heap over-read in OVN DHCPv6 Client ID processing advisory cve 2026oss secclient id5367heap https://seclists.org/oss-sec/2023/q3/98 oss-sec: Xen Security Advisory 435 v1 (CVE-2022-40982) - x86/Intel: Gather Data Sampling oss sec xencve 2022 40982gather data samplingsecurity advisory https://seclists.org/oss-sec/2011/q1/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/244 oss-sec: [oss-security][CVE-2026-3087] shutil.unpack_archive() doesn't check for Windows absolute... security cve 2026oss3087unpackarchive https://seclists.org/oss-sec/2026/q2/55 oss-sec: libpng 1.6.57: Use-after-free vulnerability fixed: CVE-2026-34757 libpng 1 6oss secfree vulnerabilitycve 202657 https://seclists.org/oss-sec/2008/q1/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/250 oss-sec: Coordinated Disclosure in the LLM Age oss seccoordinated disclosurellm age https://seclists.org/oss-sec/2026/q2/261 oss-sec: Re: [SECURITY] Out-of-Bounds Read in MPLS Extension Parsing — traceroute 2.1.2 oss secbounds read2 1securitympls https://seclists.org/oss-sec/2018/q3/142 oss-sec: More Ghostscript Issues: Should we disable PS coders in policy.xml by default? oss secpolicy xmlghostscriptissuesdisable https://seclists.org/oss-sec/2018/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2018/q4/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2020/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/198 oss-sec: Re: UAF in rsync 3.4.1 and below 3 4 1oss secuafrsync https://seclists.org/oss-sec/2026/q2/13 oss-sec: Re: [vim-security] Vim tabpanel modeline escape affects Vim 9.2.0272 oss sec9 2vimsecuritytabpanel https://seclists.org/oss-sec/2026/q2/252 oss-sec: CVE-2026-41873: Pony Mail: Admin account takeover via request smuggling oss sec cveadmin accountrequest smuggling2026pony https://seclists.org/oss-sec/2025/q2/6 oss-sec: Multiple vulnerabilities in Jenkins and Jenkins plugins oss secmultiple vulnerabilitiesjenkinsplugins https://seclists.org/oss-sec/2008/q4/344 oss-sec: CVE Request - Incomplete dahdi/zaptel tor2.c patch for CVE-2008-5396 oss sec cverequestincompletepatch2008 https://seclists.org/oss-sec/2011/q1/319 oss-sec: Re: CVE request: FreeBSD/OS X crontab information leakage oss seccve requestinformation leakagefreebsdx https://seclists.org/oss-sec/2013/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/243 oss-sec: CVE-2025-48431: Apache Thrift glibc language bindings: Specially crafted input can crash a... oss sec cveapache thriftlanguage bindingsspecially crafted2025 https://seclists.org/oss-sec/2025/q4/242 oss-sec: CVE-2025-59775: Apache HTTP Server: NTLM Leakage on Windows through UNC SSRF oss sec cveapache http server2025ntlmleakage https://seclists.org/oss-sec/2026/q2/173 oss-sec: Re: [CVE-2026-33691] OWASP CRS whitespace padding bypass vulnerability cve 2026 33691oss secowasp crsbypass vulnerabilitywhitespace https://seclists.org/oss-sec/2008/q4/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2010/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2018/q2/137 oss-sec: Re: CVE-2018-1130: Linux kernel: dccp: a null pointer dereference in... null pointer dereferenceoss seccve 2018linux kernel1130 https://seclists.org/oss-sec/2026/q2/219 oss-sec: CVE-2026-27172: Apache Camel: Unsafe Java deserialization in camel-consul ConsulRegistry... oss sec cveapache camel2026unsafejava https://seclists.org/oss-sec/2026/q2/249 oss-sec: Xen Security Advisory 487 v2 (CVE-2026-31787) - Linux kernel double free in Xen privcmd... oss sec xenv2 cve 2026security advisorylinux kerneldouble free https://seclists.org/oss-sec/2018/q2/143 oss-sec: Re: CVE-2018-1130: Linux kernel: dccp: a null pointer dereference in... null pointer dereferenceoss seccve 2018linux kernel1130 https://seclists.org/oss-sec/2023/q1/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/259 oss-sec: CVE-2026-40560: Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via... oss sec cvehttp request smuggling2026starmanversions https://seclists.org/oss-sec/2026/q2/211 oss-sec: CVE-2025-62233: Apache DolphinScheduler: Deserialization of untrusted data in RPC oss sec cveuntrusted data2025apachedolphinscheduler https://seclists.org/oss-sec/2020/q4/69 oss-sec: [SECURITY][CVE-2020-13937] Unauthenticated Configuration Disclosure oss secsecurity cve2020unauthenticatedconfiguration https://seclists.org/oss-sec/2015/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/246 oss-sec: Xen Security Advisory 484 v2 (CVE-2026-23557) - Xenstored DoS via XS_RESET_WATCHES command oss sec xenv2 cve 2026security advisorydos via https://seclists.org/oss-sec/2025/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2023/q1/53 oss-sec: Linux Kernel: hid: Use-After-Free in bigben_set_led() linux kernel hidoss secset ledusefree https://seclists.org/oss-sec/2023/q2/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/253 oss-sec: Xen Security Advisory 489 v1... oss sec xensecurity advisory489v1 https://seclists.org/oss-sec/2026/q2/index.html oss-sec: by thread oss secthread https://seclists.org/oss-sec/2011/q3/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2018/q1/ oss-sec: by thread oss secthread https://seclists.org/oss-sec/2026/q2/190 oss-sec: Libgcrypt security releases 1.12.2, 1.11.3, 1.10.x 1 12 211 3 10oss secsecurity releaseslibgcrypt https://seclists.org/oss-sec/2026/q2/262 oss-sec: Re: Coordinated Disclosure in the LLM Age oss seccoordinated disclosurellm age https://seclists.org/oss-sec/2018/q3/252 oss-sec: Re: Linux kernel: potential local priviledge escalation bug in vmacache code oss seclinux kernelescalation bugpotentiallocal https://seclists.org/oss-sec/2013/q2/39 oss-sec: Re: CVE Request: kernel information leak in fs/compat_ioctl.c VIDEO_SET_SPU_PALETTE oss seccve requestinformation leakvideo setkernel https://seclists.org/oss-sec/2026/q2/87 oss-sec: Re: systemd-journald in systemd 259 does not escape characters in emerg messages that are... oss secsystemd journaldescape characters259emerg https://tldrsec.com/p/tldr-sec-320 [tl;dr sec] #320 - Ramp's Security Agents, How Datadog Caught Malicious OSS Contributions,... Mar 19, 2026 - How Ramp fixed ~100 security issues in 6 days, detecting and mitigating GitHub supply chain attacks, two tools to automatically remove censorship from models tl dr secsecurity agents320rampdatadog