Ollama vulnerable to Cross-Domain Token Exposure

Cross-Domain Token Exposure in server.auth.getAuthorizationToken in Ollama 0.6.7 allows remote attackers to steal authentication tokens and bypass access controls via a malicious realm value in a WWW- ...

Continue Reading
CVE-2025-31511

creation_timestamp| type| source ---|---|--- 2025-07-22 21:53:37+00:00| seen|...Read More ...

Continue Reading
BIT-NODE-MIN-2025-27210

An incomplete fix has been identified for CVE-2025-23084 in Node.js, specifically affecting Windows device names like CON, PRN, and AUX. This vulnerability affects Windows users of path.join...Read M ...

Continue Reading
BIT-NODE-2025-27210

An incomplete fix has been identified for CVE-2025-23084 in Node.js, specifically affecting Windows device names like CON, PRN, and AUX. This vulnerability affects Windows users of path.join...Read M ...

Continue Reading
CVE-2025-31512

creation_timestamp| type| source ---|---|--- 2025-07-22 21:08:57+00:00| seen|...Read More ...

Continue Reading
CVE-2025-31513

creation_timestamp| type| source ---|---|--- 2025-07-22 21:06:38+00:00| seen|...Read More ...

Continue Reading
CVE-2025-6058

creation_timestamp| type| source ---|---|--- 2025-07-22 21:02:24+00:00| seen|...Read More ...

Continue Reading
CVE-2025-51471

creation_timestamp| type| source ---|---|--- 2025-07-22 21:24:18+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: