CVE-2025-23047 – “Cilium Origin Header Cross-Site Resource Information Leakage”
Cilium is a networking, observability, and security solution with an eBPF-based dataplane. An insecure default `Access-Control-Allow-Origin` header value could lead to sensitive data exposure for users of Cilium versions 1.14.0 through 1.14.7, 1.15.0 through 1.15.11, and 1.16.0 through 1.16.4 who deploy Hubble UI using either Cilium CLI or via the Cilium Helm chart. A user […]
CVE-2024-55957 – Thermo Fisher Scientific Xcalibur Local Privilege Escalation Vulnerability
The following table lists the changes that have been made to the CVE-2024-55957 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-0651 – Cloudflare WARP Windows Privilege Escalation File Manipulation Vulnerability
The following table lists the changes that have been made to the CVE-2025-0651 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24403 – Jenkins Azure Service Fabric Plugin Information Disclosure Vulnerability
The following table lists the changes that have been made to the CVE-2025-24403 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24402 – Jenkins Azure Service Fabric Plugin CSRF Classified Information Disclosure
The following table lists the changes that have been made to the CVE-2025-24402 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24401 – Jenkins Folder-based Authorization Strategy Plugin Permission Enforcement Vulnerability
The following table lists the changes that have been made to the CVE-2025-24401 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24400 – Jenkins Eiffel Broadcaster Plugin Sign Forgery
The following table lists the changes that have been made to the CVE-2025-24400 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24399 – Jenkins OpenId Connect Authentication Plugin Case Insensitive Authentication Bypass Vulnerability
The following table lists the changes that have been made to the CVE-2025-24399 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24398 – Jenkins Bitbucket Server Integration Plugin Cross-Site Request Forgery (CSRF) Vulnerability
The following table lists the changes that have been made to the CVE-2025-24398 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]
CVE-2025-24397 – Jenkins GitLab Plugin Insecure Permission Check
The following table lists the changes that have been made to the CVE-2025-24397 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]