A vulnerability classified as critical has been found in yanyutao0402 ChanCMS up to 3.1.2. This affects the function getArticle of the file app/modules/api/service/gather.js. The manipulation of the a ...
Continue ReadingJuly 27, 2025
creation_timestamp| type| source ---|---|--- 2025-07-27 04:54:56+00:00| seen| https://bsky.app/profile/2rZiKKbOU3nTafniR2qMMSE0gwZ.activitypub.awakari.com.ap.brid.gy/post/3luwbw644vdd2 2025-07-27 05:3 ...
Continue ReadingJuly 27, 2025
creation_timestamp| type| source ---|---|--- 2025-07-27 02:27:52+00:00| seen|...Read More ...
Continue ReadingJuly 27, 2025
Overview Lakeside Software, an IT digital employee experience platform, offers a product called SysTrack, intended for endpoint observability. This program uses an executable called LsiAgent.exe, whic ...
Continue ReadingJuly 27, 2025
Quiet is an alternative to team chat apps like Slack, Discord, and Element that does not require trusting a central server or running one's own. In versions 6.1.0-alpha.4 and below, Quiet's ...
Continue ReadingJuly 27, 2025
LF Edge eKuiper is a lightweight IoT data analytics and stream processing engine running on resource-constraint edge devices. In versions before 2.2.1, there is a critical SQL Injection vulnerability ...
Continue ReadingJuly 27, 2025
CNCF Harbor 2.13.x before 2.13.1 and 2.12.x before 2.12.4 allows information disclosure by administrators who can exploit an ORM Leak present in the /api/v2.0/users endpoint to leak users' passwo ...
Continue ReadingJuly 27, 2025
JHipster before v.8.9.0 allows privilege escalation via a modified authorities parameter. Upon registering in the JHipster portal and logging in as a standard user, the authorities parameter in the re ...
Continue ReadingJuly 27, 2025
Back to Main