Security updates for Django close three high-severity vulnerabilities, including a path that can lead to arbitrary file read and write and, in some deployments, service disruption.
A newly corrected Ruby on Rails flaw shows how a routine upload-and-thumbnail workflow can cross a trust boundary and, in certain conditions, move from file disclosure toward code execution.
A critical Nessus Agent flaw shows how a security tool with filesystem reach can become a high-value target when file handling goes wrong.
Two resolved Go vulnerabilities, including one high-severity flaw, show how a small path-handling mistake can turn a safety API into a confidentiality risk.
High-severity flaws in a management platform and a file-scanning stack show how crafted input can threaten both service availability and file integrity in Cisco environments.
New vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway matter because edge appliances often hold the secrets that protect remote access itself.
A newly flagged flaw in Cisco Catalyst SD-WAN Manager turns a management-plane bug into a reminder that file-write issues on controllers can carry outsized operational risk.