Software security researcher Justin Steven found an unfixed DOM XSS vulnerability in the Gartner Peer Insights widget that dates back to the original development of the software. Many websites were made vulnerable due to the bug, including Vodafone and LogRhythm. Gartner has since patched the flaw, following an initial failed fix attempt.

Critical insights Q&A: Anomali’s AI-native approach helps defenders cut noise, mitigate swiftly
The cybersecurity world is deep into an AI pivot. Related: The case for AI-native SOCs The headlines fixate on doomsday threats and autonomous cyber weapons.