CVE-2025-57263 – VX Guestbook SQL Injection

The following table lists the changes that have been made to the CVE-2025-57263 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Sep. 04, 2025 Action […]

CVE-2025-6785 – Tesla Model 3 Physical CAN Bus Injection

Affected Products The following products are affected by CVE-2025-6785 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet

CVE-2025-8311 – dotCMS Boolean-based Blind SQL Injection Vulnerability

dotCMS versions 24.03.22 and after, identified a Boolean-based blind SQLi vulnerability in the /api/v1/contenttype endpoint. This endpoint uses the sites query parameter, which accepts a comma-separated list of site identifiers or keys. The vulnerability was triggered via the sites parameter, which was directly concatenated into a SQL query without proper sanitization. Exploitation allowed an authenticated attacker […]

CVE-2025-7385 – SQL Injection in GOV CMS

The following table lists the changes that have been made to the CVE-2025-7385 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Sep. 04, 2025 Action […]

Vulnerability in Concept Intermedia GOV CMS software

Vulnerability in Concept Intermedia GOV CMS software Vulnerability in Concept Intermedia GOV CMS software CVE ID CVE-2025-7385 Publication date 04 September 2025 Vendor Concept Intermedia Product GOV CMS Vulnerable versions All before 4.0 Vulnerability … Read more Published Date: Sep 04, 2025 (1 hour, 12 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-7385

macOS vulnerability allowed Keychain and iOS app decryption without a password

macOS vulnerability allowed Keychain and iOS app decryption without a password Today at Nullcon Berlin, a researcher disclosed a macOS vulnerability (CVE-2025-24204) that allowed attackers to read the memory of any process, even with System Integrity Protection (SIP) enabled. Th … Read more Published Date: Sep 04, 2025 (1 hour, 36 minutes ago) Vulnerabilities has been mentioned […]