CVE Alert: CVE-2025-54530
Vulnerability Summary: CVE-2025-54530 In JetBrains TeamCity before 2025.07 privilege escalation was possible due to incorrect directory permissions Affected Endpoints: No...
Vulnerability Summary: CVE-2025-54530 In JetBrains TeamCity before 2025.07 privilege escalation was possible due to incorrect directory permissions Affected Endpoints: No...
Vulnerability Summary: CVE-2025-54529 In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration Affected Endpoints: No...
Vulnerability Summary: CVE-2025-54537 In JetBrains TeamCity before 2025.07 user credentials were stored in plain text in memory snapshots Affected Endpoints:...
Vulnerability Summary: CVE-2025-54536 In JetBrains TeamCity before 2025.07 a CSRF was possible on GraphQL endpoint Affected Endpoints: No affected endpoints...
Vulnerability Summary: CVE-2025-54533 In JetBrains TeamCity before 2025.07 improper access control allowed disclosure of build settings via VCS configuration Affected...
Vulnerability Summary: CVE-2025-54534 In JetBrains TeamCity before 2025.07 reflected XSS was possible on the agentpushPreset page Affected Endpoints: No affected...
Vulnerability Summary: CVE-2025-54535 In JetBrains TeamCity before 2025.07 password reset and email verification tokens were using weak hashing algorithms Affected...
Vulnerability Summary: CVE-2025-54538 In JetBrains TeamCity before 2025.07 password exposure was possible via command line in the "hg pull" command...
Vulnerability Summary: CVE-2025-50489 Improper session invalidation in the component /srms/change-password.php of PHPGurukul Student Result Management System v2.0 allows attackers to...
Vulnerability Summary: CVE-2025-50492 Improper session invalidation in the component /edms/change-password.php of PHPGurukul e-Diary Management System v1 allows attackers to execute...
Vulnerability Summary: CVE-2025-50491 Improper session invalidation in the component /banker/change-password.php of PHPGurukul Bank Locker Management System v1 allows attackers to...
Vulnerability Summary: CVE-2025-50488 Improper session invalidation in the component /library/change-password.php of PHPGurukul Online Library Management System v3.0 allows attackers to...
Ransomware Group: RHYSIDA VICTIM NAME: First Baptist Church of Hammond NOTE: No files or stolen information are by RedPacket Security....
Multiple vulnerabilities were identified in PaperCut. A remote attacker could exploit some of these vulnerabilities to trigger remote code execution, sensitive information...
Vulnerability Summary: CVE-2025-8194 There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs....
Vulnerability Summary: CVE-2025-29534 An authenticated remote code execution vulnerability in PowerStick Wave Dual-Band Wifi Extender V1.0 allows an attacker with...
Vulnerability Summary: CVE-2025-8283 A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due...
Vulnerability Summary: CVE-2025-50484 Improper session invalidation in the component /crm/change-password.php of PHPGurukul Small CRM v3.0 allows attackers to execute a...
Vulnerability Summary: CVE-2025-50487 Improper session invalidation in the component /bbdms/change-password.php of PHPGurukul Blood Bank & Donor Management System v2.4 allows...
Vulnerability Summary: CVE-2025-54419 A SAML library not dependent on any frameworks that runs in Node. In version 5.0.1, Node-SAML loads...
Vulnerability Summary: CVE-2025-54428 RevelaCode is an AI-powered faith-tech project that decodes biblical verses, prophecies and global events into accessible language....
Vulnerability Summary: CVE-2025-50485 Improper session invalidation in the component /crm/change-password.php of PHPGurukul Online Course Registration v3.1 allows attackers to execute...
Vulnerability Summary: CVE-2025-50486 Improper session invalidation in the component /carrental/update-password.php of PHPGurukul Car Rental Project v3.0 allows attackers to execute...
Vulnerability Summary: CVE-2025-54423 copyparty is a portable file server. In versions up to and including versions 1.18.4, an unauthenticated attacker...