CVE-2025-47152

creation_timestamp| type| source ---|---|--- 2025-08-05 15:00:11+00:00| seen|...Read More ...

Continue Reading
CVE-2025-48530

creation_timestamp| type| source ---|---|--- 2025-08-05 15:17:56+00:00| seen| https://bsky.app/profile/jos1264.social.skynetcloud.site.ap.brid.gy/post/3lvnyswpjs3k2 2025-08-05 15:40:46+00:00| seen|... ...

Continue Reading
CVE-2025-27931

creation_timestamp| type| source ---|---|--- 2025-08-05 15:00:05+00:00| seen|...Read More ...

Continue Reading
CERTFR-2025-ALE-011

creation_timestamp| type| source ---|---|--- 2025-08-05 14:14:27+00:00| seen| https://bsky.app/profile/cti-news.bsky.social/post/3lvnvfrpi552u 2025-08-05 14:14:41+00:00| seen|...Read More ...

Continue Reading
mcp-package-docs vulnerable to command injection in several tools

Summary A command injection vulnerability exists in the mcp-package-docs MCP Server. The vulnerability is caused by the unsanitized use of input parameters within a call to child_process.exec, enablin ...

Continue Reading
BIT-VAULT-2025-6037 Vault Certificate Auth Method Did Not Validate Common Name For Non-CA Certificates

Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when configured with a non-CA certificate as [+trusted certificate+|https://develope ...

Continue Reading
CVE-2025-8548 atjiu pybbs Registered Email SettingsApiController.java sendEmailCode information exposure

A vulnerability was found in atjiu pybbs up to 6.0.0 and classified as problematic. This issue affects the function sendEmailCode of the file src/main/java/co/yiiu/pybbs/controller/api/SettingsApiCont ...

Continue Reading
CVE-2025-52892 EspoCRM is vulnerable to access denial through double slash in URI corrupting router cache

EspoCRM is a web application with a frontend designed as a single-page application and a REST API backend written in PHP. In versions 9.1.6 and below, if a user loads Espo in the browser with double s ...

Continue Reading

Back to Main

Subscribe for the latest news: