Scroll down for all the latest web application security news and information.
Subscribe to our weekly newsletter for the latest in industry news, expert insights, dedicated information security content and online events.
Ninja Forms File Upload RCE via unauthenticated arbitrary file upload; update to 3.3.27 immediately
GrafanaGhost chains AI prompt injection and URL flaws to exfiltrate sensitive Grafana data
Attackers rapidly exploited a critical Oracle WebLogic RCE flaw the same day exploit code was released, according to a CloudSEK honeypot study
ShieldGuard Chrome extension posed as a crypto security tool but stole wallets and drained user data
Google Cloud report details a sharp rise in attackers exploiting software vulnerabilities, including React2Shell
Ericsson data breach affects 15k employees/customers after third-party service provider compromise