voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
🚨 EUVD-2026-43279
📊 Score: 5.1/10 (CVSS v3.1)
📦 Product: DeDeCMS
📅 Updated: 2026-07-13
📝 A security flaw has been discovered in DedeCMS 5.7.118. Impacted is an unknown function of the file /plus/search.php of the component Column Management. Performing a manipulation of the argument Column Name results in code injection. The attack is possible to be carried out r...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43279
🚨 EUVD-2026-43278
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: Online Book Store System
🏢 Vendor: SourceCodester
📅 Updated: 2026-07-13
📝 A vulnerability was identified in SourceCodester Online Book Store System 1.0. This issue affects some unknown processing of the component User Management Module. Such manipulation of the argument Name/Username leads to cross site scr...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43278
🚨 EUVD-2026-43277
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: HashNeRF-pytorch
🏢 Vendor: yashbhalgat
📅 Updated: 2026-07-13
📝 A vulnerability has been found in yashbhalgat HashNeRF-pytorch up to 82885e698295982504eb6a26d060a6b2473e3706. Affected by this issue is the function torch.load of the file run_nerf.py of the component Checkpoint File Handler. The manipulation o...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43277
🚨 EUVD-2026-43276
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: WuzhiCMS, WuzhiCMS
📅 Updated: 2026-07-13
📝 A flaw has been found in WuzhiCMS up to 4.1.0. Affected by this vulnerability is the function config/listimage of the file /index.php?m=attachment&f=index&v=upload of the component Attachment API. Executing a manipulation can lead to information disclosure. The att...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43276
Possible Phishing 🎣
on: ⚠️hxxps[:]//webmailupdatecompa[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a540e723b77500008cd6574
#cybersecurity #phishing #infosec #urldna #scam #infosec
CISA Adds Two Joomla Zero-Days to KEV Catalog: Deadline July 13 https://deafnews.it/en/article/cisa-adds-two-joomla-zero-days-to-kev-catalog-deadline-july-13 #Cybersecurity
F5: 128 CVEs, 100% unpatched. 2 CISA KEV exploited. Trust Score: D. 86 critical/high flaws. Patch now or risk exploitation. #F5 #cybersecurity #infosec
This strange Pixel bug keeps launching Circle to Search, and no one knows why
Circle to Search is making itself way too comfortable on some Pixels.
https://www.androidauthority.com/android-17-circle-to-search-bug-3686687/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Suspected Armored Likho APT hackers deploy the new BusySnake Stealer to target government agencies and electric power sectors globally.
#BusySnakeStealer #ArmoredLikho #CyberSecurity #Malware #APT
Run Kali Linux and isolated browsers on a $99 ZimaBoard 2 with zero lag. This Kasm setup turns your homelab into a cyber lab. #Homelab #Linux #Cybersecurity
https://www.valtersit.com/turn-your-zimaboard-2-into-an-ultimate-cyber-lab-with-kasm-2026-guide/
🔴 CVE-2026-15511 - Critical (9.8)
A vulnerability was determined in Comfast CF-WR631AX V3 up to 2.7.0.8. Affected by this vulnerability is the function system_wl_upload_pic_file of the file /usr/bin/webmgnt of the component FastCGI Backend. This manipulation of the argument filena...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15511/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-15506 - High (7.8)
A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. The affected element is an unknown function in the library saappctl.sys of the component Driver. Such manipulation leads to heap-based buffer overflow. An attack has ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15506/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-15288 - High (7.5)
The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to Improper Input Validation in all versions up to, and including, 2.2.1. This is due to the plugin accepting the payment amount directly from user-contr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15288/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-15282 - Critical (9.8)
The Instant Appointment plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'insapp_upload_image_as_attachment' function in all versions up to, and including, 1.2. This makes it possible for unau...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15282/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
iPhone Ultra battery details allegedly revealed in new leak
As we approach the official announcement of Apple’s iPhone Ultra in September, more specs continue to leak. A new rumor today claims to reveal exactly how big the foldable iPhone’s battery will be.
