CVE-2025-1265 – Vinci Protocol Analyzer Command Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-1265 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 20, 2025 Action […]

CVE-2025-24893 – XWiki Platform SolrSearch Remote Code Execution

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any guest can perform arbitrary remote code execution through a request to `SolrSearch`. This impacts the confidentiality, integrity and availability of the whole XWiki installation. To reproduce on an instance, without being logged in, go to `/xwiki/bin/get/Main/SolrSearch?media=rss&text=%7D%7D%7D%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7Dprintln%28″Hello%20from”%20%2B%20″%20search%20text%3A”%20%2B%20%2823%20%2B%2019%29%29%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D%20`. If […]

CVE-2025-0352 – Apache Rapid Response Monitoring Account Information Disclosure

The following table lists the changes that have been made to the CVE-2025-0352 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 20, 2025 Action […]

Ivanti Endpoint Manager Vulnerabilities Proof-of-Concept (PoC) Exploit Released

Ivanti Endpoint Manager Vulnerabilities Proof-of-Concept (PoC) Exploit Released A cluster of four critical vulnerabilities in Ivanti Endpoint Manager (EPM) has entered a dangerous new phase with the public release of proof-of-concept (PoC) exploit code, escalating risks for organ … Read more Published Date: Feb 20, 2025 (4 hours, 39 minutes ago) Vulnerabilities has been mentioned in this […]

New NailaoLocker Ransomware Attacking European Healthcare

New NailaoLocker Ransomware Attacking European Healthcare European healthcare organizations are facing a sophisticated cyber threat from a newly identified ransomware strain called NailaoLocker, deployed as part of a campaign tracked as Green Nailao by Orang … Read more Published Date: Feb 20, 2025 (2 hours, 33 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-24919

CVE-2025-27096 – WeGIA Web Manager for Institutions SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-27096 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 20, 2025 Action […]

CVE-2025-26618 – Erlang OTP SSH Packet Size Verification Vulnerability

Erlang is a programming language and runtime system for building massively scalable soft real-time systems with requirements on high availability. OTP is a set of Erlang libraries, which consists of the Erlang runtime system, a number of ready-to-use components mainly written in Erlang. Packet size is not verified properly for SFTP packets. As a result […]

CVE-2024-7141 – Atlassian Gliffy Online CSRF Vulnerability

The following table lists the changes that have been made to the CVE-2024-7141 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 20, 2025 Action […]

CVE-2023-51339 – PHPJabbers Event Ticketing System Email Flood DoS

The following table lists the changes that have been made to the CVE-2023-51339 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 20, 2025 Action […]

CVE-2023-51338 – PHPJabbers Meeting Room Booking System Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2023-51338 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 20, 2025 Action […]