voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
🚨 EUVD-2026-33989
📊 Score: n/a
📅 Updated: 2026-06-02
📝 Incorrect boundary conditions in the Graphics: Text component. This vulnerability was fixed in Firefox 151.0.3.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33989
🚨 EUVD-2026-33987
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: authentik, authentik
🏢 Vendor: goauthentik
📅 Updated: 2026-06-02
📝 authentik is an open-source identity provider. Prior to versions 2025.12.5 and 2026.2.3, the SAML source response processor (ResponseProcessor.parse()) does not validate the Conditions element on assertions. NotBefore, NotOnOrAfter, and Audi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33987
🟠 CVE-2026-42211 - High (8.1)
React Router is a router for React. In versions 7.0.0 through 7.14.1, when using Framework Mode, a combination of steps could potentially allow unauthorized remote code execution (RCE) through external requests. This attack requires the applicatio...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-42211/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-42342 - High (7.5)
React Router is a router for React. In versions 7.0.0 through 7.14.x of react-router and versions 2.10.0 through 2.17.4 of @remix-run/server-runtime, certain crafted requests can consume disproportionate server resources via unbounded path expansi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-42342/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-33245 - High (8)
React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router's unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS) vulnerability in the RSC redirect handling if ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-33245/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Trump’s new AI executive order could slow down future model launches
The White House wants to review new AI models before they get a public release.
https://www.androidauthority.com/ai-model-review-executive-order-3673605/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Google’s Phone app will tell you if a scammer is impersonating one of your contacts
Google is launching a new feature for its Phone app that aims to protect you from AI impersonation scams. Now, when you receive a call from a scammer that appears to be coming from the same number as one of your contact…
https://www.theverge.com/tech/941517/google-phone-scammer-ai-impersonation
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Possible Phishing 🎣
on: ⚠️hxxps[:]//voicemailgmtel[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a1f22053b775000086a5874
#cybersecurity #phishing #infosec #urldna #scam #infosec
Microsoft designed some new Android-based hardware, and it’s not at all what you’re expecting
Project Solara has some big dreams about an AI agent-first OS, but will it live up to the hype?
https://www.androidauthority.com/microsoft-solara-3673611/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
"We Sued #ICE to Get Its #Spyware Contract. The Agency Is Redacting Essentially Everything"
#privacy #cybersecurity #surveillance #transparency #politics
🚨 EUVD-2026-33942
📊 Score: 9.3/10 (CVSS v3.1)
📦 Product: openmed
🏢 Vendor: maziyarpanahi
📅 Updated: 2026-06-02
📝 OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-filter model loading path. The privacy-filter dispatcher used broad substring matching on the user-supplied model_name parameter, allowing a value such as attacker/f...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33942
🚨 EUVD-2026-33941
📊 Score: 6.3/10 (CVSS v3.1)
📦 Product: Mint, Mint
🏢 Vendor: elixir-mint
📅 Updated: 2026-06-02
📝 Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in elixir-mint Mint allows attacker-controlled HTTP/1 servers to desynchronise response framing on shared connections.
Mint's HTTP/1 Content-Length parser,...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33941
🚨 EUVD-2026-33940
📊 Score: 8.2/10 (CVSS v3.1)
📦 Product: Mint, Mint
🏢 Vendor: elixir-mint
📅 Updated: 2026-06-02
📝 Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2 servers to exhaust memory in a Mint client (HTTP/2 CONTINUATION flood).
When Mint's HTTP/2 receive path observes a HEADERS frame ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33940
🚨 EUVD-2026-33939
📊 Score: 8.2/10 (CVSS v3.1)
📦 Product: Mint, Mint
🏢 Vendor: elixir-mint
📅 Updated: 2026-06-02
📝 Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2 servers to exhaust memory in a Mint client via PUSH_PROMISE flooding.
In lib/mint/http2.ex, Mint.HTTP2.decode_push_promise_header...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33939
🚨 EUVD-2026-33938
📊 Score: 2.1/10 (CVSS v3.1)
📦 Product: Mint, Mint
🏢 Vendor: elixir-mint
📅 Updated: 2026-06-02
📝 Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in elixir-mint Mint allows HTTP Request Splitting and HTTP Request Smuggling.
In lib/mint/http1/request.ex, the encode_request_line/2 function splices the caller-supplied meth...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33938
🚨 EUVD-2026-33937
📊 Score: n/a
📦 Product: Server
🏢 Vendor: Devolutions
📅 Updated: 2026-06-02
📝 Improper access control in the PAM account discovery feature in Devolutions Server 2026.1.19 and earlier allows an authenticated user without administrative privileges to delete network discovery scan configurations.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33937
🚨 EUVD-2026-33935
📊 Score: n/a
📦 Product: Server
🏢 Vendor: Devolutions
📅 Updated: 2026-06-02
📝 Improper access control in the permission validation component in Devolutions Server 2026.1.19 and earlier allows an authenticated user with entry edit privileges to modify asset information without the required permission.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33935
Fake Update Campaign on Pirated Streaming Sites Delivers Silent CryptoMiner and RAT
Hackers are running a stealthy malware campaign targeting users visiting
pirated movie and TV show streaming sites. Visitors will be prompted to
update their video player plugin to download an archive consisting of an
executable file and a DLL file.
