CVE-2025-1673 – Apache DNS Out-of-Bounds Read Vulnerability
The following table lists the changes that have been made to the CVE-2025-1673 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 25, 2025 Action […]
CVE-2025-1648 – WordPress Yawave Plugin SQL Injection Vulnerability
CVE ID : CVE-2025-1648 Published : Feb. 25, 2025, 7:15 a.m. | 35 minutes ago Description : The Yawave plugin for WordPress is vulnerable to SQL Injection via the ‘lbid’ parameter in all versions up to, and including, 2.9.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing […]
CVE-2025-1128 – Everest Forms – WordPress Arbitrary File Upload and Deletion Vulnerability
CVE ID : CVE-2025-1128 Published : Feb. 25, 2025, 7:15 a.m. | 35 minutes ago Description : The Everest Forms – Contact Forms, Quiz, Survey, Newsletter & Payment Form Builder for WordPress plugin for WordPress is vulnerable to arbitrary file upload, read, and deletion due to missing file type and path validation in the ‘format’ method […]
CVE-2025-1063 – WordPress Classified Listing Plugin Sensitive Information Exposure Vulnerability
CVE ID : CVE-2025-1063 Published : Feb. 25, 2025, 7:15 a.m. | 35 minutes ago Description : The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.0.4 via the rtcl_taxonomy_settings_export function. This makes it possible for unauthenticated attackers to […]
CVE-2025-22210 – Hikashop Joomla SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-22210 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 25, 2025 Action […]
CVE-2024-10545 – The Photo Gallery WordPress Stored Cross-Site Scripting
The following table lists the changes that have been made to the CVE-2024-10545 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 25, 2025 Action […]
100+ Malicious IPs Actively Exploiting Vulnerabilities in Cisco Devices
100+ Malicious IPs Actively Exploiting Vulnerabilities in Cisco Devices A malicious campaign targeting Cisco networking equipment through two critical vulnerabilities, with state-backed actors and other actors exploiting unpatched systems. GreyNoise Intelligence has ident … Read more Published Date: Feb 25, 2025 (2 hours, 44 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-20953 CVE-2023-20273 CVE-2023-20198 CVE-2018-0171
CVE-2025-27364 (CVSS 10): Remote Code Execution Flaw Found in MITRE Caldera, PoC Releases
CVE-2025-27364 (CVSS 10): Remote Code Execution Flaw Found in MITRE Caldera, PoC Releases Image Credit: @mitrecalderaA newly discovered vulnerability in MITRE Caldera, tracked as CVE-2025-27364, has been assigned a critical CVSS score of 10, indicating its severe impact on affected systems … Read more Published Date: Feb 25, 2025 (2 hours, 59 minutes ago) Vulnerabilities has been […]
Two Actively Exploited Security Flaws in Adobe and Oracle Products Flagged by CISA
Two Actively Exploited Security Flaws in Adobe and Oracle Products Flagged by CISA Network Security / Vulnerability The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two security flaws impacting Adobe ColdFusion and Oracle Agile Product Lifecycle Management … Read more Published Date: Feb 25, 2025 (3 hours, 5 minutes ago) Vulnerabilities has been mentioned in […]
CVE-2025-1646 – Lumsoft ERP ASPX File Handler Unrestricted File Upload Vulnerability
The following table lists the changes that have been made to the CVE-2025-1646 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 25, 2025 Action […]