ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)

Two unpatched Kaltura mwEmbed vulnerabilities, CVE-2026-19913 and CVE-2026-19912, allow remote unauthenticated attackers to read arbitrary files and execute code. Both flaws stem from unsafe deserialization in the mwEmbedLoader.php endpoint of the HTML5 video player library. CERT/CC disclosed the issues.
Tap to vote and see what everyone thinks.
Summary by ByteBrief