Node.js: Windows Device Names Still Allow Path Traversal in UNC Paths After CVE-2025-27210 Fix
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
curl: Use-After-Free in OpenSSL Keylog Callback via SSL_get_ex_data() in libcurl
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
curl: Security check up
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
Mozilla: Bypass “No Links” Restriction in Biography via Protocol-Relative URL (//)
The report identifies a bypass vulnerability in the biography field on addons.allizom.org. Despite the application's policy against allowing links, it was possible to embed functional hyperlinks ...
Continue ReadingAugust 05, 2025
curl: Credential leak on redirect due to improper state clearing when parsing macdef in netrc.c
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
curl: curl ASSERTs when accessing an LDAP URL
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
curl: Arbitrary File Read via file:// Protocol in cURL
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
curl: Vulnerability Report: Public Exposure of Security Audit File
Vulnerability description not...Read More ...
Continue ReadingAugust 05, 2025
Back to Main