AMD Warns of Transient Scheduler Attacks Affecting Wide Range of Chipsets

AMD Warns of Transient Scheduler Attacks Affecting Wide Range of Chipsets Advanced Micro Devices has disclosed a series of critical security vulnerabilities affecting multiple generations of its processor architectures, stemming from transient scheduler attacks that exploit … Read more Published Date: Jul 11, 2025 (1 hour, 52 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-36357 […]

Apache HTTP Server 2.4.64 Released With Patch for 8 Vulnerabilities

Apache HTTP Server 2.4.64 Released With Patch for 8 Vulnerabilities The Apache Software Foundation has released Apache HTTP Server version 2.4.64, addressing eight critical security vulnerabilities that affected versions spanning from 2.4.0 through 2.4.63. This latest … Read more Published Date: Jul 11, 2025 (1 hour, 54 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-53020 […]

CVE-2025-7442 – “WordPress Gym Management System SQL Injection Vulnerability”

CVE ID : CVE-2025-7442 Published : July 11, 2025, 8:15 a.m. | 28 minutes ago Description : The WPGYM – WordPress Gym Management System plugin for WordPress is vulnerable to SQL Injection via several parameters in the MJ_gmgt_delete_class_limit_for_member, MJ_gmgt_get_yearly_income_expense, MJ_gmgt_get_monthly_income_expense, MJ_gmgt_add_class_limit, MJ_gmgt_view_meeting_detail, and MJ_gmgt_create_meeting functions in all versions up to 67.8.0 due to insufficient escaping on […]

CVE-2025-6745 – WoodMart WordPress Information Exposure Vulnerability

CVE ID : CVE-2025-6745 Published : July 11, 2025, 8:15 a.m. | 28 minutes ago Description : The WoodMart plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 8.2.5 via the woodmart_get_posts_by_query() function due to insufficient restrictions on which posts can be included. This makes it possible for unauthenticated attackers […]

CVE-2025-6068 – FooGallery WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-6068 Published : July 11, 2025, 8:15 a.m. | 28 minutes ago Description : The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `data-caption-title` & `data-caption-description` HTML attributes in all versions up to, and including, 2.4.31 due to insufficient […]

CVE-2025-5530 – WPC Smart Compare for WooCommerce Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-5530 Published : July 11, 2025, 8:15 a.m. | 28 minutes ago Description : The WPC Smart Compare for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘shortcode_btn’ shortcode in all versions up to, and including, 6.4.6 due to insufficient input sanitization and output escaping on user supplied […]

CVE-2025-4593 – WordPress WP Register Profile With Shortcode Sensitive Information Exposure

CVE ID : CVE-2025-4593 Published : July 11, 2025, 8:15 a.m. | 28 minutes ago Description : The WP Register Profile With Shortcode plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.6.2 via the ‘rp_user_data’ shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, […]

Hackers Actively Exploiting CitrixBleed 2 Vulnerability in the Wild

Hackers Actively Exploiting CitrixBleed 2 Vulnerability in the Wild Researchers have observed widespread exploitation attempts targeting a critical memory disclosure vulnerability in Citrix NetScaler devices, designated as CVE-2025-5777 and dubbed “CitrixBleed 2.” Thi … Read more Published Date: Jul 11, 2025 (2 hours, 56 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-5777

Kritieke kwetsbaarheid in Wing FTP Server actief misbruikt bij aanvallen

Kritieke kwetsbaarheid in Wing FTP Server actief misbruikt bij aanvallen Een kritieke kwetsbaarheid in Wing FTP Server wordt actief misbruikt bij aanvallen en laat aanvallers kwetsbare servers volledig overnemen. Dat laat securitybedrijf Huntress weten. Een update voor de … Read more Published Date: Jul 11, 2025 (3 hours, 7 minutes ago) Vulnerabilities has been mentioned in this […]

CVE-2025-6716 – WordPress Photos Plugin Stored Cross-Site Scripting

The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote, Sell via PayPal or Stripe, Social Share Buttons, OpenAI plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘upload[1][title]’ parameter in all versions up to, and including, 26.0.8 due to insufficient input sanitization and output escaping. This makes it possible […]