CVE-2025-12638 – Path Traversal Vulnerability in keras-team/keras via Tar Archive Extraction in keras.utils.get_file()

Keras version 3.11.3 is affected by a path traversal vulnerability in the keras.utils.get_file() function when extracting tar archives. The vulnerability arises because the function uses Python’s tarfile.extractall() method without the security-critical filter=’data’ parameter. Although Keras attempts to filter unsafe paths using filter_safe_paths(), this filtering occurs before extraction, and a PATH_MAX symlink resolution bug triggers during […]

Hackers Registered 18,000 Holiday-Themed Domains Targeting ‘Christmas,’ ‘Black Friday,’ and ‘Flash Sale’

Hackers Registered 18,000 Holiday-Themed Domains Targeting ‘Christmas,’ ‘Black Friday,’ and ‘Flash Sale’ The 2025 holiday season has unleashed an unprecedented wave of cyber threats, with attackers deploying industrialized infrastructure to exploit the global surge in online commerce. This year’s threat … Read more Published Date: Nov 28, 2025 (30 minutes ago) Vulnerabilities has been mentioned in this […]

CVE-2025-12143 – Stack Memory Corruption Vulnerability

The following table lists the changes that have been made to the CVE-2025-12143 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 28, 2025 Action […]

D-Link waarschuwt voor botnet dat kwetsbare NAS-systemen aanvalt

D-Link waarschuwt voor botnet dat kwetsbare NAS-systemen aanvalt Hardwarefabrikant D-Link waarschuwt gebruikers voor een botnet dat kwetsbare NAS-systemen aanvalt en roept op tot het vervangen van apparaten die end-of-life zijn en geen beveiligingsupdates meer ontv … Read more Published Date: Nov 28, 2025 (1 hour, 20 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-10915 CVE-2024-10914 […]

AWS Guarantees 60-Minute Recovery Time with New Route 53 Accelerated Recovery

AWS Guarantees 60-Minute Recovery Time with New Route 53 Accelerated Recovery Earlier, a severe outage in Amazon’s cloud computing service AWS disrupted thousands of major websites, leaving users unable to access online platforms and causing significant operational losses for t … Read more Published Date: Nov 28, 2025 (2 hours, 5 minutes ago) Vulnerabilities has been mentioned […]

CVE-2025-13771 – Uniong|WebITR – Arbitrary File Read

The following table lists the changes that have been made to the CVE-2025-13771 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 28, 2025 Action […]

CVE-2025-13769 – Uniong|WebITR – SQL Injection

The following table lists the changes that have been made to the CVE-2025-13769 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 28, 2025 Action […]

CVE-2025-13770 – Uniong|WebITR – SQL Injection

The following table lists the changes that have been made to the CVE-2025-13770 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 28, 2025 Action […]

CVE-2025-13768 – Uniong|WebITR – Authorization Bypass

The following table lists the changes that have been made to the CVE-2025-13768 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 28, 2025 Action […]

CVE-2025-66385 – Cerebrate Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2025-66385 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 28, 2025 Action […]