The Lab · 2026-03-26 01:27:31 · GitHub Issues
A critical security vulnerability has been flagged within the widely-used `flatted` npm package, necessitating an immediate upgrade to version 3.4.2. The issue centers on a potential prototype pollution flaw in older versions, a class of vulnerability that can allow attackers to modify an application's object prototype...
The Lab · 2026-04-04 01:26:58 · GitHub Issues
A critical security update for DICOM medical imaging software directly confronts a known vulnerability that allows malware to be hidden within standard medical scan files. The patch, detailed in a GitHub repository, implements comprehensive validation for DICOM file preambles to detect and block a dangerous class of po...
The Lab · 2026-04-12 04:22:24 · GitHub Issues
The YUDDHA platform's autonomous security system, KAVACH, has automatically detected and patched a critical zero-trust violation within its core `/api` endpoint. The vulnerability, classified as `zero_trust_violation`, directly targeted PII data and was verified by the Mistral model and sandbox testing. This incident h...
The Lab · 2026-04-12 04:22:31 · GitHub Issues
The YUDDHA platform's autonomous security system, KAVACH, has automatically identified and patched a critical SQL injection vulnerability in a live application. The flaw was located in the `/rest/user/login` endpoint, a core authentication function, and was verified using the Mistral model and sandbox testing. The vuln...
The Lab · 2026-04-12 05:22:25 · GitHub Issues
The YUDDHA platform's autonomous security agent, KAVACH, has autonomously identified and patched a critical SQL injection vulnerability in a live application. The flaw was located in the `/rest/user/login` endpoint of a target service, classified under the OWASP Top 10 A03:2021 - Injection category. The vulnerability w...