An incomplete fix has been identified for CVE-2025-23084 in Node.js, specifically affecting Windows device names like CON, PRN, and AUX. This vulnerability affects Windows users of path.join...Read M ...
Continue ReadingJuly 18, 2025
An incomplete fix has been identified for CVE-2025-23084 in Node.js, specifically affecting Windows device names like CON, PRN, and AUX. This vulnerability affects Windows users of path.join...Read M ...
Continue ReadingJuly 18, 2025
form-data boundary randomness vulnerability (CVE-2025-7783) Largely based on https://hackerone.com/reports/2913312 by https://hackerone.com/parrot409?type=user Installing: - npm install - Make sure yo ...
Continue ReadingJuly 18, 2025
An incomplete fix has been identified for CVE-2025-23084 in Node.js, specifically affecting Windows device names like CON, PRN, and AUX. This vulnerability affects Windows users of path.join...Read M ...
Continue ReadingJuly 18, 2025
RomM is a self-hosted rom manager and player. Versions prior to 3.10.3 and 4.0.0-beta.3 have an authenticated path traversal vulnerability in the /api/raw endpoint. Anyone running the latest version o ...
Continue ReadingJuly 18, 2025
creation_timestamp| type| source ---|---|--- 2025-07-18 21:02:26+00:00| seen|...Read More ...
Continue ReadingJuly 18, 2025
Summary The ConfigCommentParser#parseJSONLikeConfig API is vulnerable to a Regular Expression Denial of Service (ReDoS) attack in its only argument. Details The regular expression at packages/plugin-k ...
Continue ReadingJuly 18, 2025
OpenShift API for Data Protection (OADP) 1.4.5 is now available. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) b ...
Continue ReadingJuly 18, 2025
Back to Main