Vulnerabilities in PDF platforms from Foxit and Apryse could have been exploited for account takeover, data exfiltration, and other attacks.
The malicious version of Cline's npm package — 2.3.0 — was downloaded more than 4,000 times before it was removed.
A command injection flaw in the Windows Notepad App now gives remote attackers a path to execute code over a network, turning ...
Cline CLI 2.3.0 was published with a stolen npm token, installing OpenClaw in an 8-hour attack affecting ~4,000 downloads.