(Getty Images) Critical defect in Java security engine poses serious downstream security risks Attackers can exploit the defect in the widely deployed pac4j with relative ease, but researchers haven’t observed active exploitation in the wild. Mar 10, 2026 By Matt Kapko
(Getty Images) Infosec pros: We need CVSS, warts and all The Common Vulnerability Scoring System has a lot of critics, but experts say it’s still the best unified way to share the severity of cybersecurity flaws. Feb 5, 2025 By Cynthia Brumfield