voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]EUVD Bot » 🤖 🌐
@EUVD_Bot@mastodon.social

🚨 EUVD-2026-33989

📊 Score: n/a
📅 Updated: 2026-06-02

📝 Incorrect boundary conditions in the Graphics: Text component. This vulnerability was fixed in Firefox 151.0.3.

🔗 euvd.enisa.europa.eu/vulnerabi

    [?]EUVD Bot » 🤖 🌐
    @EUVD_Bot@mastodon.social

    🚨 EUVD-2026-33987

    📊 Score: 6.9/10 (CVSS v3.1)
    📦 Product: authentik, authentik
    🏢 Vendor: goauthentik
    📅 Updated: 2026-06-02

    📝 authentik is an open-source identity provider. Prior to versions 2025.12.5 and 2026.2.3, the SAML source response processor (ResponseProcessor.parse()) does not validate the Conditions element on assertions. NotBefore, NotOnOrAfter, and Audi...

    🔗 euvd.enisa.europa.eu/vulnerabi

      [?]TheHackerWire » 🤖 🌐
      @thehackerwire@mastodon.social

      🟠 CVE-2026-42211 - High (8.1)

      React Router is a router for React. In versions 7.0.0 through 7.14.1, when using Framework Mode, a combination of steps could potentially allow unauthorized remote code execution (RCE) through external requests. This attack requires the applicatio...

      🔗 thehackerwire.com/vulnerabilit

      CVE Alert: CVE-2026-42211

      Alt...CVE Alert: CVE-2026-42211

        [?]TheHackerWire » 🤖 🌐
        @thehackerwire@mastodon.social

        🟠 CVE-2026-42342 - High (7.5)

        React Router is a router for React. In versions 7.0.0 through 7.14.x of react-router and versions 2.10.0 through 2.17.4 of @remix-run/server-runtime, certain crafted requests can consume disproportionate server resources via unbounded path expansi...

        🔗 thehackerwire.com/vulnerabilit

        CVE Alert: CVE-2026-42342

        Alt...CVE Alert: CVE-2026-42342

          [?]TheHackerWire » 🤖 🌐
          @thehackerwire@mastodon.social

          🟠 CVE-2026-33245 - High (8)

          React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS) vulnerability in the RSC redirect handling if ...

          🔗 thehackerwire.com/vulnerabilit

          CVE Alert: CVE-2026-33245

          Alt...CVE Alert: CVE-2026-33245

            [?]TechWire ⚡ » 🤖 🌐
            @techwire@social.gamefan.net

            Trump’s new AI executive order could slow down future model launches

            The White House wants to review new AI models before they get a public release.

            androidauthority.com/ai-model-

            [Android Authority]

              [?]TechWire ⚡ » 🤖 🌐
              @techwire@social.gamefan.net

              Google’s Phone app will tell you if a scammer is impersonating one of your contacts

              Google is launching a new feature for its Phone app that aims to protect you from AI impersonation scams. Now, when you receive a call from a scammer that appears to be coming from the same number as one of your contact…

              theverge.com/tech/941517/googl

              [The Verge]

                [?]urlDNA.io :verified: » 🤖 🌐
                @urldna@infosec.exchange

                Possible Phishing 🎣
                on: ⚠️hxxps[:]//voicemailgmtel[.]weebly[.]com
                🧬 Analysis at: urldna.io/scan/6a1f22053b77500

                  [?]TechWire ⚡ » 🤖 🌐
                  @techwire@social.gamefan.net

                  Microsoft designed some new Android-based hardware, and it’s not at all what you’re expecting

                  Project Solara has some big dreams about an AI agent-first OS, but will it live up to the hype?

                  androidauthority.com/microsoft

                  [Android Authority]

                    [?]The New Oil » 🤖 🌐
                    @thenewoil@mastodon.thenewoil.org

                    [?]The New Oil » 🤖 🌐
                    @thenewoil@mastodon.thenewoil.org

                    [?]EUVD Bot » 🤖 🌐
                    @EUVD_Bot@mastodon.social

                    🚨 EUVD-2026-33942

                    📊 Score: 9.3/10 (CVSS v3.1)
                    📦 Product: openmed
                    🏢 Vendor: maziyarpanahi
                    📅 Updated: 2026-06-02

                    📝 OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-filter model loading path. The privacy-filter dispatcher used broad substring matching on the user-supplied model_name parameter, allowing a value such as attacker/f...

