Google Chrome fixes CVE-2025-0291
Google Chrome fixes CVE-2025-0291 Google Chrome is one of the most widely used web browsers globally, and keeping it secure is paramount to protecting users from potential threats. The latest stable channel update to version 131.0.677 … Read more Published Date: Jan 08, 2025 (2 hours, 19 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-22137 – Pingvin Share File Traversal
The following table lists the changes that have been made to the CVE-2025-22137 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 08, 2025 Action […]
CVE-2025-22136 – Tabby Electron Fuses Code Injection
The following table lists the changes that have been made to the CVE-2025-22136 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 08, 2025 Action […]
CVE-2025-22130 – Soft Serve Git Server Path Traversal Vulnerability
The following table lists the changes that have been made to the CVE-2025-22130 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 08, 2025 Action […]
CVE-2025-20126 – Cisco ThousandEyes Endpoint Agent for macOS and RoomOS Invalid Certificate Validation Certificate Forgery Vulnerability
The following table lists the changes that have been made to the CVE-2025-20126 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 08, 2025 Action […]
CVE-2025-20123 – Cisco Crosswork Network Controller Cross-Site Scripting (XSS)
The following table lists the changes that have been made to the CVE-2025-20123 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 08, 2025 Action […]
CVE-2024-55517 – Polaris FT Intellect Core Banking SQL Injection
The following table lists the changes that have been made to the CVE-2024-55517 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 08, 2025 Action […]
CVE-2024-55656 – Redis RedisBloom Probabilistic Data Structures Integer Overflow Information Leak Out-of-Bounds Write
RedisBloom adds a set of probabilistic data structures to Redis. There is an integer overflow vulnerability in RedisBloom, which is a module used in Redis. The integer overflow vulnerability allows an attacker (a redis client which knows the password) to allocate memory in the heap lesser than the required memory due to wraparound. Then read […]
CVE-2024-51737 – RediSearch Remote Code Execution Vulnerability
RediSearch is a Redis module that provides querying, secondary indexing, and full-text search for Redis. An authenticated redis user executing FT.SEARCH or FT.AGGREGATE with a specially crafted LIMIT command argument, or FT.SEARCH with a specially crafted KNN command argument, can trigger an integer overflow, leading to heap overflow and potential remote code execution. This vulnerability […]
CVE-2024-51480 – Redis TimeSeries Remote Code Execution via Integer Overflow
RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Executing one of these commands TS.QUERYINDEX, TS.MGET, TS.MRAGE, TS.MREVRANGE by an authenticated user, using specially crafted command arguments may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This vulnerability is fixed in 1.6.20, 1.8.15, 1.10.15, and 1.12.3.