CVE-2025-54864 Hydra missing authentication when triggering evaluations through GitHub and Gitea plugins

Hydra is a continuous integration service for Nix based projects. Prior to commit f7bda02, /api/push-github and /api/push-gitea are called by the corresponding forge without HTTP Basic authentication. ...

Continue Reading
CVE-2025-54864 Hydra missing authentication when triggering evaluations through GitHub and Gitea plugins

Hydra is a continuous integration service for Nix based projects. Prior to commit f7bda02, /api/push-github and /api/push-gitea are called by the corresponding forge without HTTP Basic authentication. ...

Continue Reading
CVE-2025-54864 Hydra missing authentication when triggering evaluations through GitHub and Gitea plugins

Hydra is a continuous integration service for Nix based projects. Prior to commit f7bda02, /api/push-github and /api/push-gitea are called by the corresponding forge without HTTP Basic authentication. ...

Continue Reading
CVE-2025-55011 Kanboard Path Traversal in File Write via Task File Upload Api

Kanboard is project management software that focuses on the Kanban methodology. Prior to version 1.2.47, the createTaskFile method in the API does not validate whether the task_id parameter is a valid ...

Continue Reading
CVE-2025-8885

creation_timestamp| type| source ---|---|--- 2025-08-12 12:08:44+00:00| seen|...Read More ...

Continue Reading
CVE-2025-26398

creation_timestamp| type| source ---|---|--- 2025-08-12 12:03:44+00:00| seen| https://bsky.app/profile/cve.skyfleet.blue/post/3lw7bei7u6f2q 2025-08-12 13:04:24+00:00| seen|...Read More ...

Continue Reading
CVE-2025-4371

creation_timestamp| type| source ---|---|--- 2025-08-12 12:46:29+00:00| seen|...Read More ...

Continue Reading
CVE-2025-43736

creation_timestamp| type| source ---|---|--- 2025-08-12 12:09:45+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: