1. libpng 1.6.56 Security Release: Decades-Old 'Horrible' Bug Patched in Critical Image Library
The libpng project has released version 1.6.56, a security update addressing two high-severity vulnerabilities. The most significant fix is for CVE-2026-33416, a use-after-free flaw that has been embedded in the library's transparency and palette handling code since the 1990s. This was not an unknown oversight; the pro...