CVE-2025-23784 – “Contact Form 7 Round Robin Lead Distribution SQL Injection”

The following table lists the changes that have been made to the CVE-2025-23784 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 22, 2025 Action […]

CVE-2025-0411 – vulnerability in 7-Zip | Kaspersky official blog

CVE-2025-0411 – vulnerability in 7-Zip | Kaspersky official blog vulnerabilities Researchers have discovered a vulnerability in the 7-Zip file archiver software. January 22, 2025 The vulnerability CVE-2025-0411 has been discovered in the popular 7-Zip file archiver … Read more Published Date: Jan 22, 2025 (1 hour, 5 minutes ago) Vulnerabilities has been mentioned in this article.

Alpine laat beveiligingslek in infotainmentsysteem zitten: ‘gedeeld risico’

Alpine laat beveiligingslek in infotainmentsysteem zitten: ‘gedeeld risico’ Alpine, fabrikant van infotainmentsystemen voor auto’s, is niet van plan een kwetsbaarheid te verhelpen waardoor een fysiek aanwezige aanvaller zonder enige authenticatie willekeurige code als root op … Read more Published Date: Jan 22, 2025 (1 hour, 17 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-23924

Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS Botnet

Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS Botnet Threat actors are exploiting an unspecified zero-day vulnerability in Cambium Networks cnPilot routers to deploy a variant of the AISURU botnet called AIRASHI to carry out distributed denial-of-servic … Read more Published Date: Jan 22, 2025 (1 hour, 26 minutes ago) Vulnerabilities has been mentioned in […]

CVE-2025-0395 – GNU C Library Buffer Overflow Vulnerability

The following table lists the changes that have been made to the CVE-2025-0395 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 3ff69d7a-14f2-4f67-a097-88dee7810d18 Jan. 22, 2025 Action […]

48,000+ internet-facing Fortinet firewalls still open to attack

48,000+ internet-facing Fortinet firewalls still open to attack Despite last week’s confirmation of and warnings about long-standing exploitation of CVE-2024-55591, a critical vulnerability affecting Fortinet Fortigate firewalls, too many vulnerable devices are st … Read more Published Date: Jan 22, 2025 (1 hour, 36 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-55591

CVE-2025-23083 impacts Node.js

CVE-2025-23083 impacts Node.js BackgroundNode.js is a widely-used JavaScript runtime built on Chrome’s V8 JavaScript engine, known for its efficiency and ability to handle asynchronous operations. The platform is integral to many w … Read more Published Date: Jan 22, 2025 (2 hours, 32 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2024-13499 – GamiPress WordPress Shortcode Execution Vulnerability

CVE ID : CVE-2024-13499 Published : Jan. 22, 2025, 11:15 a.m. | 24 minutes ago Description : The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via gamipress_do_shortcode() function in all versions up to, and including, 7.2.1. This is due to […]

CVE-2024-13496 – GamiPress WordPress Plugin Time-Based SQL Injection Vulnerability

CVE ID : CVE-2024-13496 Published : Jan. 22, 2025, 11:15 a.m. | 24 minutes ago Description : The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, and including, 7.2.1 due to insufficient escaping […]

CVE-2024-13495 – WordPress GamiPress Plugin Shortcode Injection Vulnerability

CVE ID : CVE-2024-13495 Published : Jan. 22, 2025, 11:15 a.m. | 24 minutes ago Description : The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via the gamipress_ajax_get_logs() function in all versions up to, and including, 7.2.1. This is due […]