Atlassian Security Advisory AV25-217
Atlassian Security Advisory AV25-217 On April 15, 2025, Atlassian issued a critical security advisory AV25-217, addressing multiple vulnerabilities across its widely used software products. These security flaws, if left unpatched, could … Read more Published Date: Apr 18, 2025 (2 hours, 58 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-3520 – “WordPress Avatar Plugin File Deletion Vulnerability”
CVE ID : CVE-2025-3520 Published : April 18, 2025, 2:15 a.m. | 1 hour, 21 minutes ago Description : The Avatar plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in a function in all versions up to, and including, 0.1.4. This makes it possible for authenticated attackers, with Subscriber-level access […]
CVE-2025-2613 – WordPress Login Manager Stored Cross-Site Scripting (XSS)
CVE ID : CVE-2025-2613 Published : April 18, 2025, 2:15 a.m. | 1 hour, 21 minutes ago Description : The Login Manager – Design Login Page, View Login Activity, Limit Login Attempts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Custom logo and background URLs in all versions up to, and including, 2.0.5 due to […]
CVE-2024-13650 – Piotnet Addons For Elementor WordPress Stored Cross-Site Scripting
CVE ID : CVE-2024-13650 Published : April 18, 2025, 2:15 a.m. | 1 hour, 21 minutes ago Description : The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘PAFE Before After Image Comparison Slider’ widget in all versions up to, and including, 2.4.34 due to insufficient input sanitization and output […]
Critical CVE-2025-32433 PoC Released: Erlang/OTP SSH Vulnerability Enables RCE
Critical CVE-2025-32433 PoC Released: Erlang/OTP SSH Vulnerability Enables RCE An anonymous security researcher has published proof-of-concept code for CVE-2025-32433, a critical vulnerability in the Erlang/OTP SSH application. The flaw enables unauthenticated remote code execut … Read more Published Date: Apr 18, 2025 (3 hours, 40 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-32433 CVE-2024-53141
CVE-2025-25427 – “TP-Link WR841N UPnP Stored XSS”
The following table lists the changes that have been made to the CVE-2025-25427 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by f23511db-6c3e-4e32-a477-6aa17d310630 Apr. 18, 2025 Action […]
CVE-2025-0467 – VMware GPU Firmware Memory Corruption
CVE ID : CVE-2025-0467 Published : April 18, 2025, 1:15 a.m. | 2 hours, 21 minutes ago Description : Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest’s virtualised GPU memory. Severity: 0.0 | NA Visit the link for more details, such as […]
CVE-2024-53141: Linux Kernel Flaw Enables Privilege Escalation, PoC Releases
CVE-2024-53141: Linux Kernel Flaw Enables Privilege Escalation, PoC Releases Security researcher published the technical details and a proof-of-concept exploit for a vulnerability in Linux kernel—CVE-2024-53141, having a CVSS score of 7.8 for a serious out-of-bounds (OOB) acce … Read more Published Date: Apr 18, 2025 (2 hours, 49 minutes ago) Vulnerabilities has been mentioned in this article. […]
Hitachi Vantara Patches Critical Resource Injection Flaw in Pentaho
Hitachi Vantara Patches Critical Resource Injection Flaw in Pentaho Hitachi Vantara has issued a critical security advisory addressing a serious vulnerability in its widely used Pentaho Data Integration & Analytics platform. Tracked as CVE-2025-0756 with a CVSS score … Read more Published Date: Apr 18, 2025 (3 hours, 2 minutes ago) Vulnerabilities has been mentioned in this […]
IronHusky APT Resurfaces with Evolved MysterySnail RAT
IronHusky APT Resurfaces with Evolved MysterySnail RAT In a newly released report, Kaspersky’s Global Research and Analysis Team (GReAT) has revealed the resurgence of IronHusky, a Chinese-speaking APT group known for its espionage operations targeting Ru … Read more Published Date: Apr 18, 2025 (3 hours, 7 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2021-40449