CVE Alert: CVE-2025-54854 – F5 – BIG-IP
CVE-2025-54854 HIGHNo exploitation known When a BIG-IP APM OAuth access profile (Resource Server or Resource Client) is configured on a...
CVE-2025-54854 HIGHNo exploitation known When a BIG-IP APM OAuth access profile (Resource Server or Resource Client) is configured on a...
CVE-2025-54479 HIGHNo exploitation known When a classification profile is configured on a virtual server without an HTTP or HTTP/2 profile,...
hands on Nvidia bills its long-anticipated DGX Spark as the "world's smallest AI supercomputer," and, at $3,000 to $4,000 (depending...
HIBP In September 2025, Prosper announced that it had detected unauthorised access to their systems, which resulted in the exposure...
HIBP In July 2025, the sexual healthcare product maker Hello Cake suffered a data breach. The data was subsequently posted...
CVE-2025-46706 HIGHNo exploitation known When an iRule containing the HTTP::respond command is configured on a virtual server, undisclosed requests can...
CVE-2025-53521 HIGHNo exploitation known When a BIG-IP APM Access Policy is configured on a virtual server, undisclosed traffic can cause...
CVE-2025-53856 HIGHNo exploitation known When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object...
CVE-2025-48008 HIGHNo exploitation known When a TCP profile with Multipath TCP (MPTCP) enabled is configured on a virtual server, undisclosed...
CVE-2025-53474 HIGHNo exploitation known When an iRule using an ILX::call command is configured on a virtual server, undisclosed traffic can cause...
CVE-2025-11722 HIGHNo exploitation known The Woocommerce Category and Products Accordion Panel plugin for WordPress is vulnerable to Local File Inclusion...
CVE-2025-10754 HIGHNo exploitation known The DocoDoco Store Locator plugin for WordPress is vulnerable to arbitrary file uploads due to missing...
CVE-2025-11177 HIGHNo exploitation known The External Login plugin for WordPress is vulnerable to SQL Injection via the 'log' parameter in...
CVE-2025-10743 HIGHNo exploitation known The Outdoor plugin for WordPress is vulnerable to SQL Injection via the 'edit' action in all...
CVE-2025-41430 HIGHNo exploitation known When BIG-IP SSL Orchestrator is enabled, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to...
CVE-2025-10051 HIGHNo exploitation known The Demo Import Kit plugin for WordPress is vulnerable to arbitrary file uploads due to missing...
CVE-2025-10299 HIGHNo exploitation known The WPBifröst – Instant Passwordless Temporary Login Links plugin for WordPress is vulnerable to Privilege Escalation...
CVE-2025-10293 HIGHNo exploitation known The Keyy Two Factor Authentication (like Clef) plugin for WordPress is vulnerable to privilege escalation via...
CVE-2025-10313 HIGHNo exploitation known The Find And Replace content for WordPress plugin for WordPress is vulnerable to unauthorized Stored Cross-Site...
CVE-2025-11501 HIGHNo exploitation known The Dynamically Display Posts plugin for WordPress is vulnerable to SQL Injection via the 'tax_query' parameter...
CVE-2025-61804 HIGHNo exploitation known Animate versions 23.0.13, 24.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2025-54268 HIGHNo exploitation known Bridge versions 14.1.8, 15.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2025-54279 HIGHNo exploitation known Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that could...
CVE-2025-6042 HIGHNo exploitation known The Lisfinity Core - Lisfinity Core plugin used for pebas® Lisfinity WordPress theme plugin for WordPress...