CVE-2025-27599 – Element X Android Cross-Site Scripting (XSS) and Permission Tampering Vulnerability
The following table lists the changes that have been made to the CVE-2025-27599 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 18, 2025 Action […]
ASUS warns of critical auth bypass flaw in routers using AiCloud
ASUS warns of critical auth bypass flaw in routers using AiCloud ASUS is warning about an authentication bypass vulnerability in routers with AiCloud enabled that could allow remote attackers to perform unauthorized execution of functions on the device. The vulnera … Read more Published Date: Apr 18, 2025 (3 hours, 6 minutes ago) Vulnerabilities has been mentioned […]
SonicWall SMA VPN devices targeted in attacks since January
SonicWall SMA VPN devices targeted in attacks since January A remote code execution vulnerability affecting SonicWall Secure Mobile Access (SMA) appliances has been under active exploitation since at least January 2025, according to cybersecurity company Arcti … Read more Published Date: Apr 18, 2025 (4 hours, 9 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2021-20035
CVE-2025-40364 – Linux Kernel io_uring Buffer Import Vulnerability
The following table lists the changes that have been made to the CVE-2025-40364 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Apr. 18, 2025 Action […]
CVE-2024-11421 – Apache HTTP Server Cross-Site Scripting
The following table lists the changes that have been made to the CVE-2024-11421 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Rejected by [email protected] Apr. 18, 2025 Action Type […]
Chinese hackers target Russian govt with upgraded RAT malware
Chinese hackers target Russian govt with upgraded RAT malware Chinese-speaking IronHusky hackers are targeting Russian and Mongolian government organizations using upgraded MysterySnail remote access trojan (RAT) malware. Security researchers at Kaspersky’s Glob … Read more Published Date: Apr 18, 2025 (3 hours, 2 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2021-40449 CVE-2017-11882
CISA adds Microsoft and Apple vulnerabilities to KEV Catalog
CISA adds Microsoft and Apple vulnerabilities to KEV Catalog The Cybersecurity and Infrastructure Security Agency (CISA) has added three newly exploited vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, signaling active exploitation in the w … Read more Published Date: Apr 18, 2025 (1 hour, 11 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-31201 CVE-2025-31200 […]
CVE-2025-3790 – Apache Druid Monitoring Console Remote Improper Access Controls Vulnerability
The following table lists the changes that have been made to the CVE-2025-3790 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 18, 2025 Action […]
CVE-2025-3789 – Baseweb JSite Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-3789 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 18, 2025 Action […]
CVE-2025-32790 – Dify LLM App Development Platform Unauthorized APP DSL Export Vulnerability
The following table lists the changes that have been made to the CVE-2025-32790 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Modified by [email protected] Apr. 18, 2025 Action Type […]