CVE-2025-54410 – Docker Moby Firewalld Container Isolation Bypass
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various other downstream projects/products. A firewalld vulnerability affects Moby releases before 28.0.0. When firewalld reloads, Docker fails to re-create iptables rules that isolate bridge networks, allowing any container to access all ports on any […]
CVE-2025-54388 – Docker Moby iptables Rule Deletion and Recreation Vulnerability
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various other downstream projects/products. In versions 28.2.0 through 28.3.2, when the firewalld service is reloaded it removes all iptables rules including those created by Docker. While Docker should automatically recreate these rules, versions before […]
CVE-2025-53008 – GLPI Email Receiver Credentials Stealer
The following table lists the changes that have been made to the CVE-2025-53008 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 30, 2025 Action […]
CVE-2025-52897 – GLPI Phishing Vulnerability in Planning Feature
The following table lists the changes that have been made to the CVE-2025-52897 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 30, 2025 Action […]
CVE-2025-52567 – GLPI SSRF Vulnerability
The following table lists the changes that have been made to the CVE-2025-52567 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 30, 2025 Action […]
Our favorite talks from fwd:cloudsec 2025
Our favorite talks from fwd:cloudsec 2025 In June 2025, the cloud security community converged on Denver, Colorado, for fwd:cloudsec North America 2025, and Red Canary was thrilled to be a sponsor! Hundreds of passionate cloud security practi … Read more Published Date: Jul 30, 2025 (3 hours, 28 minutes ago) Vulnerabilities has been mentioned in this article. […]
CVE-2025-47001 – Adobe Experience Manager Stored XSS Vulnerability
The following table lists the changes that have been made to the CVE-2025-47001 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 30, 2025 Action […]
CVE-2025-8326 – Code-projects Exam Form Submission SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-8326 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 30, 2025 Action […]
Critical SonicWall SSL VPN Vulnerability Let Attackers Trigger DoS Attack on Firewalls
Critical SonicWall SSL VPN Vulnerability Let Attackers Trigger DoS Attack on Firewalls A critical vulnerability in SonicWall Gen7 firewall products could allow remote unauthenticated attackers to cause service disruptions through denial-of-service (DoS) attacks. The format string vulner … Read more Published Date: Jul 30, 2025 (2 hours, 5 minutes ago) Vulnerabilities has been mentioned in this article. […]
Critical Dahua Camera Flaws Enable Remote Hijack via ONVIF and File Upload Exploits
Critical Dahua Camera Flaws Enable Remote Hijack via ONVIF and File Upload Exploits Jul 30, 2025Ravie LakshmananFirmware Security / Vulnerability Cybersecurity researchers have disclosed now-patched critical security flaws in the firmware of Dahua smart cameras that, if left unaddr … Read more Published Date: Jul 30, 2025 (2 hours, 10 minutes ago) Vulnerabilities has been mentioned in […]