CVE Alert: CVE-2025-49277
Vulnerability Summary: CVE-2025-49277 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp...
Vulnerability Summary: CVE-2025-49277 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp...
Vulnerability Summary: CVE-2025-49297 Path Traversal vulnerability in Mikado-Themes Grill and Chow allows PHP Local File Inclusion. This issue affects Grill...
Vulnerability Summary: CVE-2025-49275 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp...
Vulnerability Summary: CVE-2025-5886 A vulnerability was found in Emlog up to 2.5.7 and classified as problematic. This issue affects some...
Vulnerability Summary: CVE-2025-49282 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp...
Vulnerability Summary: CVE-2025-49295 Path Traversal vulnerability in Mikado-Themes MediClinic allows PHP Local File Inclusion. This issue affects MediClinic: from n/a...
Vulnerability Summary: CVE-2025-49281 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp...
Vulnerability Summary: CVE-2025-49296 Path Traversal vulnerability in Mikado-Themes GrandPrix allows PHP Local File Inclusion. This issue affects GrandPrix: from n/a...
Ransomware Group: INCRANSOM VICTIM NAME: Mount Rogers Community Services NOTE: No files or stolen information are by RedPacket Security. Any...
Ransomware Group: EVEREST VICTIM NAME: Department of Culture and Tourism Abu Dhabi - Full leak published NOTE: No files or...
Vulnerability Summary: CVE-2025-49136 listmonk is a standalone, self-hosted, newsletter and mailing list manager. Starting in version 4.0.0 and prior to...
Vulnerability Summary: CVE-2025-46041 A stored cross-site scripting (XSS) vulnerability in Anchor CMS v0.12.7 allows attackers to inject malicious JavaScript via...
Vulnerability Summary: CVE-2024-46452 A Host Header injection vulnerability in the password reset function of VigyBag Open Source Online Shop commit...
Vulnerability Summary: CVE-2025-29627 An issue in KeeperChat IOS Application v.5.8.8 allows a physically proximate attacker to escalate privileges via the...
Vulnerability Summary: CVE-2025-45002 Vigybag v1.0 and before is vulnerable to Cross Site Scripting (XSS) via the upload profile picture function...
Vulnerability Summary: CVE-2025-45001 react-native-keys 0.7.11 is vulnerable to sensitive information disclosure (remote) as encryption cipher and Base64 chunks are stored...
Vulnerability Summary: CVE-2025-49651 Missing Authorization in Lablup's BackendAI allows attackers to takeover all active sessions; Accessing, stealing, or altering any...
Vulnerability Summary: CVE-2024-47081 Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may...
Vulnerability Summary: CVE-2025-5887 A vulnerability was found in jsnjfz WebStack-Guns 1.0. It has been classified as problematic. Affected is an...
Vulnerability Summary: CVE-2025-49652 Missing Authentication in the registration feature of Lablup's BackendAI allows arbitrary users to create user accounts that...
Ransomware Group: NIGHTSPIRE VICTIM NAME: Petroquim Chile NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: QILIN VICTIM NAME: palawancoop hospital NOTE: No files or stolen information are by RedPacket Security. Any legal issues...
Ransomware Group: QILIN VICTIM NAME: rmzoilfieldcom NOTE: No files or stolen information are by RedPacket Security. Any legal issues relating...
Vulnerability Summary: CVE-2025-5889 A vulnerability was found in juliangruber brace-expansion up to 1.1.11. It has been rated as problematic. Affected...