<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>SylvarSec — Vulnerability Disclosures</title>
    <link>https://sylvarsec.com/</link>
    <description>Independent security research. Responsible vulnerability disclosure in third-party software.</description>
    <language>en</language>
    <lastBuildDate>Sun, 24 May 2026 08:55:50 GMT</lastBuildDate>
    <atom:link href="https://sylvarsec.com/rss.xml" rel="self" type="application/rss+xml" />
    <image>
      <url>https://sylvarsec.com/og-image.png</url>
      <title>SylvarSec</title>
      <link>https://sylvarsec.com/</link>
    </image>
    <item>
      <title>[CRITICAL] TeamViewer — TeamViewer Remote Client (4 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">TEAMVIEWER-2026</guid>
      <pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 4 vulnerabilities reported to TeamViewer via YesWeHack. Technical details will be published after the disclosure deadline.</description>
      <category>CRITICAL</category>
    </item>
    <item>
      <title>[HIGH] Microsoft — Outlook Desktop (New) (4 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">OUTLOOK-2026</guid>
      <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 4 vulnerabilities reported to Microsoft via MSRC. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[CRITICAL] Valve — Steam Client (CEF) (4 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">STEAM-CEF-2026</guid>
      <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 4 vulnerabilities reported to Valve via HackerOne. Technical details will be published after the disclosure deadline.</description>
      <category>CRITICAL</category>
    </item>
    <item>
      <title>[HIGH] Mobatek — MobaXterm Professional (2 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">MOBAXTERM-2026</guid>
      <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 2 vulnerabilities reported to Mobatek via Email. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] Microsoft — Teams Desktop (4 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">TEAMS-2026</guid>
      <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 4 vulnerabilities reported to Microsoft via MSRC. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] Riot Games — Riot Vanguard Anti-Cheat / Riot Client v1.17.17.15 (7 vulns) — DECLINED</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">RIOT-2026</guid>
      <pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate>
      <description>Full disclosure available. 7 vulnerabilities in Riot Vanguard Anti-Cheat / Riot Client v1.17.17.15. Status: declined. Platform: HackerOne.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] Proton AG — Proton Pass Desktop (4 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">PROTON-2026</guid>
      <pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 4 vulnerabilities reported to Proton AG via Email. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[MEDIUM] Microsoft — GitHub Copilot Chat (2 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">COPILOT-2026</guid>
      <pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 2 vulnerabilities reported to Microsoft via MSRC. Technical details will be published after the disclosure deadline.</description>
      <category>MEDIUM</category>
    </item>
    <item>
      <title>[HIGH] Meta — WhatsApp Desktop (11 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">WHATSAPP-2026</guid>
      <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 11 vulnerabilities reported to Meta via Meta Bug Bounty. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] LizardByte — Sunshine (1 vulns) — DECLINED</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">SUNSHINE-2026</guid>
      <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
      <description>Full disclosure available. 1 vulnerabilities in Sunshine. Status: declined. Platform: GitHub Advisory.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] Epic Games — Epic Games Launcher (4 vulns) — DECLINED</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">EPIC-2026</guid>
      <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
      <description>Full disclosure available. 4 vulnerabilities in Epic Games Launcher. Status: declined. Platform: HackerOne.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] Valve — Steam Client (12 vulns) — DECLINED</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">STEAM-2026</guid>
      <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
      <description>Full disclosure available. 12 vulnerabilities in Steam Client. Status: declined. Platform: HackerOne.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] Discord — Discord Desktop (6 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">DISCORD-2026</guid>
      <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 6 vulnerabilities reported to Discord via Bugcrowd. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[HIGH] WeMod — Wand IDE (4 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">WAND-2026</guid>
      <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 4 vulnerabilities reported to WeMod via Email. Technical details will be published after the disclosure deadline.</description>
      <category>HIGH</category>
    </item>
    <item>
      <title>[CRITICAL] ASUSTeK — Armoury Crate 6.4.12.0 / AsIO3.sys v1.2.41.0 (9 vulns)</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">ASUS-2026</guid>
      <pubDate>Sun, 29 Mar 2026 00:00:00 GMT</pubDate>
      <description>Under responsible disclosure. 9 vulnerabilities reported to ASUSTeK via ASUS PSIRT. Technical details will be published after the disclosure deadline.</description>
      <category>CRITICAL</category>
    </item>
    <item>
      <title>[HIGH] Anthropic — Claude Desktop / CoworkVMService (4 vulns) — DECLINED</title>
      <link>https://sylvarsec.com/#advisories</link>
      <guid isPermaLink="false">ANTHROPIC-2026</guid>
      <pubDate>Sun, 29 Mar 2026 00:00:00 GMT</pubDate>
      <description>Full disclosure available. 4 vulnerabilities in Claude Desktop / CoworkVMService. Status: declined. Platform: HackerOne.</description>
      <category>HIGH</category>
    </item>
  </channel>
</rss>
