GHSA-XJ5P-8H7G-76M7 @translated/lara-mcp vulnerable to command injection in import_tmx tool

Summary A command injection vulnerability exists in the @translated/lara-mcp MCP Server. The vulnerability is caused by the unsanitized use of input parameters within a call to child_process.exec, ena ...

Continue Reading
CVE-2025-54082 nova-tiptap has an Unauthenticated Arbitrary File Upload Vulnerability

marshmallow-packages/nova-tiptap is a rich text editor for Laravel Nova based on tiptap. Prior to 5.7.0, a vulnerability was discovered in the marshmallow-packages/nova-tiptap Laravel Nova package tha ...

Continue Reading
CVE-2025-7344 Digiwin|EAI – Privilege Escalation

The EAI developed by Digiwin has a Privilege Escalation vulnerability, allowing remote attackers with regular privileges to elevate their privileges to administrator level via a specific...Read More ...

Continue Reading
CVE-2025-54082 nova-tiptap has an Unauthenticated Arbitrary File Upload Vulnerability

marshmallow-packages/nova-tiptap is a rich text editor for Laravel Nova based on tiptap. Prior to 5.7.0, a vulnerability was discovered in the marshmallow-packages/nova-tiptap Laravel Nova package tha ...

Continue Reading
CVE-2025-49656

creation_timestamp| type| source ---|---|--- 2025-07-21 10:52:48+00:00| seen| https://seclists.org/oss-sec/2025/q3/53 2025-07-21 13:27:50+00:00| seen|...Read More ...

Continue Reading
K000152655: Apache Commons vulnerability CVE-2025-48734

Security Advisory Description Improper Access Control vulnerability in Apache Commons. A special BeanIntrospector class was added in version 1.9.2. This can be used to stop attackers from using the de ...

Continue Reading
NCSC-2025-0233

creation_timestamp| type| source ---|---|--- 2025-07-21 13:16:31+00:00| confirmed|...Read More ...

Continue Reading
CVE-2025-50151

creation_timestamp| type| source ---|---|--- 2025-07-21 10:55:43+00:00| seen| https://seclists.org/oss-sec/2025/q3/54 2025-07-21 13:22:48+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: