CISA Adds ThreeVulnerabilities to KEV Catalog

CISA Adds ThreeVulnerabilities to KEV Catalog The Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities (KEV) Catalog with new additions, highlighting active exploitation of critical vulnerabiliti … Read more Published Date: Apr 29, 2025 (3 hours, 20 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-3928 CVE-2025-1976 CVE-2025-32818 CVE-2025-42599

Critical Linux Kernel Vulnerability Exposes Systems to Privilege Escalation Attacks

Critical Linux Kernel Vulnerability Exposes Systems to Privilege Escalation Attacks A significant vulnerability in the Linux kernel’s Virtual Socket (vsock) implementation, designated as CVE-2025-21756, has been identified that could allow local attackers to escalate privileges to ro … Read more Published Date: Apr 29, 2025 (2 hours, 29 minutes ago) Vulnerabilities has been mentioned in this article. […]

Hackers Exploit Craft CMS Flaws: A Deep Dive into CVE-2025–32432

Hackers Exploit Craft CMS Flaws: A Deep Dive into CVE-2025–32432 Imagine running a sleek website powered by Craft CMS, only to discover that hackers have slipped through the digital backdoor, wreaking havoc on your server. Sounds like a nightmare, right? 😱 Well, th … Read more Published Date: Apr 29, 2025 (2 hours, 35 minutes ago) Vulnerabilities […]

DslogdRAT Malware: A Sneaky Cyberattack Exploiting Ivanti ICS Zero-Day

DslogdRAT Malware: A Sneaky Cyberattack Exploiting Ivanti ICS Zero-Day Photo by SCARECROW artworks on UnsplashBuckle up, cybersecurity enthusiasts! 🚀 A new villain has entered the digital stage: DslogdRAT, a stealthy malware that’s been causing chaos by exploiting a zero … Read more Published Date: Apr 29, 2025 (50 minutes ago) Vulnerabilities has been mentioned in this […]

Broadcom waarschuwt voor actief misbruikt lek in Brocade Fabric OS

Broadcom waarschuwt voor actief misbruikt lek in Brocade Fabric OS Broadcom en het Amerikaanse cyberagentschap CISA waarschuwen voor een actief misbruikte kritieke kwetsbaarheid in Brocade Fabric OS. Dit is het besturingssysteem gebruikt voor Fibre Channel-switches e … Read more Published Date: Apr 29, 2025 (1 hour, 1 minute ago) Vulnerabilities has been mentioned in this article. CVE-2025-1976

CVE-2025-2893 – WordPress Gutenverse Stored Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-2893 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 29, 2025 Action […]

CVE-2024-12273 – CalculatedRoute Form WordPress Stored Cross-Site Scripting

CVE ID : CVE-2024-12273 Published : April 29, 2025, 6:15 a.m. | 57 minutes ago Description : The Calculated Fields Form WordPress plugin before 5.2.62 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed […]

Apache Tomcat Vulnerability Let Attackers Bypass Rules & Trigger DoS Condition

Apache Tomcat Vulnerability Let Attackers Bypass Rules & Trigger DoS Condition The Apache Software Foundation disclosed a significant security vulnerability in Apache Tomcat that could allow attackers to bypass security rules and trigger denial-of-service conditions through mani … Read more Published Date: Apr 29, 2025 (2 hours, 25 minutes ago) Vulnerabilities has been mentioned in this article. […]

CISA Issues Warning on Commvault Web Server Flaw Exploited in the Wild

CISA Issues Warning on Commvault Web Server Flaw Exploited in the Wild The Cybersecurity and Infrastructure Security Agency (CISA) has added the Commvault Web Server vulnerability (CVE-2025-3928) to its Known Exploited Vulnerabilities (KEV) catalog, indicating that threa … Read more Published Date: Apr 29, 2025 (2 hours, 48 minutes ago) Vulnerabilities has been mentioned in this article. […]

CVE-2025-46343 – n8n Stored XSS Vulnerability

n8n is a workflow automation platform. Prior to version 1.90.0, n8n is vulnerable to stored cross-site scripting (XSS) through the attachments view endpoint. n8n workflows can store and serve binary files, which are accessible to authenticated users. However, there is no restriction on the MIME type of uploaded files, and the MIME type could be […]