https://9to5mac.com/2026/07/10/iphone-ultra-battery-details-allegedly-revealed-in-new-leak/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
With ChatGPT Atlas shutting down, here are the AI browsers people actually use
OpenAI is pulling the plug on its dedicated web browser, ChatGPT Atlas. Instead of investing in an AI browser with a small user base, the company is improving agentic web use features inside the new ChatGPT desktop app.…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
These are my favorite new Messages features in iOS 27 [Video]
If you were to just look at the Messages app in iOS 27, you might not think much has changed, but that is far from the truth. Under the hood, Apple has completely revamped the Messages experience, making it faster, smar…
https://9to5mac.com/2026/07/10/these-are-my-favorite-new-messages-features-in-ios-27-video/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Deals: AirPods, Apple Watch Ultra 3 $140 off, M5 MacBook Air, Bose speakers $150 off, Anker chargers, more
Joining the Amazon Anker summer sale loaded with MagSafe gear, chargers, and accessories from $8, as well as the ongoing AirPods 4 deal at nearly 25% off, we have some additional deals to scope out today as well. This A…
https://9to5mac.com/2026/07/10/deals-airpods-apple-watch-ultra-3-m5-macbook-air/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
🚨 EUVD-2026-43259
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: OA
🏢 Vendor: Jinher
📅 Updated: 2026-07-13
📝 A flaw has been found in Jinher OA 1.0. The affected element is an unknown function of the file /C6/JHSoft.Web.PlanSummarize/PlanGiveOut.aspx. This manipulation of the argument httpOID causes sql injection. Remote exploitation of the attack is possible. The exploi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43259
🚨 EUVD-2026-43258
📊 Score: 6.3/10 (CVSS v3.1)
📦 Product: MacCMS Pro
📅 Updated: 2026-07-13
📝 A vulnerability was detected in MacCMS Pro up to 2022.1000.3005. Impacted is the function step5 of the file application/install/controller/Index.php of the component Installation Module. The manipulation results in authorization bypass. The attack may be launched remotely....
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43258
🚨 EUVD-2026-43257
📊 Score: 5.5/10 (CVSS v3.1)
📅 Updated: 2026-07-13
📝 Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Overflow Buffers.
This issue affects .
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43257
🚨 EUVD-2026-43256
📊 Score: 7.3/10 (CVSS v3.1)
📦 Product: PC Manager
🏢 Vendor: Tencent
📅 Updated: 2026-07-13
📝 A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301. This issue affects some unknown processing in the library qmudisk64.sys of the component QMUDisk Driver. The manipulation leads to uncontrolled search path. The attack must b...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43256
⚠️ CRITICAL: Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During Install
jscrambler npm package v8.14.0 was compromised and distributed a Rust-based infostealer that executes during npm install. Any developer who installed this version had malware run on their machine with access to cloud credentials, crypto wallets, passwords, and AI tool configs. This affects organiza…
Smart Home Diary: Sometimes the smart thing is to live with dumb switches
I think if we are honest with ourselves, most of us would admit that smart home tech falls into one of two categories. First, there is the genuinely useful. Second, there’s the stuff we do just because we can, and it is…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Pixel 11 Pro Fold leak shows off Google’s classy Pine color and a sleeker camera design
A new leak gives us our clearest look yet at the Pixel 11 Pro Fold in Pine while highlighting subtle design tweaks.
https://www.androidauthority.com/google-pixel-11-pro-pine-leak-3686662/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Possible Phishing 🎣
on: ⚠️hxxps[:]//userattmailyahoo3893940940[.]ukit[.]me/
🧬 Analysis at: https://urldna.io/scan/6a53ac153b77500008cd5ae1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Will you miss the Walkie-Talkie Apple Watch app when watchOS 27 drops push-to-talk?
Apple Watch is losing its Walkie-Talkie app in this fall’s watchOS 27 software update. Will you miss the Apple Watch push-to-talk functionality?
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Netflix among many companies showing interest in acquiring Letterboxd: report
Letterboxd, the popular hybrid movie tracking and social media app, is exploring a sale. A new report this week from Matt Belloni at Puck outlines the many companies that have shown interest in acquiring the service, in…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Possible Phishing 🎣
on: ⚠️hxxps[:]//facebookpagemanagement[.]com
🧬 Analysis at: https://urldna.io/scan/6a5446a63b77500004aef0ac
#cybersecurity #phishing #infosec #urldna #scam #infosec
🚨 EUVD-2026-43261
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: n8n-workflow-builder, n8n-workflow-builder, n8n-workflow-builder (+8 more)
🏢 Vendor: makafeli
📅 Updated: 2026-07-13
📝 A vulnerability was identified in makafeli n8n-workflow-builder up to 0.11.0. Affected is an unknown function of the file build/server.cjs of the component update_node_from_file. The manipul...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43261
🚨 EUVD-2026-43263
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: libredwg
🏢 Vendor: GNU
📅 Updated: 2026-07-13
📝 A vulnerability was determined in GNU LibreDWG 0.13.4-154-g0b573035. This impacts the function decompress_R2004_section of the file src/decode.c of the component R2004 Section Decompression. Executing a manipulation can lead to heap-based buffer overflow. The a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43263
🚨 EUVD-2026-43262
📊 Score: 2.3/10 (CVSS v3.1)
📦 Product: strix, strix, strix
🏢 Vendor: usestrix
📅 Updated: 2026-07-13
📝 A vulnerability was found in usestrix strix up to 1.0.2. This affects an unknown function of the file system_prompt.jinja of the component PyPI Handler. Performing a manipulation results in inclusion of functionality from untrusted control spher...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-43262
Discover why the NSA revived its Tailored Access Operations. Learn about this elite cyber unit's history, the NSA21 reform reversal, and future strategies.
