CVE Alert: CVE-2025-24888
Vulnerability Summary: CVE-2025-24888 The SecureDrop Client is a desktop application for journalists to communicate with sources and work with submissions...
Vulnerability Summary: CVE-2025-24888 The SecureDrop Client is a desktop application for journalists to communicate with sources and work with submissions...
Vulnerability Summary: CVE-2025-25900 A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the username and password parameters at...
Vulnerability Summary: CVE-2025-26511 Systems running the Instaclustr fork of Stratio's Cassandra-Lucene-Index plugin versions 4.0-rc1-1.0.0 through 4.0.16-1.0.0 and 4.1.2-1.0.0 through 4.1.8-1.0.0,...
Vulnerability Summary: CVE-2024-11345 A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability...
Vulnerability Summary: CVE-2024-11344 A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability...
Vulnerability Summary: CVE-2024-11346 : Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et....
Vulnerability Summary: CVE-2025-1127 The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user and/or...
Vulnerability Summary: CVE-2024-11347 Integer Overflow or Wraparound vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows...
Vulnerability Summary: CVE-2025-25067 mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to...
Vulnerability Summary: CVE-2025-22896 mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information. Affected...
Vulnerability Summary: CVE-2025-20615 The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file....
Vulnerability Summary: CVE-2025-23411 mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain...
Vulnerability Summary: CVE-2025-1283 The Dingtian DT-R0 Series is vulnerable to an exploit that allows attackers to bypass login requirements by...
Vulnerability Summary: CVE-2025-23421 An attacker could obtain firmware files and reverse engineer their intended use leading to loss of confidentiality...
Vulnerability Summary: CVE-2025-24861 An attacker may inject commands via specially-crafted post requests. Affected Endpoints: No affected endpoints listed. Published Date:...
Vulnerability Summary: CVE-2025-24836 With a specially crafted Python script, an attacker could send continuous startMeasurement commands over an unencrypted Bluetooth...
Vulnerability Summary: CVE-2025-24865 The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an...
Vulnerability Summary: CVE-2025-26473 The Mojave Inverter uses the GET method for sensitive information. Affected Endpoints: GET method Published Date: 2/13/2025,...
Vulnerability Summary: CVE-2025-25195 Zulip is an open source team chat application. A weekly cron job (added in 50256f48314250978f521ef439cafa704e056539) demotes channels...
Vulnerability Summary: CVE-2025-25281 An attacker may modify the URL to discover sensitive information about the target network. Affected Endpoints: No...
Vulnerability Summary: CVE-2024-12054 ZF Roll Stability Support Plus (RSSPlus) is vulnerable to an authentication bypass vulnerability targeting deterministic RSSPlus SecurityAccess...
Vulnerability Summary: CVE-2024-37600 An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible stack...
Vulnerability Summary: CVE-2024-37602 An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible NULL...
Vulnerability Summary: CVE-2024-31155 Improper buffer restrictions in the UEFI firmware for some Intel(R) Processors may allow a privileged user to...