FORGEJO <=16.0.3 PATCHED FOR CRITICAL RCE
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
Forgejo, a self-hosted Git service, released version 16.0.4 to address a critical remote code execution vulnerability affecting all versions up to 16.0.3. Users should upgrade immediately.
■ MORE FROM THE SECURITY DESK
Trezor alerted customers Wednesday that attackers exploited a breach at its third-party email provider to launch phishing campaigns. The cryptocurrency hardware wallet maker urged users to remain vigilant against fraudulent communications.
Microsoft's September 2026 security patches are disabling Remote Desktop Services across Windows Server 2019, 2022, and 2025, leaving administrators unable to access systems and requiring hard resets in some cases.
Surfshark disclosed that hackers accessed internal testing and proxy servers following a configuration error that exposed systems to the internet. The VPN provider is investigating the scope of the breach.
Google has enabled Android users to securely migrate login credentials between password managers. The feature is currently available in a limited number of apps, with broader support expected soon.