Cover story
Node.js
Cantina research: Two Node.js Bugs You Should Know About
Two Node.js vulnerabilities can replay SQLite writes or crash workers through oversized DNS responses. See the affected paths, fixed releases, and mitigations.
· Cantina
Cantina editorial
August 2026 65 stories
Intelligence for the new security frontier
Research, perspectives, and field notes from the people closing the loop on security.
Latest storiesDispatches
Analysis / Research / News
RabbitMQ
05Analysis of four RabbitMQ security vulnerabilities affecting OAuth permissions, topic access, loopback enforcement, and Direct Reply-To bindings.
Cantina
Node.js
06Security researchers disclose three distinct vulnerabilities affecting Node.js hostname and TLS stack layers, each enabling authentication bypasses through trust boundary violations.
Cantina
cybersecurity
07Cantina gains access to Anthropic's CVP to enhance AppSec agent capabilities for vulnerability verification and resolution.
Cantina
deepfakes
08A comprehensive analysis of deepfake fraud trends, detection methods, and defensive strategies as of 2026.
Cantina
Supply Chain Security
09Analysis of how TeamPCP compromised the Trivy security scanner and launched a multi-ecosystem supply chain attack affecting major software delivery infrastructure.
Cantina
AI security
10Cantina's CEO examines how AI model capabilities for finding vulnerabilities have shifted security from access control to remediation speed.
Cantina
healthcare security
11A vulnerability in Pathling Server versions 1.2.0 and earlier allowed attackers to bypass security allowlists by reclassifying untrusted data as local after fetching it from attacker-controlled URLs.
Cantina
FHIR
12Four additional high-severity vulnerabilities discovered in Pathling FHIR analytics server beyond the TrustLaunder findings.
Cantina
Page 1 of 6 · 65 stories