⚠️ CRITICAL: jscrambler npm Package Compromised in Supply Chain Attack
Version 8.14.0 of the jscrambler npm package contained malicious native binaries that executed automatically during installation, compromising developer workstations and CI/CD pipelines. Any team member or build system that pulled this version is at risk of credential theft, API key exposure, and w…
Spotify makes Release Radar more customizable with new listening filters
Spotify announced today a series of updates to Release Radar, giving listeners more control over the music recommendations they receive every Friday. Here are the details.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
GhostLock, a stack-UAF that has existed in all Linux distributions for 15 years
https://nebusec.ai/research/ionstack-part-2/
Comments: https://news.ycombinator.com/item?id=48834309
#HackerNews #GhostLock #stackUAF #Linux #Vulnerability #CyberSecurity #InfoSec
GhostLock, a stack-UAF that has existed in all Linux distributions for 15 years
https://nebusec.ai/research/ionstack-part-2/
Comments: https://news.ycombinator.com/item?id=48864969
#HackerNews #GhostLock #stack-UAF #Linux #Vulnerability #Cybersecurity #Research #TechNews
😱 OMG Linux! A 15-year-old #bug snuck past everyone while they were too busy arguing over #tabs #vs. #spaces. 👀 The real horror show isn't the vulnerability; it's the endless buzzwords trying to sound smart. Just remember, next time, don't leave your #GhostLock unplugged! 🔌👻
https://nebusec.ai/research/ionstack-part-2/ #Linux #Cybersecurity #HackerNews #ngated
🟠 CVE-2026-15291 - High (7.5)
The Chat Help – Click to Chat Button & Form plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.3 via the REST API endpoints /wp-json/chat-help/v1/leads and /wp-json/chat-help/v1/leads/{...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15291/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-15293 - High (8)
The WP Business Intelligence Lite plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.2.0. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15293/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Possible Phishing 🎣
on: ⚠️hxxps[:]//oefcuonline[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/6a53979f3b77500005ac909c
#cybersecurity #phishing #infosec #urldna #scam #infosec
OpenAI unveils ChatGPT Work agent, GPT-5.6 models now available
OpenAI held its second livestream this week today at 10 am PT. The video teased that the company was “introducing the next chapter for ChatGPT” today. OpenAI has openly discussed bringing Codex workflows into the main C…
https://9to5mac.com/2026/07/09/openai-announcing-the-next-chapter-for-chatgpt-today-watch-here/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Apple TV sets major Comic-Con lineup with Silo, Dark Matter, Widow’s Bay, more
Deadline reports that Apple TV will take over Hall H for the first time at this year’s San Diego Comic-Con International, with panels, screenings, and a Silo experience. Here are the details.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
✍️ La Pensée du Soir
𝘓'𝘐𝘈 𝘢 𝘴𝘰𝘯 𝘫𝘰𝘶𝘳 𝘥𝘦 𝘧ê𝘵𝘦, 𝘮𝘢𝘪𝘴 𝘭𝘦𝘴 𝘮𝘢𝘭𝘸𝘢𝘳𝘦𝘴, 𝘦𝘶𝘹, 𝘯𝘦 𝘱𝘳𝘦𝘯𝘯𝘦𝘯𝘵 𝘫𝘢𝘮𝘢𝘪𝘴 𝘥𝘦 𝘷𝘢𝘤𝘢𝘯𝘤𝘦𝘴.
Possible Phishing 🎣
on: ⚠️hxxps[:]//1nbmt23[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a5400613b77500008cd6413
#cybersecurity #phishing #infosec #urldna #scam #infosec
Strava gets an Events tab with upcoming races, group runs, more
Starting today, Strava users will have a new way to discover races, group runs, rides, and other local events directly in the app. Here are the details.
https://9to5mac.com/2026/07/09/strava-gets-an-events-tab-with-upcoming-races-group-runs-more/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]