CVE Alert: CVE-2025-52876
Vulnerability Summary: CVE-2025-52876 In JetBrains TeamCity before 2025.03.3 reflected XSS on the favoriteIcon page was possible Affected Endpoints: No affected...
Vulnerability Summary: CVE-2025-52876 In JetBrains TeamCity before 2025.03.3 reflected XSS on the favoriteIcon page was possible Affected Endpoints: No affected...
Vulnerability Summary: CVE-2025-52875 In JetBrains TeamCity before 2025.03.3 a DOM-based XSS at the Performance Monitor page was possible Affected Endpoints:...
Vulnerability Summary: CVE-2025-52968 xdg-open in xdg-utils through 1.2.1 can send requests containing SameSite=Strict cookies, which can facilitate CSRF. (For example,...
Ransomware Group: AKIRA VICTIM NAME: Seppeler Gruppe NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: AKIRA VICTIM NAME: Access Financial NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: WORLDLEAKS VICTIM NAME: Myrtue Medical Center Hospital NOTE: No files or stolen information are by RedPacket Security. Any...
Ransomware Group: SARCOMA VICTIM NAME: Machu Picchu Foods NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: LYNX VICTIM NAME: Inflite Engineering Services NOTE: No files or stolen information are by RedPacket Security. Any legal...
Vulnerability Summary: CVE-2025-52969 ClickHouse 25.7.1.557 allows low-privileged users to execute shell commands by querying existing Executable() tables created by higher-privileged...
Vulnerability Summary: CVE-2025-6516 A vulnerability has been found in HDF5 up to 1.14.6 and classified as critical. This vulnerability affects...
Vulnerability Summary: CVE-2025-6510 A vulnerability was found in Netgear EX6100 1.0.2.28_1.1.138. It has been rated as critical. Affected by this...
Vulnerability Summary: CVE-2025-6511 A vulnerability classified as critical has been found in Netgear EX6150 1.0.0.46_1.0.76. This affects the function sub_410090....
Vulnerability Summary: CVE-2025-6509 A vulnerability was found in seaswalker spring-analysis up to 4379cce848af96997a9d7ef91d594aa129be8d71. It has been declared as problematic. Affected...
Vulnerability Summary: CVE-2025-6517 A vulnerability was found in Dromara MaxKey up to 4.1.7 and classified as critical. This issue affects...
Vulnerability Summary: CVE-2025-49126 Visionatrix is an AI Media processing tool using ComfyUI. In versions 1.5.0 to before 2.5.1, the /docs/flows...
Vulnerability Summary: CVE-2021-47688 In WhiteBeam 0.2.0 through 0.2.1 before 0.2.2, a user with local access to a server can bypass...
Vulnerability Summary: CVE-2025-6518 A vulnerability was found in PySpur-Dev pyspur up to 0.1.18. It has been classified as critical. Affected...
Vulnerability Summary: CVE-2025-49144 Notepad++ is a free and open-source source code editor. In versions 8.8.1 and prior, a privilege escalation...
RXSS at `https://skyview.gsfc.nasa.gov/current/cgi/vo/sia.pl` RXSS at `https://skyview.gsfc.nasa.gov/current/cgi/vo/sia.pl` Researcher: GxbNt Engagement: National Aeronautics and Space Administration (NASA) - Vulnerability Disclosure Program Disclosed...
NASA-User Owned PDF Publicly Exposed with Full Edit Rights — Risk of Deletion and PII Disclosure NASA-User Owned PDF Publicly...
Sensitive NASA Equipment Inventory Disclosed via Public Endpoint on www3.nasa.gov Sensitive NASA Equipment Inventory Disclosed via Public Endpoint on www3.nasa.gov...
The latest marketing ploy from the ransomware crooks behind the Qilin operation involves offering affiliates access to a crack team...
Asia In Brief Chinese web giant Baidu last week staged a livestream hosted by an AI version of local influencer...
Opinion The smaller the org, the better the jobs. Not universally true, but a good rule of thumb. Small organizations...