                    🔗 euvd.enisa.europa.eu/vulnerabi

                      [?]EUVD Bot » 🤖 🌐
                      @EUVD_Bot@mastodon.social

                      🚨 EUVD-2026-33941

                      📊 Score: 6.3/10 (CVSS v3.1)
                      📦 Product: Mint, Mint
                      🏢 Vendor: elixir-mint
                      📅 Updated: 2026-06-02

                      📝 Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in elixir-mint Mint allows attacker-controlled HTTP/1 servers to desynchronise response framing on shared connections.

                      Mint's HTTP/1 Content-Length parser,...

                      🔗 euvd.enisa.europa.eu/vulnerabi

                        [?]EUVD Bot » 🤖 🌐
                        @EUVD_Bot@mastodon.social

                        🚨 EUVD-2026-33940

                        📊 Score: 8.2/10 (CVSS v3.1)
                        📦 Product: Mint, Mint
                        🏢 Vendor: elixir-mint
                        📅 Updated: 2026-06-02

                        📝 Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2 servers to exhaust memory in a Mint client (HTTP/2 CONTINUATION flood).

                        When Mint's HTTP/2 receive path observes a HEADERS frame ...

                        🔗 euvd.enisa.europa.eu/vulnerabi

                          [?]EUVD Bot » 🤖 🌐
                          @EUVD_Bot@mastodon.social

                          🚨 EUVD-2026-33939

                          📊 Score: 8.2/10 (CVSS v3.1)
                          📦 Product: Mint, Mint
                          🏢 Vendor: elixir-mint
                          📅 Updated: 2026-06-02

                          📝 Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2 servers to exhaust memory in a Mint client via PUSH_PROMISE flooding.

                          In lib/mint/http2.ex, Mint.HTTP2.decode_push_promise_header...

                          🔗 euvd.enisa.europa.eu/vulnerabi

                            [?]EUVD Bot » 🤖 🌐
                            @EUVD_Bot@mastodon.social

                            🚨 EUVD-2026-33938

                            📊 Score: 2.1/10 (CVSS v3.1)
                            📦 Product: Mint, Mint
                            🏢 Vendor: elixir-mint
                            📅 Updated: 2026-06-02

                            📝 Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in elixir-mint Mint allows HTTP Request Splitting and HTTP Request Smuggling.

                            In lib/mint/http1/request.ex, the encode_request_line/2 function splices the caller-supplied meth...

                            🔗 euvd.enisa.europa.eu/vulnerabi

                              [?]EUVD Bot » 🤖 🌐
                              @EUVD_Bot@mastodon.social

                              🚨 EUVD-2026-33937

                              📊 Score: n/a
                              📦 Product: Server
                              🏢 Vendor: Devolutions
                              📅 Updated: 2026-06-02

                              📝 Improper access control in the PAM account discovery feature in Devolutions Server 2026.1.19 and earlier allows an authenticated user without administrative privileges to delete network discovery scan configurations.

                              🔗 euvd.enisa.europa.eu/vulnerabi

                                [?]EUVD Bot » 🤖 🌐
                                @EUVD_Bot@mastodon.social

                                🚨 EUVD-2026-33935

                                📊 Score: n/a
                                📦 Product: Server
                                🏢 Vendor: Devolutions
                                📅 Updated: 2026-06-02

                                📝 Improper access control in the permission validation component in Devolutions Server 2026.1.19 and earlier allows an authenticated user with entry edit privileges to modify asset information without the required permission.

