CVE-2025-3706 – 104 Corporation eHRMS Reflected Cross-site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-3706 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]
400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild
400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild Shadow Servers have identified 454 SAP NetWeaver systems vulnerable to a critical zero-day vulnerability that has been actively exploited in the wild. The vulnerability, tracked as CVE-2025-31324, all … Read more Published Date: Apr 28, 2025 (2 hours, 38 minutes ago) Vulnerabilities has been […]
CVE-2025-3995 – TOTOLINK N150RT Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-3995 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]
CVE-2025-3994 – TOTOLINK N150RT Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-3994 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]
CVE-2025-3993 – TOTOLINK N150RT Buffer Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2025-3993 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]
Craft CMS Zero-Day CVE-2025-32432 Exploited with Metasploit Module Now Public
Craft CMS Zero-Day CVE-2025-32432 Exploited with Metasploit Module Now Public Image: Chocapikk_ Security researcher Chocapikk has published a Metasploit module for a critical zero-day vulnerability impacting Craft CMS, tracked as CVE-2025-32432 (CVSS 10). This remote code execu … Read more Published Date: Apr 28, 2025 (4 hours, 7 minutes ago) Vulnerabilities has been mentioned in this article. […]
CISA Warns of Critical Vulnerabilities in Planet Technology Products
CISA Warns of Critical Vulnerabilities in Planet Technology Products CISA has issued a new security advisory highlighting critical vulnerabilities impacting several Planet Technology products, including UNI-NMS-Lite, NMS-500, NMS-1000V, WGS-804HPT-V2, and WGS-4215-8T2S … Read more Published Date: Apr 28, 2025 (1 hour, 55 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-32432 CVE-2025-46275 CVE-2025-46274 CVE-2025-46273 CVE-2025-46272 CVE-2025-46271 […]
Critical Flaw Exposes Linux Security Blind Spot: io_uring Bypasses Detection
Critical Flaw Exposes Linux Security Blind Spot: io_uring Bypasses Detection ARMO researchers have uncovered a critical weakness in Linux runtime security tools, revealing how the io_uring interface enables rootkits to operate undetected by conventional monitoring solutions. T … Read more Published Date: Apr 28, 2025 (2 hours ago) Vulnerabilities has been mentioned in this article. CVE-2025-43865 […]
React Router Vulnerabilities CVE-2025-43864 and CVE-2025-43865 Expose Web Applications to Attack
React Router Vulnerabilities CVE-2025-43864 and CVE-2025-43865 Expose Web Applications to Attack The React Router team has issued the advisory addressing two vulnerabilities affecting applications running in Framework mode: CVE-2025-43864 and CVE-2025-43865. Given React Router’s widespread usage … Read more Published Date: Apr 28, 2025 (2 hours, 6 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-43865 […]
CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases Security researcher Baptiste Mayaud from Synacktiv has detailed a critical vulnerability in the FastCGI library, tracked as CVE-2025-23016 (CVSS 9.4). The flaw, which stems from improper handling of p … Read more Published Date: Apr 28, 2025 (2 hours, 20 minutes ago) Vulnerabilities has been mentioned in […]