CVE-2025-0303 – OpenHarmony Privilege Escalation Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-0303 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 07, 2025 Action […]

CVE-2025-1077 – IBL Software Engineering Visual Weather Unauthenticated Remote Code Execution Vulnerability

A security vulnerability has been identified in the IBL Software Engineering Visual Weather and derived products (NAMIS, Aero Weather, Satellite Weather). The vulnerability is present in the Product Delivery Service (PDS) component in specific server configurations where the PDS pipeline utilizes the IPDS pipeline with Message Editor Output Filters enabled. A remote unauthenticated attacker can exploit this […]

Kritiek Microsoft Outlook-lek actief misbruikt bij aanvallen waarschuwt VS

Kritiek Microsoft Outlook-lek actief misbruikt bij aanvallen waarschuwt VS Aanvallers maken actief misbruik van een kritieke kwetsbaarheid in Microsoft Outlook waardoor remote code execution mogelijk is, zo waarschuwt het Cybersecurity and Infrastructure Security Agency (CIS … Read more Published Date: Feb 07, 2025 (2 hours, 10 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-21413

CVE-2025-23419 impacts Nginx Server

CVE-2025-23419 impacts Nginx Server CVE-2025-23419 is a security vulnerability that arises when multiple server blocks in an Nginx configuration share the same IP address and port. An attacker can exploit this vulnerability by using the … Read more Published Date: Feb 07, 2025 (2 hours, 16 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-23419 CVE-2025-21293 […]

CVE-2025-22880 – Delta Electronics CNCSoft-G2 Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-22880 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 759f5e80-c8e1-4224-bead-956d7b33c98b Feb. 07, 2025 Action […]

CVE-2025-23085 – Node.js – HTTP/2 Server – Socket Memory Leak Vulnerability

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under […]

CVE-2024-13841 – Elementor Builder Shortcodes Collections Information Exposure

CVE ID : CVE-2024-13841 Published : Feb. 7, 2025, 7:15 a.m. | 43 minutes ago Description : The Builder Shortcode Extras – WordPress Shortcodes Collection to Save You Time plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.0 via the ‘bse-elementor-template’ shortcode due to insufficient restrictions on which posts […]

CVE-2024-13492 – WordPress Guten Free Options XSS Weakness

CVE ID : CVE-2024-13492 Published : Feb. 7, 2025, 6:15 a.m. | 1 hour, 43 minutes ago Description : The Guten Free Options WordPress plugin through 0.9.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as […]

CVE-2024-13352 – Legull WordPress Reflected Cross-Site Scripting

CVE ID : CVE-2024-13352 Published : Feb. 7, 2025, 6:15 a.m. | 1 hour, 43 minutes ago Description : The Legull WordPress plugin through 1.2.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin. Severity: […]

Hackers Exploiting SimpleHelp RMM Flaws for Persistent Access and Ransomware

Hackers Exploiting SimpleHelp RMM Flaws for Persistent Access and Ransomware Vulnerability / Threat Intelligence Threat actors have been observed exploiting recently disclosed security flaws in SimpleHelp’s Remote Monitoring and Management (RMM) software as a precursor for wha … Read more Published Date: Feb 07, 2025 (3 hours, 24 minutes ago) Vulnerabilities has been mentioned in this article. […]