CVE-2025-8771 – Apache Database Configuration Insecure Feature
The following table lists the changes that have been made to the CVE-2025-8771 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Rejected by [email protected] Aug. 09, 2025 Action Type […]
CyberArk and HashiCorp Flaws Enable Remote Vault Takeover Without Credentials
CyberArk and HashiCorp Flaws Enable Remote Vault Takeover Without Credentials Cybersecurity researchers have discovered over a dozen vulnerabilities in enterprise secure vaults from CyberArk and HashiCorp that, if successfully exploited, can allow remote attackers to crack open … Read more Published Date: Aug 09, 2025 (2 hours, 43 minutes ago) Vulnerabilities has been mentioned in this article. […]
BitUnlocker – Multiple 0-days to Bypass BitLocker and Extract All Protected Data
BitUnlocker – Multiple 0-days to Bypass BitLocker and Extract All Protected Data Researchers have disclosed a series of critical zero-day vulnerabilities that completely bypass Windows BitLocker encryption, allowing attackers with physical access to extract all protected data from … Read more Published Date: Aug 09, 2025 (18 minutes ago) Vulnerabilities has been mentioned in this article. […]
CVE-2025-55149 – Tiny-Scientist PDF Path Traversal Vulnerability
The following table lists the changes that have been made to the CVE-2025-55149 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 09, 2025 Action […]
CVE-2025-55009 – WorkOS AuthKit Remix Sensitive Authentication Artifact Exposure
The following table lists the changes that have been made to the CVE-2025-55009 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 09, 2025 Action […]
CVE-2025-55008 – WorkOS AuthKit React Router Authentication Artifact Exposure
The following table lists the changes that have been made to the CVE-2025-55008 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 09, 2025 Action […]
CVE-2025-55006 – Frappe Learning SVG Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-55006 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 09, 2025 Action […]
CVE-2025-55013 – Assemblyline 4 Service Client Path Traversal Vulnerability
The following table lists the changes that have been made to the CVE-2025-55013 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 09, 2025 Action […]
CVE-2025-55003 – OpenBao MFA TOTP Whitespace Bypass Vulnerability
OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys. In versions 2.3.1 and below, OpenBao’s Login Multi-Factor Authentication (MFA) system allows enforcing MFA using Time-based One Time Password (TOTP). Due to normalization applied by the underlying TOTP library, codes were accepted which could contain whitespace; […]
CVE-2025-55001 – OpenBao LDAP Auth Bypass Vulnerability
OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys. In versions 2.3.1 and below, OpenBao allowed the assignment of policies and MFA attribution based upon entity aliases, chosen by the underlying auth method. When the username_as_alias=true parameter in the LDAP auth method was in use, […]