CISA Warns of Rails Ruby on Rails Path Traversal Vulnerability Exploited in Attacks

CISA Warns of Rails Ruby on Rails Path Traversal Vulnerability Exploited in Attacks CISA has issued a critical warning regarding a path traversal vulnerability in the Ruby on Rails framework that poses significant risks to web applications worldwide. The vulnerability, cataloged as C … Read more Published Date: Jul 08, 2025 (2 hours, 8 minutes ago) Vulnerabilities […]

Ivanti Endpoint Manager Mobile Vulnerabilities Let Attackers Execute Remote Code

Ivanti Endpoint Manager Mobile Vulnerabilities Let Attackers Execute Remote Code Ivanti disclosed two high-severity vulnerabilities in its Endpoint Manager Mobile (EPMM) product, which could allow remote attackers to execute code on affected systems. The company has released criti … Read more Published Date: Jul 08, 2025 (2 hours, 20 minutes ago) Vulnerabilities has been mentioned in this […]

Ivanti Security Update: Patch for Multiple Vulnerabilities in Connect and Policy Secure

Ivanti Security Update: Patch for Multiple Vulnerabilities in Connect and Policy Secure Ivanti, a leading provider of IT security and management solutions, has announced the release of critical updates for its Ivanti Connect Secure (ICS) and Ivanti Policy Secure (IPS) products. These upd … Read more Published Date: Jul 08, 2025 (2 hours, 30 minutes ago) Vulnerabilities […]

Check for CitrixBleed 2 exploitation even if you patched quickly! (CVE-2025-5777)

Check for CitrixBleed 2 exploitation even if you patched quickly! (CVE-2025-5777) With PoC exploits for CVE-2025-5777 (aka CitrixBleed 2) now public and reports of active exploitation of the flaw since mid-June, you should check whether your Citrix NetScaler ADC and/or Gateway inst … Read more Published Date: Jul 08, 2025 (2 hours, 40 minutes ago) Vulnerabilities has […]

FortiOS Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code

FortiOS Buffer Overflow Vulnerability Allows Attackers to Execute Arbitrary Code Fortinet disclosed a significant security flaw in its FortiOS operating system, identified as CVE-2025-24477. This heap-based buffer overflow vulnerability, classified under CWE-122, affects the cw_st … Read more Published Date: Jul 08, 2025 (2 hours, 41 minutes ago) Vulnerabilities has been mentioned in this article.

‘CitrixBleed2-lek sinds juni gebruikt om Netscaler-sessies te kapen’

‘CitrixBleed2-lek sinds juni gebruikt om Netscaler-sessies te kapen’ Een kwetsbaarheid in NetScaler ADC en NetScaler Gateway, ook bekend als CitrixBleed2 en CVE-2025–5777, is sinds halverwege juni gebruikt om NetScaler-sessies te kapen en multifactorauthenticatie (MFA) … Read more Published Date: Jul 08, 2025 (2 hours, 43 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2025-7326 – Microsoft ASP.NET Core Privilege Escalation Vulnerability

CVE ID : CVE-2025-7326 Published : July 8, 2025, 3:15 p.m. | 56 minutes ago Description : Weak authentication in EOL ASP.NET Core allows an unauthorized attacker to elevate privileges over a network. NOTE: This CVE affects only End Of Life (EOL) software components. The vendor, Microsoft, has indicated there will be no future updates nor support provided […]

CVE-2025-7183 – Campcodes Sales and Inventory System SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-7183 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 08, 2025 Action […]

CVE-2025-7182 – iSourcecode Student Transcript Processing System Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-7182 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 08, 2025 Action […]

CVE-2025-7037 – Ivanti Endpoint Manager SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-7037 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 3c1d8aa1-5a33-4ea4-8992-aadd6440af75 Jul. 08, 2025 Action […]