All Posts

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Thought Leadership

May 11, 2026

30 CVEs in Two Months: What the Spring Numbers Tell Us About the Future of Open Source Security

Why the CVE explosion is breaking traditional security models—and what enterprises must do next.

Taylor Corbett

Taylor Corbett

Share this post via:

herodevs.com/blog-posts/
30-cves-in-two-months-what-the-spring-numbers-tell-us-about-the-future-of-open-source-security

Security

May 6, 2026

CVE-2026-22752: Spring Authorization Server Critical — XSS, SSRF, and Privilege Escalation

How a flaw in dynamic client registration exposes OAuth servers to XSS, SSRF, and token abuse.

Mark Szymanski

Mark Szymanski

Share this post via:

herodevs.com/blog-posts/
cve-2026-22752-spring-authorization-server-critical----xss-ssrf-and-privilege-escalation