CVE-2025-54885 – Thinbus Javascript Secure Remote Password SRP6a Protocol Compliance Bug

The following table lists the changes that have been made to the CVE-2025-54885 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 07, 2025 Action […]

CVE-2025-54882 – Microsoft Azure Entra ID and Intune Himmelblau World Readable Kerberos Credential Cache

The following table lists the changes that have been made to the CVE-2025-54882 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 07, 2025 Action […]

CVE-2025-54799 – Lego ACME Library HTTP to HTTPS Enforcement Weakness

The following table lists the changes that have been made to the CVE-2025-54799 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 07, 2025 Action […]

CVE-2025-54783 – SuiteCRM Reflected Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-54783 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 07, 2025 Action […]

CVE-2025-3770 – EDK2 BIOS Bootkit Execution

The following table lists the changes that have been made to the CVE-2025-3770 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 07, 2025 Action […]

CVE-2025-54786 – SuiteCRM Broken Authentication in iCal Service

The following table lists the changes that have been made to the CVE-2025-54786 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 07, 2025 Action […]

CVE-2025-54788 – SuiteCRM InboundEmail SQL Injection Vulnerability

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions and below, the InboundEmail module allows the arbitrary execution of queries in the backend database, leading to SQL injection. This can have wide-reaching implications on confidentiality, integrity, and availability, as database data can be retrieved, modified, or removed entirely. This issue is […]

CVE-2025-54785 – SuiteCRM PHP Object Injection Vulnerability

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.6 and 8.8.0, user-supplied input is not validated/sanitized before it is passed to the unserialize function, which could lead to penetration, privilege escalation, sensitive data exposure, Denial of Service, cryptomining and ransomware. This issue is fixed in version 7.14.7 and 8.8.1.

CVE-2025-8086 – Apache HTTP Server Remote Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2025-8086 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Rejected by [email protected] Aug. 06, 2025 Action Type […]

CVE-2023-3194 – CVE-2022-1234: Apache Struts Remote Code Execution

The following table lists the changes that have been made to the CVE-2023-3194 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Rejected by [email protected] Aug. 06, 2025 Action Type […]