                                🔗 euvd.enisa.europa.eu/vulnerabi

                                  [?]OTX Bot » 🤖 🌐
                                  @techbot@social.raytec.co

                                  Fake Update Campaign on Pirated Streaming Sites Delivers Silent CryptoMiner and RAT

                                  Hackers are running a stealthy malware campaign targeting users visiting
                                  pirated movie and TV show streaming sites. Visitors will be prompted to
                                  update their video player plugin to download an archive consisting of an
                                  executable file and a DLL file.

                                  Pulse ID: 6a1f0902c202168f0b38b99d
                                  Pulse Link: otx.alienvault.com/pulse/6a1f0
                                  Pulse Author: cryptocti
                                  Created: 2026-06-02 16:46:58

                                  Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                    [?]TechWire ⚡ » 🤖 🌐
                                    @techwire@social.gamefan.net

                                    Ableton is letting musicians build browser-style extensions for Live

                                    Hack your DAW. | Image: Ableton Ableton already has Max for Live, which allows users to build MIDI effects, synths, and samplers for its digital audio workstation (DAW). But now with its Extensions SDK, features can be …

                                    theverge.com/tech/941674/ablet

                                    [The Verge]

                                      [?]TechWire ⚡ » 🤖 🌐
                                      @techwire@social.gamefan.net

                                      The Pixel Watch 5 may have surfaced again, this time somewhere much drier

                                      Four Google model numbers have appeared in India’s BIS database, possibly pointing to Pixel Watch 5 variants.

                                      androidauthority.com/google-pi

                                      [Android Authority]

                                        [?]N_{Dario Fadda} » 🌐
                                        @nuke@poliversity.it

                                        Miasma colpisce Red Hat: 33 pacchetti npm avvelenati per rubare credenziali cloud e segreti CI/CD

                                        insicurezzadigitale.com/miasma

                                          [?]urlDNA.io :verified: » 🤖 🌐
                                          @urldna@infosec.exchange

                                          Possible Phishing 🎣
                                          on: ⚠️hxxps[:]//app[.]qpointsurvey[.]com/s/vjmotsuhuve7al3c
                                          🧬 Analysis at: urldna.io/scan/6a1ee1fa3b77500

                                            [?]The New Oil » 🤖 🌐
                                            @thenewoil@mastodon.thenewoil.org

                                            [?]TechWire ⚡ » 🤖 🌐
                                            @techwire@social.gamefan.net

                                            Microsoft Build 2026: All the news about Windows, AI, RTX Spark, and more

                                            Microsoft’s annual developer conference is kicking off on June 2nd in San Francisco with the keynote presentation streaming live at 12:30PM ET / 9:30AM PT, and we will be following along here with everything as it’s ann…

                                            theverge.com/tech/941668/micro

                                            [The Verge]

                                              [?]EUVD Bot » 🤖 🌐
                                              @EUVD_Bot@mastodon.social

                                              🚨 EUVD-2026-33908

                                              📊 Score: n/a
                                              📦 Product: Five Star Restaurant Reservations
                                              🏢 Vendor: Etoile Web Design Incorporated
                                              📅 Updated: 2026-06-02

                                              📝 Missing Authorization vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations allows Exploiting Incorrectly Configured Access Control Security Levels.

                                              This issue affects Five Star Restaurant Reserv...

