Last Week in AppSec for 02. December 2025 - Checkmarx
Last week in AppSec was busy; with Shai-Hulud 2, node-forge signature bypasses, Apache Syncope hard-coded AES key, renewed focus on libxml2 vulnerabilities, and some big patched from GitLab
checkmarx.com