A critical breakdown in one of the most trusted Node.js sandbox libraries is putting countless applications … vm2 Vulnerabilities Enable Full System TakeoverRead more
sandbox escape
The AI Agent Escape: How CVE-2026-26268 Turns “Git Push” into an RCE
In the modern developer’s toolkit, AI agents like Cursor are becoming indispensable. They write boilerplate, refactor … The AI Agent Escape: How CVE-2026-26268 Turns “Git Push” into an RCERead more
Critical SandboxJS Vulnerability Enables Remote Host Takeover
A critical sandbox escape vulnerability has been discovered in SandboxJS, a popular JavaScript library used to … Critical SandboxJS Vulnerability Enables Remote Host TakeoverRead more
15 Zero-Days Used to Hack Phones in Intellexa Campaign
A commercial spyware vendor known as Intellexa has been linked to at least 15 zero-day vulnerabilities … 15 Zero-Days Used to Hack Phones in Intellexa CampaignRead more