                                              🔗 euvd.enisa.europa.eu/vulnerabi

                                                [?]urlDNA.io :verified: » 🤖 🌐
                                                @urldna@infosec.exchange

                                                Possible Phishing 🎣
                                                on: ⚠️hxxps[:]//ttteetet[.]w3spaces[.]com
                                                🧬 Analysis at: urldna.io/scan/6a1e16b83b77500

                                                  [?]EUVD Bot » 🤖 🌐
                                                  @EUVD_Bot@mastodon.social

                                                  🚨 EUVD-2026-33907

                                                  📊 Score: 7.5/10 (CVSS v3.1)
                                                  📦 Product: EventPrime
                                                  🏢 Vendor: EventPrime
                                                  📅 Updated: 2026-06-02

                                                  📝 Missing Authorization vulnerability in EventPrime allows Exploiting Incorrectly Configured Access Control Security Levels.

                                                  This issue affects EventPrime: from n/a through 4.3.2.0.

                                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                                    [?]EUVD Bot » 🤖 🌐
                                                    @EUVD_Bot@mastodon.social

                                                    🚨 EUVD-2025-210038

                                                    📊 Score: 8.1/10 (CVSS v3.1)
                                                    📦 Product: Crafti
                                                    🏢 Vendor: Axiomthemes
                                                    📅 Updated: 2026-06-02

                                                    📝 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Crafti allows PHP Local File Inclusion.

                                                    This issue affects Crafti: from n/a through 1.12.

                                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                                      [?]EUVD Bot » 🤖 🌐
                                                      @EUVD_Bot@mastodon.social

                                                      🚨 EUVD-2025-210037

                                                      📊 Score: 7.5/10 (CVSS v3.1)
                                                      📦 Product: Accordion FAQ
                                                      🏢 Vendor: UnboundStudio
                                                      📅 Updated: 2026-06-02

                                                      📝 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in UnboundStudio Accordion FAQ allows PHP Local File Inclusion.

                                                      This issue affects Accordion FAQ: from n/a through 2.2.1.

                                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                                        [?]EUVD Bot » 🤖 🌐
                                                        @EUVD_Bot@mastodon.social

                                                        🚨 EUVD-2025-210036

                                                        📊 Score: 8.1/10 (CVSS v3.1)
                                                        📦 Product: confidant
                                                        🏢 Vendor: Axiomthemes
                                                        📅 Updated: 2026-06-02

                                                        📝 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Confidant allows PHP Local File Inclusion.

                                                        This issue affects Confidant: from n/a through 1.4.

                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                          [?]The New Oil » 🤖 🌐
                                                          @thenewoil@mastodon.thenewoil.org

                                                          [?]gtbarry » 🌐
                                                          @gtbarry@mastodon.social

                                                          Hackers breach senior US Space Force official’s Instagram account and post Iranian propaganda

                                                          Hackers breached a senior US Space Force official’s Instagram account and temporarily posted a string of pro-Iran and anti-US propaganda

                                                          cnn.com/2026/06/01/politics/ha

                                                            [?]BeyondMachines :verified: » 🤖 🌐
                                                            @beyondmachines1@infosec.exchange

                                                            Plaza Home Mortgage Reports Data Breach Following SilentRansomGroup Claims

                                                            Plaza Home Mortgage reported a data breach in February 2026 after attackers, allegedly from the SilentRansomGroup, compromised an employee computer to access sensitive customer and employee records.

                                                            ****

                                                            beyondmachines.net/event_detai

                                                              [?]TechWire ⚡ » 🤖 🌐
                                                              @techwire@social.gamefan.net

                                                              Motorola Edge 2026 arrives with the biggest design change in years, and you might love it

                                                              The afforadable Moto Buds 2 also get a new Pantone shade.

                                                              androidauthority.com/motorola-

                                                              [Android Authority]

                                                                [?]Flipboard Tech Desk » 🌐
                                                                @TechDesk@flipboard.social

                                                                Hackers found a simple way to infiltrate high-profile Instagram accounts...they just asked AI. Meta's AI support chatbot helped hackers access the accounts of Sephora, the Chief Master Sergeant of Space Force and Barack Obama's archived White House profile.

                                                                @jasonkoebler reports for @404mediaco:
                                                                flip.it/fYrAzS

                                                                  Back to top - More...