Chinese MirrorFace APT targets Japan
Chinese MirrorFace APT targets Japan The MirrorFace Advanced Persistent Threat (APT) group, also known as Earth Kasha, has been linked to a series of cyber-attacks targeting Japan. These attacks have been ongoing since 2019 and have prim … Read more Published Date: Jan 12, 2025 (2 hours, 17 minutes ago) Vulnerabilities has been mentioned in this article. […]
Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecast
Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecast Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Ivanti Connect Secure zero-day exploited by attackers (CVE-2025-0282) Ivanti has fixed two vulnerabili … Read more Published Date: Jan 12, 2025 (2 hours, 16 minutes ago) Vulnerabilities has been mentioned in […]
CVE-2024-5594 impacts OpenVPN
CVE-2024-5594 impacts OpenVPN CVE-2024-5594 is a critical vulnerability identified in OpenVPN versions prior to 2.6.11. This vulnerability stems from improper sanitization of PUSH_REPLY messages, which allows attackers to inject u … Read more Published Date: Jan 12, 2025 (1 hour, 53 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-12847 CVE-2024-53704 CVE-2024-5594 CVE-2024-54677 CVE-2024-50379 CVE-2024-49415
CVE-2024-49785 – IBM WatsonX.ai Cross-Site Scripting (XSS)
The following table lists the changes that have been made to the CVE-2024-49785 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 12, 2025 Action […]
CVE-2021-29669 – IBM Jazz Foundation Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2021-29669 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 12, 2025 Action […]
CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations
CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations A severe vulnerability has been identified in the GiveWP plugin, one of WordPress’s most widely used tools for online donations and fundraising. Tracked as CVE-2025-22777, the flaw has a CVSS score of … Read more Published Date: Jan 12, 2025 (55 minutes ago) […]