Entry Thumbnail

Tp-Link Archer AX53 v1.0 Openvpn configuration restore client_connect OS command injection vulnerability

CVE-2026-30815 An os command injection vulnerability exists in the Openvpn configuration restore client_connect functionality of Tp-Link Archer AX53 v1.0 1.3.1 Build 20241120 rel.54901(5553). A specially crafted configuration value can lead to arbitrary command execution. An attacker can upload a malicious file to trigger this vulnerability. The versions below were either […]

Posted by
Entry Thumbnail

Norton Secure VPN Installation Insecure Operation On Junction Privilege Escalation Vulnerability

CVE-2025-58074 A privilege escalation vulnerability exists during the installation of Norton Secure VPN via the Microsoft Store. A low-privilege user can replace files during the installation process, which may result in deletion of arbitrary files that can lead to elevation of privileges. The versions below were either tested or verified […]

Posted by
Entry Thumbnail

Inspektor Gadget Security Audit

In early 2026, Shielder was hired by OSTIF to perform a security audit of Inspektor Gadget, an eBPF-based framework that provides powerful and flexible observability tools for Kubernetes and Linux hosts. **Today, we are publishing the full report in our dedicated repository**. Inspektor Gadget is both a framework and a […]

Posted by