cve-2025-1234
246 articles with this tag
✨
AI summary
Loading…
HIGH
MEDIUM
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
LOW
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
INFO
INFO
INFO
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
Arista patches VeloCloud Orchestrator zero-day exploited in attacks
CrowdStrike Uncovers New Prompt Injection Techniques
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
Google Chrome Multiple Vulnerabilities
MongoDB Multiple Vulnerabilities
Millions of California-bought cars can be hijacked via Bluetooth
RHSA-2026:40021: Important: OpenShift Container Platform 4.13.69 bug fix and security update
IBM WebSphere Products Multiple Vulnerabilities
NCSC-2026-0254 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle database producten
GigaWiper: Anatomy of a destructive backdoor assembled from multiple malware
[UPDATE] [mittel] avahi: Schwachstelle ermöglicht Denial of Service
Snowpick: Open-source ServiceNow exposure scanner
Google Chrome Multiple Vulnerabilities
OpenAI admits it was the source of the agent swarm that attacked Hugging Face
Nobody was checking the drives that encrypt your laptop
SonicWall SMA1000 flaws exploited as zero-days to push custom malware
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
[UPDATE] [niedrig] hostapd (RADIUS): Schwachstelle ermöglicht Denial of Service
Critical ServiceNow code execution flaw now exploited in attacks
Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logs
wp2shell: Pre Authentication RCE in WordPress Core
Patch Tuesday roundup: Microsoft fixes a monthly record 569 holes; SAP patches a critical memory corruption bug
Stack Buffer Overflow in Log Report
Governments to enterprises: Improve your router security hygiene
RHSA-2026:38487: Important: xorg-x11-server security update
Hackers exploit critical auth bypass in Gitea Docker image
[UPDATE] [hoch] Xen: Mehrere Schwachstellen
Juniper Junos OS Multiple Vulnerabilities
Palo Alto Products Multiple Vulnerabilities
Google Chrome Multiple Vulnerabilities
[UPDATE] [mittel] GnuTLS: Schwachstelle ermöglicht Denial of Service
[UPDATE] [hoch] Gitea: Mehrere Schwachstellen
New ClamAV security patch closes seven scanner bugs dating back two decades
RedHat Linux Kernel Multiple Vulnerabilities
Apache Tomcat Multiple Vulnerabilities
[UPDATE] [mittel] libtasn1: Schwachstelle ermöglicht Denial of Service
[UPDATE] [niedrig] Perl: Schwachstelle ermöglicht Manipulation von Dateien
India’s central bank mandated use of .bank domains to enhance trust – but its registry leaked sensitive info
US Federal Insurance Regulator Confirms Data Breach Via Oracle Flaw
[UPDATE] [kritisch] Flowise: Schwachstelle ermöglicht Codeausführung
Google Chrome Multiple Vulnerabilities
Gamaredon in 2025: Leveraging tunnels, workers, dead drops, and new alliances
[UPDATE] [hoch] libpng: Schwachstelle ermöglicht Denial of Service
GitLab Multiple Vulnerabilities
[UPDATE] [hoch] Pega Platform: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[UPDATE] [mittel] libTIFF: Schwachstelle ermöglicht Denial of Service
[UPDATE] [hoch] Flowise: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen
[UPDATE] [mittel] ffmpeg: Mehrere Schwachstellen
Drupal Multiple Vulnerabilities
NCSC Urges Fortinet Customers to Tackle FortiBleed Fallout
Google Chrome Multiple Vulnerabilities
Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attack
[UPDATE] [mittel] ffmpeg: Schwachstelle ermöglicht nicht spezifizierten Angriff
AutoJack: How a single page can RCE the host running your AI agent
CISA Urges Hardening Fortinet Devices After Reports of Credential Exposure
npm Supply Chain Cryptocurrency Malware
OpenSSL Multiple Vulnerabilities
June Patch Tuesday marks a ‘new normal’ with over 200 CVEs, 32 rated ‘critical’
Meet Hades: The malware that lies to AI security agents
VerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux Appliances
RHSA-2026:24331: Important: cockpit-image-builder security update
RHSA-2026:24342: Moderate: python-tornado security update
RHSA-2026:24333: Important: .NET 9.0 security update
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast
[UPDATE] [hoch] Arista EOS: Mehrere Schwachstellen
[UPDATE] [mittel] X.Org X11: Mehrere Schwachstellen ermöglichen nicht näher spezifizierte Auswirkungen, möglicherweise Codeausführung
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Samsung Products Multiple Vulnerabilities
[UPDATE] [mittel] QT (Declarative module): Schwachstelle ermöglicht Denial of Service
[UPDATE] [hoch] Samsung Android: Mehrere Schwachstellen
[UPDATE] [hoch] OpenJPEG: Schwachstelle ermöglicht Codeausführung
[UPDATE] [hoch] Android Patchday April 2025: Mehrere Schwachstellen
DSA-6319-1 yelp - security update
Ubuntu Linux Kernel Multiple Vulnerabilities
Malware hides in Steam comments to infect WordPress sites
VU#158530: PCTCore64.sys Windows kernel driver contains missing access control vulnerability
[UPDATE] [mittel] Red Hat Enterprise Linux (unbound): Schwachstelle ermöglicht Manipulation von Daten
[UPDATE] [hoch] Drupal: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen
[UPDATE] [mittel] ffmpeg: Schwachstelle ermöglicht Denial of Service, potentiell Codeausführung
Lack of response to critical vulnerability in Gogs is a reminder of the limits of open source projects
[UPDATE] [hoch] Insyde UEFI Firmware: Schwachstelle ermöglicht Codeausführung
[UPDATE] [hoch] Apple macOS Sequoia, Sonoma und Tahoe: Mehrere Schwachstellen
[UPDATE] [mittel] Red Hat Enterprise Linux (socat): Schwachstelle ermöglicht Manipulation von Dateien
Google leaks details for Chromium bug that can turn browsers into bots
[local] Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path
Google publishes exploit code threatening millions of Chromium users
[UPDATE] [hoch] Squid: Schwachstelle ermöglicht Codeausführung
[UPDATE] [niedrig] Red Hat Enterprise Linux (luksmeta): Schwachstelle ermöglicht Manipulation von Dateien
[UPDATE] [mittel] libsndfile: Schwachstelle ermöglicht Codeausführung und DoS
Do fear the Reaper - stealer swipes macOS users' passwords, wallets, then backdoors them
Shai-Hulud copycat worm infects yet another npm package
[UPDATE] [mittel] Internet Systems Consortium BIND: Mehrere Schwachstellen ermöglichen Denial of Service
The spy who logged me in.
PraisonAI vulnerability gets scanned within 4 hours of disclosure
Palo Alto Products Multiple Vulnerabilities
RHSA-2026:16157: Important: OpenShift Container Platform 4.20.22 bug fix and security update
Microsoft Monthly Security Update (May 2026)
RHSA-2026:16694: Important: go-toolset:rhel8 security update
RHSA-2026:16702: Important: podman security update
RHSA-2026:16697: Important: go-toolset:rhel8 security update