CVE-2025-44073 – SeaCMS SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-44073 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 06, 2025 Action […]

CVE-2025-0649 – Google Tensorflow Serving JSON Deserialization Remote Crash

The following table lists the changes that have been made to the CVE-2025-0649 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 06, 2025 Action […]

‘Easily Exploitable’ Langflow Vulnerability Requires Immediate Patching

‘Easily Exploitable’ Langflow Vulnerability Requires Immediate Patching Source: Alexey Kotelnikov via Alamy Stock PhotoNEWS BRIEFA critical flaw found in the open source Langflow platform was added to the US Cybersecurity and Infrastructure Security Agency’s (CISA’s) Know … Read more Published Date: May 06, 2025 (4 hours, 13 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-31324 […]

CVE-2025-47256 – Libxmp Buffer Overflow Vulnerability

The following table lists the changes that have been made to the CVE-2025-47256 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 06, 2025 Action […]

CVE-2025-47417 – Crestron Automate VX Sensitive Information Exposure

The following table lists the changes that have been made to the CVE-2025-47417 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 25b0b659-c4b4-483f-aecb-067757d23ef3 May. 06, 2025 Action […]

CVE-2024-12225 – Quarkus WebAuthn Default Endpoints Information Disclosure and Authentication Bypass

A vulnerability was found in Quarkus in the quarkus-security-webauthn module. The Quarkus WebAuthn module publishes default REST endpoints for registering and logging users in while allowing developers to provide custom REST endpoints. When developers provide custom REST endpoints, the default endpoints remain accessible, potentially allowing attackers to obtain a login cookie that has no corresponding […]

CVE-2025-46820 – GitHub phpgt/Dom GitHub Token Disclosure

The following table lists the changes that have been made to the CVE-2025-46820 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 06, 2025 Action […]

CVE-2025-46816 – “goshs Command Injection Vulnerability”

The following table lists the changes that have been made to the CVE-2025-46816 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 06, 2025 Action […]

Apache Parquet exploit tool detect servers vulnerable to critical flaw

Apache Parquet exploit tool detect servers vulnerable to critical flaw A proof-of-concept exploit has been publicly released for a maximum severity Apache Parquet vulnerability, tracked as CVE-2025-30065, making it easy to find vulnerable servers. The tool was released b … Read more Published Date: May 06, 2025 (2 hours, 24 minutes ago) Vulnerabilities has been mentioned in […]

CVE-2025-4388 – Liferay Portal/DXP Reflected Cross-Site Scripting (XSS) Vulnerability

A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024.Q4.0 through 2024.Q4.5, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.12, 7.4 GA through update 92 allows an remote non-authenticated attacker to inject JavaScript into the modules/apps/marketplace/marketplace-app-manager-web.