CVE-2025-34083 – WordPress AIT CSV Import/Export Unrestricted File Upload Vulnerability

CVE ID : CVE-2025-34083 Published : July 9, 2025, 1:15 a.m. | 1 hour, 17 minutes ago Description : An unrestricted file upload vulnerability exists in the WordPress AIT CSV Import/Export plugin ≤ 3.0.3. The plugin exposes an upload handler at upload-handler.php that allows arbitrary file upload via a multipart/form-data POST request. This endpoint does not enforce […]

CVE-2025-34077 – WordPress Pie Register Plugin Authentication Bypass and Remote Code Execution

CVE ID : CVE-2025-34077 Published : July 9, 2025, 1:15 a.m. | 1 hour, 17 minutes ago Description : An authentication bypass vulnerability exists in the WordPress Pie Register plugin ≤ 3.7.1.4 that allows unauthenticated attackers to impersonate arbitrary users by submitting a crafted POST request to the login endpoint. By setting social_site=true and manipulating the user_id_social_site […]

Microsoft Patch Tuesday, July 2025 Edition

Microsoft Patch Tuesday, July 2025 Edition Microsoft today released updates to fix at least 137 security vulnerabilities in its Windows operating systems and supported software. None of the weaknesses addressed this month are known to be activ … Read more Published Date: Jul 09, 2025 (3 hours, 46 minutes ago) Vulnerabilities has been mentioned in this article. […]

Critical Flaws Found in Siemens SINEC NMS: Privilege Escalation and Remote Code Execution Risks

Critical Flaws Found in Siemens SINEC NMS: Privilege Escalation and Remote Code Execution Risks iemens has released a critical security advisory detailing multiple high-severity vulnerabilities affecting SINEC NMS, its flagship network management system for industrial environments. The flaws imp … Read more Published Date: Jul 09, 2025 (1 hour, 56 minutes ago) Vulnerabilities has been mentioned in […]

Citrix Warns of Privilege Escalation Vulnerability in Windows Virtual Delivery Agent (CVE-2025-6759)

Citrix Warns of Privilege Escalation Vulnerability in Windows Virtual Delivery Agent (CVE-2025-6759) Citrix has issued a security advisory concerning a newly identified local privilege escalation vulnerability affecting its Windows Virtual Delivery Agent (VDA), which is a core component of Citrix Vir … Read more Published Date: Jul 09, 2025 (2 hours, 1 minute ago) Vulnerabilities has been […]

CVE-2025-7206 – D-Link DIR-825 HTTPd Stack-Based Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-7206 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]

CVE-2025-4855 – WordPress Support Board Plugin Unauthenticated Data Access and Modification

The following table lists the changes that have been made to the CVE-2025-4855 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]

CVE-2025-4828 – WordPress Support Board Plugin Arbitrary File Deletion Vulnerability

The following table lists the changes that have been made to the CVE-2025-4828 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]

CVE-2025-3780 – WooCommerce WCFM – Unauthenticated Data Modification Vulnerability

The following table lists the changes that have been made to the CVE-2025-3780 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]