CVE-2025-9365 – Fuji Electric FRENIC-Loader 4 Deserialization RCE
The following table lists the changes that have been made to the CVE-2025-9365 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Sep. 03, 2025 Action […]
CVE-2025-56139 – LinkedIn Mobile Application for Android Cross-Site Scripting (XSS) Vulnerability
LinkedIn Mobile Application for Android version 4.1.1087.2 fails to update link preview metadata (image, title, description) when a user replaces the original URL in a post or comment before publishing. As a result, the stale preview remains visible while the clickable link points to a different URL, which can be malicious. This UI misrepresentation enables […]
CVE-2025-53690 – Sitecore Experience Manager/Xperience Platform Deserialization Code Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-53690 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 9947ef80-c5d5-474a-bbab-97341a59000e Sep. 03, 2025 Action […]
CVE-2025-55162 – “Envoy OAuth2 Session Expiration Cookie Hijacking”
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures. In versions below 1.32.10 and 1.33.0 through 1.33.6, 1.34.0 through 1.34.4 and 1.35.0, insufficient Session Expiration in the Envoy OAuth2 filter leads to failed logout operations. When configured with __Secure- or __Host- prefixed cookie names, the filter fails […]
CISA Warns of Critical SunPower Device Vulnerability Let Attackers Gain Full Device Access
CISA Warns of Critical SunPower Device Vulnerability Let Attackers Gain Full Device Access The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory warning about a critical vulnerability in SunPower PVS6 solar power devices that could allow attackers to gain … Read more Published Date: Sep 03, 2025 (1 hour, 28 minutes ago) Vulnerabilities has […]
CVE-2025-9924 – Projectworlds Travel Management System SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-9924 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Sep. 03, 2025 Action […]
CVE-2025-9923 – Campcodes Sales and Inventory System Cross-Site Scripting Vulnerability
The following table lists the changes that have been made to the CVE-2025-9923 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0 Sep. 03, 2025 Action Type […]
CVE-2025-36193 – IBM Transformation Advisor Privilege Escalation Vulnerability
The following table lists the changes that have been made to the CVE-2025-36193 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Sep. 03, 2025 Action […]
US offers $10 million bounty for info on Russian FSB hackers
US offers $10 million bounty for info on Russian FSB hackers The U.S. Department of State is offering a reward of up to $10 million for information on three Russian Federal Security Service (FSB) officers involved in cyberattacks targeting U.S. critical infrast … Read more Published Date: Sep 03, 2025 (2 hours, 9 minutes ago) Vulnerabilities has […]
CVE-2025-56803 – Figma Desktop for Windows Command Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-56803 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Sep. 03, 2025 Action […]