CVE Alert: CVE-2025-24798
Vulnerability Summary: CVE-2025-24798 Meshtastic is an open source mesh networking solution. From 1.2.1 until 2.6.2, a packet sent to the...
Vulnerability Summary: CVE-2025-24798 Meshtastic is an open source mesh networking solution. From 1.2.1 until 2.6.2, a packet sent to the...
Vulnerability Summary: CVE-2025-1727 The protocol used for remote linking over RF for End-of-Train and Head-of-Train (also known as a FRED)...
Vulnerability Summary: CVE-2025-7204 In ConnectWise PSA versions older than 2025.9, a vulnerability exists where authenticated users could gain access to...
Vulnerability Summary: CVE-2025-52364 Insecure Permissions vulnerability in Tenda CP3 Pro Firmware V22.5.4.93 allows the telnet service (telnetd) by default at...
Vulnerability Summary: CVE-2025-2670 IBM OpenPages 9.0 is vulnerable to information disclosure of sensitive information due to a weaker than expected...
Vulnerability Summary: CVE-2025-53546 Folo organizes feeds content into one timeline. Using pull_request_target on .github/workflows/auto-fix-lint-format-commit.yml can be exploited by attackers, since...
Vulnerability Summary: CVE-2025-1112 IBM OpenPages with Watson 8.3 and 9.0 could allow an authenticated user to obtain sensitive information that...
Vulnerability Summary: CVE-2025-44526 Realtek RTL8762EKF-EVB RTL8762E SDK V1.4.0 was discovered to utilize insufficient permission checks on critical fields within Bluetooth...
Vulnerability Summary: CVE-2025-53654 Jenkins Statistics Gatherer Plugin 2.0.3 and earlier stores the AWS Secret Key unencrypted in its global configuration...
Vulnerability Summary: CVE-2025-44177 A directory traversal vulnerability was discovered in White Star Software Protop version 4.4.2-2024-11-27, specifically in the /pt3upd/...
Vulnerability Summary: CVE-2025-53653 Jenkins Aqua Security Scanner Plugin 3.2.8 and earlier stores Scanner Tokens for Aqua API unencrypted in job...
Vulnerability Summary: CVE-2025-53655 Jenkins Statistics Gatherer Plugin 2.0.3 and earlier does not mask the AWS Secret Key on the global...
Vulnerability Summary: CVE-2025-53651 Jenkins HTML Publisher Plugin 425 and earlier displays log messages that include the absolute paths of files...
Vulnerability Summary: CVE-2025-49604 For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and...
Vulnerability Summary: CVE-2025-53652 Jenkins Git Parameter Plugin 439.vb_0e46ca_14534 and earlier does not validate that the Git parameter value submitted to...
Vulnerability Summary: CVE-2025-53650 Jenkins Credentials Binding Plugin 687.v619cb_15e923f and earlier does not properly mask (i.e., replace with asterisks) credentials present...
Vulnerability Summary: CVE-2025-53665 Jenkins Apica Loadtest Plugin 1.10 and earlier does not mask Apica Loadtest LTP authentication tokens displayed on...
Vulnerability Summary: CVE-2025-53663 Jenkins IBM Cloud DevOps Plugin 2.0.16 and earlier stores SonarQube authentication tokens unencrypted in job config.xml files...
Vulnerability Summary: CVE-2025-53664 Jenkins Apica Loadtest Plugin 1.10 and earlier stores Apica Loadtest LTP authentication tokens unencrypted in job config.xml...
Vulnerability Summary: CVE-2025-53662 Jenkins IFTTT Build Notifier Plugin 1.2 and earlier stores IFTTT Maker Channel Keys unencrypted in job config.xml...
Vulnerability Summary: CVE-2025-53660 Jenkins QMetry Test Management Plugin 1.13 and earlier does not mask Qmetry Automation API Keys displayed on...
Vulnerability Summary: CVE-2025-53661 Jenkins Testsigma Test Plan run Plugin 1.6 and earlier does not mask Testsigma API keys displayed on...
Vulnerability Summary: CVE-2025-53658 Jenkins Applitools Eyes Plugin 1.16.5 and earlier does not escape the Applitools URL on the build page,...
Vulnerability Summary: CVE-2025-53657 Jenkins ReadyAPI Functional Testing Plugin 1.11 and earlier does not mask SLM License Access Keys, client secrets,...