CVE-2025-9935 – TOTOLINK N600R Command Injection Vulnerability

Affected Products The following products are affected by CVE-2025-9935 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet

CVE-2025-58064 – CKEditor 5 Cross-Site Scripting (XSS)

CKEditor 5 is a modern JavaScript rich-text editor with an MVC architecture. ckeditor5 and ckeditor5-clipboard versions 46.0.0 through 46.0.2 and 44.2.0 through 45.2.1 contain a Cross-Site Scripting (XSS) vulnerability. Ability to exploit could be triggered by a specific user action (leading to unauthorized JavaScript code execution) if the attacker managed to insert a malicious content […]

CISA Warns: Actively Exploited TP-Link Router Flaws Added to KEV Catalog

CISA Warns: Actively Exploited TP-Link Router Flaws Added to KEV Catalog The Cybersecurity and Infrastructure Security Agency (CISA) has added two TP-Link router vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, underscoring the urgent need for network … Read more Published Date: Sep 04, 2025 (5 hours, 18 minutes ago) Vulnerabilities has been mentioned in this article.