CVE Alert: CVE-2025-45492
Vulnerability Summary: CVE-2025-45492 Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the action_wireless function. Affected...
Vulnerability Summary: CVE-2025-45492 Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the action_wireless function. Affected...
Vulnerability Summary: CVE-2025-22476 Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Neutralization of Special Elements used...
Vulnerability Summary: CVE-2025-4368 A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected is the function...
Vulnerability Summary: CVE-2025-45490 Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS function via...
Vulnerability Summary: CVE-2025-25014 A Prototype pollution vulnerability in Kibana leads to arbitrary code execution via crafted HTTP requests to machine...
Vulnerability Summary: CVE-2025-30165 vLLM is an inference and serving engine for large language models. In a multi-node vLLM deployment using...
Vulnerability Summary: CVE-2025-45250 MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url function of the...
Vulnerability Summary: CVE-2025-46736 Umbraco is a free and open source .NET content management system. Prior to versions 10.8.10 and 13.8.1,...
Vulnerability Summary: CVE-2025-32022 Finit provides fast init for Linux systems. Finit's urandom plugin has a heap buffer overwrite vulnerability at...
Vulnerability Summary: CVE-2025-46816 goshs is a SimpleHTTPServer written in Go. Starting in version 0.3.4 and prior to version 1.0.5, running...
Vulnerability Summary: CVE-2025-44900 In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform/GetParentControlInfo, the manipulation of the...
Vulnerability Summary: CVE-2025-37730 Improper certificate validation in Logstash's TCP output could lead to a man-in-the-middle (MitM) attack in “client” mode,...
Vulnerability Summary: CVE-2025-46815 The identity infrastructure software ZITADEL offers developers the ability to manage user sessions using the Session API....
Vulnerability Summary: CVE-2025-46820 phpgt/Dom provides access to modern DOM APIs. Versions of phpgt/Dom prior to 4.1.8 expose the GITHUB_TOKEN in...
Vulnerability Summary: CVE-2024-12225 A vulnerability was found in Quarkus in the quarkus-security-webauthn module. The Quarkus WebAuthn module publishes default REST...
Vulnerability Summary: CVE-2025-0853 The PGS Core plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the...
Vulnerability Summary: CVE-2025-47256 Libxmp through 4.6.2 has a stack-based buffer overflow in depack_pha in loaders/prowizard/pha.c via a malformed Pha format...
Vulnerability Summary: CVE-2025-0855 The PGS Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up to,...
Vulnerability Summary: CVE-2025-0856 The PGS Core plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due...
US President Donald Trump has said TikTok will be “very strongly protected” as the made-in-China social network has “a warm...
The US jobs market grew faster than expected in April, but most IT pros aren’t among the beneficiaries.The US economy...
Before Donald Trump became US president and the UK left the EU – both arguably the result of a new...
A Commodore-themed talking Linux desktop, complete with hundreds of games, makes for the biggest distro we've seen yet.In the halcyon...
Ransomware Group: QILIN VICTIM NAME: gates-coopercom NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...