CVE-2025-9684 – Portabilis i-Educar SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-9684 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 30, 2025 Action […]

Critical Citrix 0-Day Vulnerability Exploited Since May, Leaving Global Entities Exposed

Critical Citrix 0-Day Vulnerability Exploited Since May, Leaving Global Entities Exposed A critical zero-day vulnerability in Citrix NetScaler products, identified as CVE-2025-6543, has been actively exploited by threat actors since at least May 2025, months before a patch was made availa … Read more Published Date: Aug 30, 2025 (1 hour, 54 minutes ago) Vulnerabilities has been […]

CVE-2025-9683 – O2OA Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-9683 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 30, 2025 Action […]

CVE-2025-9682 – O2OA Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-9682 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 30, 2025 Action […]

CVE-2025-38677 – F2FS Linux Kernel Out-of-Boundary Access Vulnerability

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in dnode page As Jiaming Zhang reported: __dump_stack lib/dump_stack.c:94 [inline] dump_stack_lvl+0x1c1/0x2a0 lib/dump_stack.c:120 print_address_description mm/kasan/report.c:378 [inline] print_report+0x17e/0x800 mm/kasan/report.c:480 kasan_report+0x147/0x180 mm/kasan/report.c:593 data_blkaddr fs/f2fs/f2fs.h:3053 [inline] f2fs_data_blkaddr fs/f2fs/f2fs.h:3058 [inline] f2fs_get_dnode_of_data+0x1a09/0x1c40 fs/f2fs/node.c:855 f2fs_reserve_block+0x53/0x310 fs/f2fs/data.c:1195 prepare_write_begin fs/f2fs/data.c:3395 [inline] f2fs_write_begin+0xf39/0x2190 fs/f2fs/data.c:3594 generic_perform_write+0x2c7/0x910 mm/filemap.c:4112 f2fs_buffered_write_iter fs/f2fs/file.c:4988 [inline] […]

CVE-2025-9681 – O2OA Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-9681 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 30, 2025 Action […]

CVE-2025-9680 – O2OA Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-9680 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 30, 2025 Action […]

CVE-2025-9679 – “iSourcecode Student Information System SQL Injection Vulnerability”

The following table lists the changes that have been made to the CVE-2025-9679 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 30, 2025 Action […]

CVE-2025-9500 – TablePress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-9500 Published : Aug. 30, 2025, 5:15 a.m. | 3 hours, 21 minutes ago Description : The TablePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘shortcode_debug’ parameter in all versions up to, and including, 3.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, […]

CVE-2025-9499 – WordPress Ocean Extra Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-9499 Published : Aug. 30, 2025, 5:15 a.m. | 3 hours, 21 minutes ago Description : The Ocean Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s oceanwp_library shortcode in all versions up to, and including, 2.4.9 due to insufficient input sanitization and output escaping on user supplied attributes. This […]