PoC Exploit Released for Yelp Flaw that Exposes SSH Keys on Ubuntu Systems
PoC Exploit Released for Yelp Flaw that Exposes SSH Keys on Ubuntu Systems A proof-of-concept (PoC) exploit has been released for CVE-2025-3155, a critical vulnerability in GNOME’s Yelp help viewer that enables attackers to exfiltrate SSH keys and other sensitive files from … Read more Published Date: Apr 08, 2025 (1 hour, 12 minutes ago) Vulnerabilities has […]
CVE-2025-3413 – Opplus Springboot-Admin Remote Deserialization Vulnerability
The following table lists the changes that have been made to the CVE-2025-3413 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-0361 – Axis Communications VAPIX Device Configuration SSH Management API Unauthenticated Username Enumeration Vulnerability
The following table lists the changes that have been made to the CVE-2025-0361 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-3412 – Mymagicpower AIAS Server-Side Request Forgery Vulnerability
The following table lists the changes that have been made to the CVE-2025-3412 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2024-47261 – Axis VAPIX API File Upload Vulnerability (Arbitrary File Upload)
The following table lists the changes that have been made to the CVE-2024-47261 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
WhatsApp Vulnerability Let Attackers Execute Malicious Code Via Attachments
WhatsApp Vulnerability Let Attackers Execute Malicious Code Via Attachments A critical vulnerability in WhatsApp for Windows that could allow attackers to execute malicious code through seemingly innocent file attachments. The spoofing vulnerability, officially tracked as CVE … Read more Published Date: Apr 08, 2025 (2 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-30401
CVE-2025-3411 – Mymagicpower AIAS SSRF
The following table lists the changes that have been made to the CVE-2025-3411 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-3410 – MyMagicPower AIAS Unrestricted File Upload Vulnerability
The following table lists the changes that have been made to the CVE-2025-3410 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-3409 – Nothings stb Stack-Based Buffer Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2025-3409 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-2004 – WordPress Simple WP Events Remote File Deletion Vulnerability
CVE ID : CVE-2025-2004 Published : April 8, 2025, 5:15 a.m. | 27 minutes ago Description : The Simple WP Events plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the wpe_delete_file AJAX action in all versions up to, and including, 1.8.17. This makes it possible for unauthenticated attackers […]