CVE-2025-7383 – Oberon PSA Crypto Padding Oracle Attack

The following table lists the changes that have been made to the CVE-2025-7383 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 29, 2025 Action […]

CVE-2025-4643 – Payload JWT Authentication Token Reuse Vulnerability

The following table lists the changes that have been made to the CVE-2025-4643 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 29, 2025 Action […]

Click Studios Patches Passwordstate Authentication Bypass Vulnerability in Emergency Access Page

Click Studios Patches Passwordstate Authentication Bypass Vulnerability in Emergency Access Page Aug 29, 2025Ravie LakshmananVulnerability / Enterprise Security Click Studios, the developer of enterprise-focused password management solution Passwordstate, said it has released security updates t … Read more Published Date: Aug 29, 2025 (1 hour, 27 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-43300 CVE-2022-3875

FreePBX Servers Targeted by Zero-Day Flaw, Emergency Patch Now Available

FreePBX Servers Targeted by Zero-Day Flaw, Emergency Patch Now Available Aug 29, 2025Ravie LakshmananZero-Day / Vulnerability The Sangoma FreePBX Security Team has issued an advisory warning about an actively exploited FreePBX zero-day vulnerability that impacts systems … Read more Published Date: Aug 29, 2025 (1 hour, 41 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-57819 […]

Multi Flaws Found in HikCentral, Including a Bypass for Admin Access (CVE-2025-39247)

Multi Flaws Found in HikCentral, Including a Bypass for Admin Access (CVE-2025-39247) The Hikvision Security Response Center (HSRC) has released a new advisory detailing three vulnerabilities affecting different versions of the company’s HikCentral product line. The flaws range from CS … Read more Published Date: Aug 29, 2025 (14 hours, 40 minutes ago) Vulnerabilities has been mentioned […]

Onderzoeker: sterke afname van het aantal Citrix-systemen op internet

Onderzoeker: sterke afname van het aantal Citrix-systemen op internet Het aantal Citrix-systemen op internet is de afgelopen jaren sterk afgenomen wat samenhangt met alle misbruikte kwetsbaarheden in het systeem, zo stelt beveiligingsonderzoeker Kevin Beaumont op basis … Read more Published Date: Aug 29, 2025 (1 hour, 55 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-7775 […]

CVE-2025-8150 – “Elementor Events Addon Stored Cross-Site Scripting Vulnerability”

CVE ID : CVE-2025-8150 Published : Aug. 29, 2025, 9:15 a.m. | 1 hour, 52 minutes ago Description : The Events Addon for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s Typewriter and Countdown widgets in all versions up to, and including, 2.2.9 due to insufficient input sanitization and output escaping on […]

PhpSpreadsheet Library Vulnerability Enables Attackers to Feed Malicious HTML Input

PhpSpreadsheet Library Vulnerability Enables Attackers to Feed Malicious HTML Input A high-severity Server-Side Request Forgery (SSRF) vulnerability has been identified in the widely used PhpSpreadsheet library, potentially allowing attackers to exploit internal network resources and … Read more Published Date: Aug 29, 2025 (2 hours, 25 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-54370

CVE-2024-13987 – Synology RADIUS Server Cross-site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2024-13987 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 29, 2025 Action […]

CVE-2025-54777 – Fuji Xerox bizhub S/MIME Email Certificate Denial-of-Service Vulnerability

The following table lists the changes that have been made to the CVE-2025-54777 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 29, 2025 Action […]