CVE-2025-30772 – WPClever WPC Smart Upsell Funnel for WooCommerce Missing Authorization Privilege Escalation

The following table lists the changes that have been made to the CVE-2025-30772 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 27, 2025 Action […]

CrushFTP: Patch critical vulnerability ASAP! (CVE-2025-2825)

CrushFTP: Patch critical vulnerability ASAP! (CVE-2025-2825) CrushFTP has fixed a critical vulnerability (CVE-2025-2825) in its enterprise file transfer solution that could be exploited by remote, unauthenticated attackers to access vulnerable internet-facing s … Read more Published Date: Mar 27, 2025 (3 hours, 28 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-2825 CVE-2024-50623 CVE-2024-4040 CVE-2023-24489 CVE-2023-34362

CVE-2025-29993 – PowerCMS HTTP Header Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-29993 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 27, 2025 Action […]

Top 3 MS Office Exploits Hackers Use in 2025 – Stay Alert!

Top 3 MS Office Exploits Hackers Use in 2025 – Stay Alert! Hackers have long used Word and Excel documents as delivery vehicles for malware, and in 2025, these tricks are far from outdated. From phishing schemes to zero-click exploits, malicious Office files … Read more Published Date: Mar 27, 2025 (2 hours, 40 minutes ago) Vulnerabilities […]

PoC Exploit Released for Ingress-NGINX Remote Code Execution Vulnerabilities

PoC Exploit Released for Ingress-NGINX Remote Code Execution Vulnerabilities A proof-of-concept (PoC) exploit for a critical remote code execution vulnerability in Kubernetes Ingress-NGINX controllers, tracked as CVE-2025-1974. The vulnerability uncovered by WiZ affects the va … Read more Published Date: Mar 27, 2025 (3 hours, 7 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-1974

Multiple CVEs Found in Ingress-NGINX—Patch Now to Prevent Cluster Compromise

Multiple CVEs Found in Ingress-NGINX—Patch Now to Prevent Cluster Compromise A set of vulnerabilities have been identified in Ingress-NGINX Controller for Kubernetes, posing a risk to organizations relying on the affected versions. These vulnerabilities impact versions prior t … Read more Published Date: Mar 27, 2025 (3 hours, 8 minutes ago) Vulnerabilities has been mentioned in this […]

SnapCenter Security Flaw Rated Critical—NetApp Urges Immediate Patch

SnapCenter Security Flaw Rated Critical—NetApp Urges Immediate Patch A serious security vulnerability has recently been identified in NetApp’s SnapCenter software, a widely used enterprise solution for managing data protection. This flaw, tracked as CVE-2025-26512, cou … Read more Published Date: Mar 27, 2025 (3 hours, 14 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-2783 CVE-2025-26512 […]

CodeQLEAKED – GitHub Supply Chain Attack Allows Code Execution Using CodeQL Repositories

CodeQLEAKED – GitHub Supply Chain Attack Allows Code Execution Using CodeQL Repositories A significant vulnerability in GitHub’s CodeQL actions could have permitted attackers to execute malicious code across hundreds of thousands of repositories. The vulnerability, assigned CVE-2025-24362 … Read more Published Date: Mar 27, 2025 (1 hour, 49 minutes ago) Vulnerabilities has been mentioned in this article. […]

CVE-2024-45361 – Xiaomi Mi Connect Service APP Information Disclosure Vulnerability

The following table lists the changes that have been made to the CVE-2024-45361 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 27, 2025 Action […]

CVE-2024-45356 – Xiaomi Phone Framework Unauthorized Access Vulnerability

The following table lists the changes that have been made to the CVE-2024-45356 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 27, 2025 Action […]