PoC Exploit Released for Yelp Flaw that Exposes SSH Keys on Ubuntu Systems

PoC Exploit Released for Yelp Flaw that Exposes SSH Keys on Ubuntu Systems A proof-of-concept (PoC) exploit has been released for CVE-2025-3155, a critical vulnerability in GNOME’s Yelp help viewer that enables attackers to exfiltrate SSH keys and other sensitive files from … Read more Published Date: Apr 08, 2025 (1 hour, 12 minutes ago) Vulnerabilities has […]

CVE-2025-3413 – Opplus Springboot-Admin Remote Deserialization Vulnerability

The following table lists the changes that have been made to the CVE-2025-3413 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

CVE-2025-0361 – Axis Communications VAPIX Device Configuration SSH Management API Unauthenticated Username Enumeration Vulnerability

The following table lists the changes that have been made to the CVE-2025-0361 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

CVE-2025-3412 – Mymagicpower AIAS Server-Side Request Forgery Vulnerability

The following table lists the changes that have been made to the CVE-2025-3412 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

CVE-2024-47261 – Axis VAPIX API File Upload Vulnerability (Arbitrary File Upload)

The following table lists the changes that have been made to the CVE-2024-47261 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

WhatsApp Vulnerability Let Attackers Execute Malicious Code Via Attachments

WhatsApp Vulnerability Let Attackers Execute Malicious Code Via Attachments A critical vulnerability in WhatsApp for Windows that could allow attackers to execute malicious code through seemingly innocent file attachments. The spoofing vulnerability, officially tracked as CVE … Read more Published Date: Apr 08, 2025 (2 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-30401

CVE-2025-3411 – Mymagicpower AIAS SSRF

The following table lists the changes that have been made to the CVE-2025-3411 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

CVE-2025-3410 – MyMagicPower AIAS Unrestricted File Upload Vulnerability

The following table lists the changes that have been made to the CVE-2025-3410 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

CVE-2025-3409 – Nothings stb Stack-Based Buffer Overflow Vulnerability

The following table lists the changes that have been made to the CVE-2025-3409 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]

CVE-2025-2004 – WordPress Simple WP Events Remote File Deletion Vulnerability

CVE ID : CVE-2025-2004 Published : April 8, 2025, 5:15 a.m. | 27 minutes ago Description : The Simple WP Events plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the wpe_delete_file AJAX action in all versions up to, and including, 1.8.17. This makes it possible for unauthenticated attackers […]