Google waarschuwt voor actief aangevallen kwetsbaarheden in Android
Google waarschuwt voor actief aangevallen kwetsbaarheden in Android Aanvallers hebben actief misbruik gemaakt van kwetsbaarheden in Android voordat beveiligingsupdates beschikbaar waren, zo waarschuwt Google. Patches zijn nu wel beschikbaar gemaakt. Daarnaast zijn er … Read more Published Date: Mar 04, 2025 (1 hour, 14 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-26849 – Docusnap Hard-Coded Cryptographic Key Vulnerability
The following table lists the changes that have been made to the CVE-2025-26849 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 04, 2025 Action […]
CVE-2025-0433 – WordPress Elementor Addons Stored Cross-Site Scripting Vulnerability
The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, & Animations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 2.0.7.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access […]
CVE-2024-9618 – Elementor Addons Stored Cross-Site Scripting Vulnerability
The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, & Animations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 2.0.7.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, […]
CVE-2025-0512 – WordPress Structured Content JSON-LD Plugin Stored Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-0512 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 04, 2025 Action […]
CVE-2024-13724 – WooCommerce Wallet Unauthenticated Access Vulnerability
The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction plugin for WordPress is vulnerable to unauthorized access to functionality in all versions up to, and including, 2.6.2. This makes it possible for unauthenticated attackers to increase their own wallet balance, transfer balances between arbitrary users and initiate transfer requests from […]
CVE-2024-13682 – WooCommerce Wallet CSRF
The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6.2. This is due to missing or incorrect nonce validation in class-wallet-user-table.php. This makes it possible for unauthenticated attackers to modify wallet balances via a […]
Google Warns of Two Critical Android Vulnerabilities Under Attack – Update Now!
Google Warns of Two Critical Android Vulnerabilities Under Attack – Update Now! Google has issued an urgent security alert for CVE-2024-43093 and CVE-2024-50302, two critical Android vulnerabilities actively exploited in coordinated attacks targeting devices running Android 12 th … Read more Published Date: Mar 04, 2025 (2 hours, 37 minutes ago) Vulnerabilities has been mentioned in this […]
Newly Exploited Vulnerabilities Target Cisco, Microsoft, and More – CISA Warns
Newly Exploited Vulnerabilities Target Cisco, Microsoft, and More – CISA Warns The Cybersecurity and Infrastructure Security Agency (CISA) recently updated its Known Exploited Vulnerabilities (KEV) Catalog by adding five vulnerabilities that have been actively exploited in the w … Read more Published Date: Mar 04, 2025 (2 hours, 40 minutes ago) Vulnerabilities has been mentioned in this […]
VS meldt actief misbruik van lek in end-of-life Cisco vpn-routers
VS meldt actief misbruik van lek in end-of-life Cisco vpn-routers Aanvallers maken actief misbruik van een kwetsbaarheid in Cisco small business vpn-routers. Daarvoor waarschuwt het Cybersecurity and Infrastructure Security Agency (CISA) van het Amerikaanse minister … Read more Published Date: Mar 04, 2025 (2 hours, 43 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2023-20118