FaceHugger flaws: Diffusers code execution risk
Researchers disclosed FaceHugger flaws that can enable arbitrary code execution when Diffusers loads crafted model repositories. Fixes landed in Diffusers 0.38.0.
Researchers disclosed FaceHugger flaws that can enable arbitrary code execution when Diffusers loads crafted model repositories. Fixes landed in Diffusers 0.38.0.
A new Rails critical vulnerability (CVE-2026-66066) was patched after reports that unauthenticated attackers could read arbitrary server files. In some setups, that exposure could lead to remote code execution.