CVE-2025-34300 (CVSS 10): Critical RCE Flaw in Lighthouse Studio’s CGI Scripts Threatens Survey Servers Worldwide

CVE-2025-34300 (CVSS 10): Critical RCE Flaw in Lighthouse Studio’s CGI Scripts Threatens Survey Servers Worldwide A severe remote code execution (RCE) vulnerability has been discovered in Lighthouse Studio, a popular web-based survey platform developed by Sawtooth Software. The flaw—tracked as CVE-2025-34300 and … Read more Published Date: Jul 18, 2025 (11 hours, 2 minutes ago) Vulnerabilities has […]

Massistant: China’s New Mobile Forensics App Deepens Digital Surveillance

Massistant: China’s New Mobile Forensics App Deepens Digital Surveillance In an update to China’s expanding digital surveillance ecosystem, researchers at Lookout Threat Lab have uncovered a powerful mobile forensics application known as Massistant, believed to be a success … Read more Published Date: Jul 18, 2025 (11 hours, 7 minutes ago) Vulnerabilities has been mentioned in this […]

CVE-2025-6185 – Leviton AcquiSuite and Energy Monitoring Hub Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-6185 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 18, 2025 Action […]

Citrix Bleed 2 exploited weeks before PoCs as Citrix denied attacks

Citrix Bleed 2 exploited weeks before PoCs as Citrix denied attacks A critical Citrix NetScaler vulnerability, tracked as CVE-2025-5777 and dubbed “CitrixBleed 2,” was actively exploited nearly two weeks before proof-of-concept (PoC) exploits were made public, despite … Read more Published Date: Jul 17, 2025 (1 hour, 23 minutes ago) Vulnerabilities has been mentioned in this article. […]

CVE-2025-7765 – Code-projects Online Appointment Booking System SQL Injection

The following table lists the changes that have been made to the CVE-2025-7765 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 17, 2025 Action […]

CVE-2025-7764 – Code-Projects Online Appointment Booking System SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-7764 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 17, 2025 Action […]

CVE-2025-7763 – Open Redirect Vulnerability in thinkgem JeeSite Site Controller/SSO

The following table lists the changes that have been made to the CVE-2025-7763 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 17, 2025 Action […]