CVE-2025-46354

creation_timestamp| type| source ---|---|--- 2025-07-22 15:30:11+00:00| seen|...Read More ...

Continue Reading
CVE-2025-36520

creation_timestamp| type| source ---|---|--- 2025-07-22 15:30:05+00:00| seen|...Read More ...

Continue Reading
CVE-2025-35966

creation_timestamp| type| source ---|---|--- 2025-07-22 15:30:28+00:00| seen|...Read More ...

Continue Reading
Authentik has insufficient check for account active status when authenticating with OAuth/SAML Sources

Summary Deactivated users that had either enrolled via OAuth/SAML or had their account connected to an OAuth/SAML account can still partially access authentik even if their account is deactivated. The ...

Continue Reading
CVE-2025-51463

Path Traversal in restore_run_backup() in AIM 3.28.0 allows remote attackers to write arbitrary files to the server's filesystem via a crafted backup tar file submitted to the run_instruction API ...

Continue Reading
CVE-2025-51463

Path Traversal in restore_run_backup() in AIM 3.28.0 allows remote attackers to write arbitrary files to the server's filesystem via a crafted backup tar file submitted to the run_instruction API ...

Continue Reading
Cisco Confirms Active Exploits Targeting ISE Flaws Enabling Unauthenticated Root Access

Cisco on Monday updated its advisory of a set of recently disclosed security flaws in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) to acknowledge active exploitation. &a ...

Continue Reading
EUVD-2025-22313

An authorization bypass vulnerability exists in ETQ Reliance (legacy CG and NXG SaaS platforms). By appending a specific URI suffix to certain API endpoints, an unauthenticated attacker can bypass acc ...

Continue Reading

Back to Main

Subscribe for the latest news: