CVE Alert: CVE-2025-24485
Vulnerability Summary: CVE-2025-24485 A server-side request forgery vulnerability exists in the cecho.php functionality of MedDream PACS Premium 7.3.5.860. A specially...
Vulnerability Summary: CVE-2025-24485 A server-side request forgery vulnerability exists in the cecho.php functionality of MedDream PACS Premium 7.3.5.860. A specially...
Vulnerability Summary: CVE-2025-32731 A reflected cross-site scripting (xss) vulnerability exists in the radiationDoseReport.php functionality of meddream MedDream PACS Premium 7.3.5.860....
Vulnerability Summary: CVE-2025-54569 In Malwarebytes Binisoft Windows Firewall Control before 6.16.0.0, the installer is vulnerable to local privilege escalation. Affected...
Vulnerability Summary: CVE-2025-8275 A vulnerability, which was classified as problematic, has been found in bsc Peru Cocktails App 1.0.0 on...
Vulnerability Summary: CVE-2025-4056 A flaw was found in GLib. A denial of service on Windows platforms may occur if an...
Vulnerability Summary: CVE-2025-26469 An incorrect default permissions vulnerability exists in the CServerSettings::SetRegistryValues functionality of MedDream PACS Premium 7.3.3.840. A specially...
Vulnerability Summary: CVE-2025-54418 CodeIgniter is a PHP full-stack web framework. A command injection vulnerability present in versions prior to 4.6.2...
Vulnerability Summary: CVE-2024-49343 IBM Informix Dynamic Server 12.10 and 14.10 is vulnerable to HTML injection. A remote attacker could inject...
Vulnerability Summary: CVE-2025-27724 A privilege escalation vulnerability exists in the login.php functionality of meddream MedDream PACS Premium 7.3.3.840. A specially...
Vulnerability Summary: CVE-2025-8279 Insufficient input validation within GitLab Language Server 7.6.0 and later before 7.30.0 allows arbitrary GraphQL query execution...
Ransomware Group: QILIN VICTIM NAME: Custom Food Ingredients NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: SAFEPAY VICTIM NAME: ingrammicrocom NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...
Ransomware Group: QILIN VICTIM NAME: tissotcom NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...
Company Name: Mozilla Company HackerOne URL: https://hackerone.com/mozilla Submitted By:yoyomiskiLink to Submitters Profile:https://hackerone.com/yoyomiski Report Title:Bypass "No Links" Restriction in Biography via...
Company Name: Mozilla Company HackerOne URL: https://hackerone.com/mozilla Submitted By:treinLink to Submitters Profile:https://hackerone.com/trein Report Title:Mozilla VPN Clients: RCE via file write...
Ransomware Group: SECUROTROP VICTIM NAME: Tiger Communications NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: AKIRA VICTIM NAME: Druni NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...
Ransomware Group: AKIRA VICTIM NAME: Hertz Farm Management NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: AKIRA VICTIM NAME: Mount Vernon Property Management NOTE: No files or stolen information are by RedPacket Security. Any...
Vulnerability Summary: CVE-2025-54527 In JetBrains YouTrack before 2025.2.86935, 2025.2.87167, 2025.3.87341, 2025.3.87344 improper iframe configuration in widget sandbox allows popups to...
Vulnerability Summary: CVE-2025-50494 Improper session invalidation in the component /doctor/change-password.php of PHPGurukul Car Washing Management System v1.0 allows attackers to...
Vulnerability Summary: CVE-2024-49342 IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a...
Vulnerability Summary: CVE-2025-54528 In JetBrains TeamCity before 2025.07 a CSRF was possible in GitHub App connection flow Affected Endpoints: No...
Vulnerability Summary: CVE-2025-50493 Improper session invalidation in the component /doctor/change-password.php of PHPGurukul Doctor Appointment Management System v1 allows attackers to...