CVE-2025-54382 Cherry Studio RCE Vulnerability Disclosure

Cherry Studio is a desktop client that supports for multiple LLM providers. In version 1.5.1, a remote code execution (RCE) vulnerability exists in the Cherry Studio platform when connecting to stream ...

Continue Reading
GO-2025-3822 Authentik has insufficient check for account active status when authenticating with OAuth/SAML Sources in goauthentik.io

Authentik has insufficient check for account active status when authenticating with OAuth/SAML Sources in goauthentik.io. NOTE: The source advisory for this report contains additional versions that co ...

Continue Reading
Open Redirect Vulnerability

Summary In the latest version 6.0.0, the OAuth logout functionality performs a URL redirect action when clearing tokens. However, this parameter is user-controllable and lacks security validation, all ...

Continue Reading
CVE-2025-8737

A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affects the function onLogoutSuccess of the file src/main/java/com/central/oauth/han ...

Continue Reading
PT-2025-32408 · Unknown · Zlt2000 Microservices-Platform

Name of the Vulnerable Software and Affected Versions: zlt2000 microservices-platform versions through 6.0.0 Description: A problematic issue exists in zlt2000 microservices-platform. The issue is rel ...

Continue Reading
CVE-2025-47907 vulnerabilities

Vulnerabilities for packages: rqlite-fips, amass, cilium, direnv, supercronic, gobump, cluster-api-ipam-provider-in-cluster, amazon-ssm-agent-fips, crossplane-provider-gcp, skopeo, conjur-cli, openbao ...

Continue Reading
GHSA-J5PM-7495-QMR3 vulnerabilities

Vulnerabilities for packages: rqlite-fips, amass, cilium, direnv, supercronic, gobump, cluster-api-ipam-provider-in-cluster, amazon-ssm-agent-fips, crossplane-provider-gcp, skopeo, conjur-cli, openbao ...

Continue Reading
GHSA-J5PM-7495-QMR3 vulnerabilities

Vulnerabilities for packages: ini-file, kiali, buildkitd, ytt, fixuid, flux, aws-node-termination-handler, victoriametrics-cluster, gotestsum, cargobump, git-credential-oauth, cilium, bom, licenseclas ...

Continue Reading

Back to Main

Subscribe for the latest news: