CVE Alert: CVE-2025-51862
Vulnerability Summary: CVE-2025-51862 Insecure Direct Object Reference (IDOR) vulnerability in TelegAI (telegai.com) thru 2025-05-26 in its chat component. An attacker...
Vulnerability Summary: CVE-2025-51862 Insecure Direct Object Reference (IDOR) vulnerability in TelegAI (telegai.com) thru 2025-05-26 in its chat component. An attacker...
Vulnerability Summary: CVE-2025-4878 A vulnerability was found in libssh, where an uninitialized variable exists under certain conditions in the privatekey_from_file()...
Vulnerability Summary: CVE-2025-51858 Self Cross-Site Scripting (XSS) vulnerability in ChatPlayground.ai through 2025-05-24, allows attackers to execute arbitrary code and gain...
Vulnerability Summary: CVE-2025-51865 Ai2 playground web service (playground.allenai.org) LLM chat through 2025-06-03 is vulnerable to Insecure Direct Object Reference (IDOR),...
Vulnerability Summary: CVE-2025-51864 A reflected cross-site scripting (XSS) vulnerability exists in AIBOX LLM chat (chat.aibox365.cn) through 2025-05-27, allowing attackers to...
Vulnerability Summary: CVE-2025-51859 Stored Cross-Site Scripting (XSS) vulnerability in Chaindesk thru 2025-05-26 in its agent chat component. An attacker can...
Ransomware Group: INCRANSOM VICTIM NAME: Sementes Jotabasso NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Vulnerability Summary: CVE-2025-8018 A vulnerability was found in code-projects Food Ordering Review System 1.0. It has been declared as critical....
Vulnerability Summary: CVE-2025-8015 The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Vulnerability Summary: CVE-2025-35966 A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message handling of Bloomberg Comdb2 8.1....
Vulnerability Summary: CVE-2025-36520 A null pointer dereference vulnerability exists in the net_connectmsg Protocol Buffer Message functionality of Bloomberg Comdb2 8.1....
Vulnerability Summary: CVE-2025-51863 Self Cross Site Scripting (XSS) vulnerability in ChatGPT Unli (ChatGPTUnli.com) thru 2025-05-26 allows attackers to execute arbitrary...
Vulnerability Summary: CVE-2025-36512 A denial of service vulnerability exists in the Bloomberg Comdb2 8.1 database when handling a distributed transaction...
Vulnerability Summary: CVE-2025-51480 Path Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0 allows attackers to overwrite arbitrary files by supplying crafted...
Vulnerability Summary: CVE-2025-46354 A denial of service vulnerability exists in the Distributed Transaction Commit/Abort Operation functionality of Bloomberg Comdb2 8.1....
Vulnerability Summary: CVE-2025-48498 A null pointer dereference vulnerability exists in the Distributed Transaction component of Bloomberg Comdb2 8.1 when processing...
Vulnerability Summary: CVE-2025-51463 Path Traversal in restore_run_backup() in AIM 3.28.0 allows remote attackers to write arbitrary files to the server's...
Company Name: curl Company HackerOne URL: https://hackerone.com/curl Submitted By:nyymiLink to Submitters Profile:https://hackerone.com/nyymi Report Title:GnuTLS CURLINFO_TLS_SESSION / CURLINFO_TLS_SSL_PTR type confusionReport Link:https://hackerone.com/reports/3261248Date...
Company Name: GitLab Company HackerOne URL: https://hackerone.com/gitlab Submitted By:timothyleungLink to Submitters Profile:https://hackerone.com/timothyleung Report Title:Mint Oauth2 access token for targeted userReport...
Ransomware Group: NITROGEN VICTIM NAME: Palm Bay International NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: AKIRA VICTIM NAME: OKA NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...
Ransomware Group: AKIRA VICTIM NAME: Reimo NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...
Ransomware Group: EVEREST VICTIM NAME: Vantage Finance NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: EVEREST VICTIM NAME: APL NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...