WakaTime: Unauthorized Disclosure of Private Emails via WakaTime Private Leaderboards

The vulnerability allowed unauthorized disclosure of private email addresses of WakaTime users through the private leaderboards feature. The email addresses were exposed to leaderboard creators and me ...

Continue Reading
curl: Credential leak on redirect due to improper state clearing when parsing macdef in netrc.c

Vulnerability description not...Read More ...

Continue Reading
curl: Stack use-after-scope in HTTP/3 POST request processing via CURLOPT_POSTFIELDS

Vulnerability description not...Read More ...

Continue Reading
CVE-2025-53417

creation_timestamp| type| source ---|---|--- 2025-08-05 03:01:20+00:00| seen|...Read More ...

Continue Reading
CVE-2025-54802

creation_timestamp| type| source ---|---|--- 2025-08-05 03:18:49+00:00| seen|...Read More ...

Continue Reading
CVE-2025-54119

creation_timestamp| type| source ---|---|--- 2025-08-05 03:13:48+00:00| seen|...Read More ...

Continue Reading
curl: OS Command Injection in scripts/firefox-db2pem.sh via untrusted certificate nicknames

Vulnerability description not...Read More ...

Continue Reading
curl: arbitrary file read via `file://` path traversal with `–path-as-is`

Vulnerability description not...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: