CVE-2025-3891 – Apache mod_auth_openidc Denial of Service (DoS)
The following table lists the changes that have been made to the CVE-2025-3891 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 29, 2025 Action […]
CVE-2025-30194 – DNSdist DoH Double-Free Denial of Service
The following table lists the changes that have been made to the CVE-2025-30194 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 29, 2025 Action […]
CVE-2025-1194 – Huggingface Transformers Library GPT-NeoX-Japanese ReDoS Vulnerability
The following table lists the changes that have been made to the CVE-2025-1194 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 29, 2025 Action […]
CVE-2024-58099 – “VMXNET3 DMA Address Calculation Vulnerability”
In the Linux kernel, the following vulnerability has been resolved: vmxnet3: Fix packet corruption in vmxnet3_xdp_xmit_frame Andrew and Nikolay reported connectivity issues with Cilium’s service load-balancing in case of vmxnet3. If a BPF program for native XDP adds an encapsulation header such as IPIP and transmits the packet out the same interface, then in case […]
Hackers Actively Attacking Git Configuration Files From 4,800+ IP’s
Hackers Actively Attacking Git Configuration Files From 4,800+ IP’s A notable increase in malicious scanning for exposed Git configuration files has been observed, posing significant risks of codebase theft and credential exposure for organizations around the globe. S … Read more Published Date: Apr 29, 2025 (3 hours, 5 minutes ago) Vulnerabilities has been mentioned in this […]
New GPAUF Technique to Root Qualcomm-Based Android Phones
New GPAUF Technique to Root Qualcomm-Based Android Phones Rooting is a technique that lets users or attackers achieve privileged control over the operating system, circumventing manufacturer and carrier constraints. Senior mobile security researchers Pan Zhe … Read more Published Date: Apr 29, 2025 (3 hours, 22 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-23380 CVE-2024-23373
Google: Zero-Day Exploits Shift from Browsers to Enterprise Security Tools in 2024
Google: Zero-Day Exploits Shift from Browsers to Enterprise Security Tools in 2024 In its latest threat landscape analysis, the Google Threat Intelligence Group (GTIG) reported a continued surge in the strategic use of zero-day vulnerabilities, but with a notable shift in targeting … Read more Published Date: Apr 29, 2025 (1 hour, 40 minutes ago) Vulnerabilities has […]
Google Reports 75 Zero-Days Exploited in 2024 — 44% Targeted Enterprise Security Products
Google Reports 75 Zero-Days Exploited in 2024 — 44% Targeted Enterprise Security Products Enterprise Security / Vulnerability Google has revealed that it observed 75 zero-day vulnerabilities exploited in the wild in 2024, down from 98 in 2023. Of the 75 zero-days, 44% of them targeted ente … Read more Published Date: Apr 29, 2025 (2 hours, […]
VS meldt actief misbruik van beveiligingslek in Commvault-webserver
VS meldt actief misbruik van beveiligingslek in Commvault-webserver Aanvallers maken actief misbruik van een kwetsbaarheid in Commvault-webserver, zo meldt het Cybersecurity and Infrastructure Security Agency (CISA) van het Amerikaanse ministerie van Homeland Security … Read more Published Date: Apr 29, 2025 (2 hours, 34 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-3928
CVE-2025-3452 – SecuPress Free WordPress Security Plugin Unauthorized Plugin Installation Vulnerability
The following table lists the changes that have been made to the CVE-2025-3452 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 29, 2025 Action […]