Live stack monitoring for frameworks, packages, and vendor incidents
Feed synced 20h agoSecurity news for developers, not just security teams.
HackTribune turns supply-chain incidents, framework advisories, and malicious package reports into searchable incident pages, watchlists, and upgrade-worthy alerts.
5,604
incidents tracked
1,661
exploited in the wild
11
ecosystems covered
Verified against official advisory sources
Latest incidents
View all →UNKNOWNunknown
CVE-2026-19111 - Insecure direct object reference in Strands Agents Tools memory tools
UNKNOWNunknown
Launch HN: ProvenMetal (YC S26) delivers circuit boards in days instead of weeks
HIGHunknown
udisks2: udisks2: Local Privilege Escalation via as-user option spoofing
udisks2: udisks2: Local Privilege Escalation via as-user option spoofing
MEDIUMunknown
gst-plugins-good: gst-plugins-good: unbounded memory growth in rtph264depay and rtph265depay RTP depayloaders
gst-plugins-good: gst-plugins-good: unbounded memory growth in rtph264depay and rtph265depay RTP depayloaders
HIGHunknown
kernel: AMD-SN-7061: Safe RET Interrupt Vulnerability
kernel: AMD-SN-7061: Safe RET Interrupt Vulnerability
HIGHunknown
wildfly-clustering-faces-mojarra: com.sun.faces:jsf-impl: org.glassfish:jakarta.faces: mojarra: Unauthenticated RCE in EAP JSF applications
wildfly-clustering-faces-mojarra: com.sun.faces:jsf-impl: org.glassfish:jakarta.faces: mojarra: Unauthenticated RCE in EAP JSF applications via EL injection in ui:include