Pulse ID: 6a1f0902c202168f0b38b99d
Pulse Link: https://otx.alienvault.com/pulse/6a1f0902c202168f0b38b99d
Pulse Author: cryptocti
Created: 2026-06-02 16:46:58
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CryptoMiner #CyberSecurity #InfoSec #Malware #OTX #OpenThreatExchange #RAT #bot #cryptocti
Ableton is letting musicians build browser-style extensions for Live
Hack your DAW. | Image: Ableton Ableton already has Max for Live, which allows users to build MIDI effects, synths, and samplers for its digital audio workstation (DAW). But now with its Extensions SDK, features can be …
https://www.theverge.com/tech/941674/ableton-live-extensions-sdk-music-daw
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
The Pixel Watch 5 may have surfaced again, this time somewhere much drier
Four Google model numbers have appeared in India’s BIS database, possibly pointing to Pixel Watch 5 variants.
https://www.androidauthority.com/google-pixel-watch-5-bis-database-listing-3673529/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Miasma colpisce Red Hat: 33 pacchetti npm avvelenati per rubare credenziali cloud e segreti CI/CD
#CyberSecurity
https://insicurezzadigitale.com/miasma-colpisce-red-hat-33-pacchetti-npm-avvelenati-per-rubare-credenziali-cloud-e-segreti-ci-cd/
Possible Phishing 🎣
on: ⚠️hxxps[:]//app[.]qpointsurvey[.]com/s/vjmotsuhuve7al3c
🧬 Analysis at: https://urldna.io/scan/6a1ee1fa3b7750000702fdd2
#cybersecurity #phishing #infosec #urldna #scam #infosec
#Anthropic invites #EU to access #Mythos hacking tech
https://www.politico.eu/article/anthropic-invites-eu-to-access-mythos-hacking-tech/
Microsoft Build 2026: All the news about Windows, AI, RTX Spark, and more
Microsoft’s annual developer conference is kicking off on June 2nd in San Francisco with the keynote presentation streaming live at 12:30PM ET / 9:30AM PT, and we will be following along here with everything as it’s ann…
https://www.theverge.com/tech/941668/microsoft-build-may-2026-live-news-updates
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
🚨 EUVD-2026-33908
📊 Score: n/a
📦 Product: Five Star Restaurant Reservations
🏢 Vendor: Etoile Web Design Incorporated
📅 Updated: 2026-06-02
📝 Missing Authorization vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects Five Star Restaurant Reserv...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33908
Possible Phishing 🎣
on: ⚠️hxxps[:]//ttteetet[.]w3spaces[.]com
🧬 Analysis at: https://urldna.io/scan/6a1e16b83b77500007134808
#cybersecurity #phishing #infosec #urldna #scam #infosec
🚨 EUVD-2026-33907
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: EventPrime
🏢 Vendor: EventPrime
📅 Updated: 2026-06-02
📝 Missing Authorization vulnerability in EventPrime allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects EventPrime: from n/a through 4.3.2.0.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33907
🚨 EUVD-2025-210038
📊 Score: 8.1/10 (CVSS v3.1)
📦 Product: Crafti
🏢 Vendor: Axiomthemes
📅 Updated: 2026-06-02
📝 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Crafti allows PHP Local File Inclusion.
This issue affects Crafti: from n/a through 1.12.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-210038
🚨 EUVD-2025-210037
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: Accordion FAQ
🏢 Vendor: UnboundStudio
📅 Updated: 2026-06-02
📝 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in UnboundStudio Accordion FAQ allows PHP Local File Inclusion.
This issue affects Accordion FAQ: from n/a through 2.2.1.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-210037
🚨 EUVD-2025-210036
📊 Score: 8.1/10 (CVSS v3.1)
📦 Product: confidant
🏢 Vendor: Axiomthemes
📅 Updated: 2026-06-02
📝 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Confidant allows PHP Local File Inclusion.
This issue affects Confidant: from n/a through 1.4.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-210036
Welcome New #EFF Executive Director Nicole Ozer
https://www.eff.org/deeplinks/2026/05/welcome-new-eff-executive-director-nicole-ozer
Hackers breach senior US Space Force official’s Instagram account and post Iranian propaganda
Hackers breached a senior US Space Force official’s Instagram account and temporarily posted a string of pro-Iran and anti-US propaganda
#spaceforce #instagram #security #cybersecurity #hackers #hacking #hacked
https://www.cnn.com/2026/06/01/politics/hackers-space-force-official-instagram-iranian-propaganda
Plaza Home Mortgage Reports Data Breach Following SilentRansomGroup Claims
Plaza Home Mortgage reported a data breach in February 2026 after attackers, allegedly from the SilentRansomGroup, compromised an employee computer to access sensitive customer and employee records.
****
#cybersecurity #infosec #incident #databreach
https://beyondmachines.net/event_details/plaza-home-mortgage-discloses-data-breach-following-silentransomgroup-claims-q-3-s-x-v/gD2P6Ple2L
Motorola Edge 2026 arrives with the biggest design change in years, and you might love it
The afforadable Moto Buds 2 also get a new Pantone shade.
https://www.androidauthority.com/motorola-edge-2026-launched-pantone-olive-3673363/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Hackers found a simple way to infiltrate high-profile Instagram accounts...they just asked AI. Meta's AI support chatbot helped hackers access the accounts of Sephora, the Chief Master Sergeant of Space Force and Barack Obama's archived White House profile.
@jasonkoebler reports for @404mediaco:
https://flip.it/fYrAzS