CVE-2025-34083 – WordPress AIT CSV Import/Export Unrestricted File Upload Vulnerability
CVE ID : CVE-2025-34083 Published : July 9, 2025, 1:15 a.m. | 1 hour, 17 minutes ago Description : An unrestricted file upload vulnerability exists in the WordPress AIT CSV Import/Export plugin ≤ 3.0.3. The plugin exposes an upload handler at upload-handler.php that allows arbitrary file upload via a multipart/form-data POST request. This endpoint does not enforce […]
CVE-2025-34077 – WordPress Pie Register Plugin Authentication Bypass and Remote Code Execution
CVE ID : CVE-2025-34077 Published : July 9, 2025, 1:15 a.m. | 1 hour, 17 minutes ago Description : An authentication bypass vulnerability exists in the WordPress Pie Register plugin ≤ 3.7.1.4 that allows unauthenticated attackers to impersonate arbitrary users by submitting a crafted POST request to the login endpoint. By setting social_site=true and manipulating the user_id_social_site […]
Microsoft Patch Tuesday, July 2025 Edition
Microsoft Patch Tuesday, July 2025 Edition Microsoft today released updates to fix at least 137 security vulnerabilities in its Windows operating systems and supported software. None of the weaknesses addressed this month are known to be activ … Read more Published Date: Jul 09, 2025 (3 hours, 46 minutes ago) Vulnerabilities has been mentioned in this article. […]
Critical Flaws Found in Siemens SINEC NMS: Privilege Escalation and Remote Code Execution Risks
Critical Flaws Found in Siemens SINEC NMS: Privilege Escalation and Remote Code Execution Risks iemens has released a critical security advisory detailing multiple high-severity vulnerabilities affecting SINEC NMS, its flagship network management system for industrial environments. The flaws imp … Read more Published Date: Jul 09, 2025 (1 hour, 56 minutes ago) Vulnerabilities has been mentioned in […]
Citrix Warns of Privilege Escalation Vulnerability in Windows Virtual Delivery Agent (CVE-2025-6759)
Citrix Warns of Privilege Escalation Vulnerability in Windows Virtual Delivery Agent (CVE-2025-6759) Citrix has issued a security advisory concerning a newly identified local privilege escalation vulnerability affecting its Windows Virtual Delivery Agent (VDA), which is a core component of Citrix Vir … Read more Published Date: Jul 09, 2025 (2 hours, 1 minute ago) Vulnerabilities has been […]
Microsoft’s July 2025 Patch Tuesday: 140 Flaws Fixed, Including Zero-Day, RCEs & AMD CPU Threats
Microsoft’s July 2025 Patch Tuesday: 140 Flaws Fixed, Including Zero-Day, RCEs & AMD CPU Threats Microsoft’s July 2025 Patch Tuesday arrives with a hefty load: a total of 140 vulnerabilities patched, including 14 critical and 115 important severity flaws. This month’s release spans Microsoft’s co … Read more Published Date: Jul 09, 2025 (2 hours, 11 minutes […]
CVE-2025-7206 – D-Link DIR-825 HTTPd Stack-Based Buffer Overflow
The following table lists the changes that have been made to the CVE-2025-7206 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]
CVE-2025-4855 – WordPress Support Board Plugin Unauthenticated Data Access and Modification
The following table lists the changes that have been made to the CVE-2025-4855 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]
CVE-2025-4828 – WordPress Support Board Plugin Arbitrary File Deletion Vulnerability
The following table lists the changes that have been made to the CVE-2025-4828 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]
CVE-2025-3780 – WooCommerce WCFM – Unauthenticated Data Modification Vulnerability
The following table lists the changes that have been made to the CVE-2025-3780 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 09, 2025 Action […]