⚡ Weekly Recap: Hot CVEs, npm Worm Returns, Firefox RCE, M365 Email Raid & More

⚡ Weekly Recap: Hot CVEs, npm Worm Returns, Firefox RCE, M365 Email Raid & More Dec 01, 2025Ravie LakshmananHacking News / Cybersecurity Hackers aren’t kicking down the door anymore. They just use the same tools we use every day — code packages, cloud accounts, email, chat, pho … Read more Published Date: Dec 01, 2025 […]

CVE-2025-12106 – OpenVPN Heap Buffer Over-Read Vulnerability

The following table lists the changes that have been made to the CVE-2025-12106 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 01, 2025 Action […]

Mystery OAST With Exploit for 200 CVEs Leveraging Google Cloud to Launch Attacks

Mystery OAST With Exploit for 200 CVEs Leveraging Google Cloud to Launch Attacks A new threat has emerged in the cybersecurity landscape as security experts discover a private Out-of-Band Application Security Testing (OAST) service operating on Google Cloud infrastructure. This my … Read more Published Date: Dec 01, 2025 (2 hours, 40 minutes ago) Vulnerabilities has been […]

CVE-2025-58408 – GPU DDK – KASAN Read UAF in the PVRSRVBridgeRGXSubmitTransfer2 due to improper error handling code

The following table lists the changes that have been made to the CVE-2025-58408 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 367425dc-4d06-4041-9650-c2dc6aaa27ce Dec. 01, 2025 Action […]

CVE-2025-13296 – CSRF in Tekrom Technology’s T-Soft E-Commerce

The following table lists the changes that have been made to the CVE-2025-13296 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 01, 2025 Action […]

VS meldt misbruik van cross-site scripting-kwetsbaarheid in ScadaBR

VS meldt misbruik van cross-site scripting-kwetsbaarheid in ScadaBR Aanvallers maken misbruik van een cross-site scripting (XSS)-lek in ScadaBR, een open source Supervisory Control and Data Acquisition (SCADA) systeem. Dat meldt het Cybersecurity and Infrastructure Se … Read more Published Date: Dec 01, 2025 (1 hour, 42 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2021-26829

CVE-2025-41070 – Reflected Cross-site Scripting (XSS) in Sanoma’s Clickedu

The following table lists the changes that have been made to the CVE-2025-41070 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 01, 2025 Action […]

CVE-2025-6349 – Mali GPU Kernel Driver allows improper GPU memory processing operations

The following table lists the changes that have been made to the CVE-2025-6349 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 01, 2025 Action […]

CVE-2025-8045 – Mali GPU Kernel Driver allows improper GPU processing operations

The following table lists the changes that have been made to the CVE-2025-8045 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 01, 2025 Action […]

CVE-2025-2879 – Mali GPU Kernel Driver allows improper GPU processing operations

The following table lists the changes that have been made to the CVE-2025-2879 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 01, 2025 Action […]