Aggregator
守护电动心脏 丨 揭秘汽车BMS系统的信息安全攻防战,从电池管理到网络安全的全面解析
3 months ago
守护电动心脏 丨 揭秘汽车BMS系统的信息安全攻防战,从电池管理到网络安全的全面解析
3 months ago
守护电动心脏 丨 揭秘汽车BMS系统的信息安全攻防战,从电池管理到网络安全的全面解析
3 months ago
守护电动心脏 丨 揭秘汽车BMS系统的信息安全攻防战,从电池管理到网络安全的全面解析
3 months ago
2025 Threat Detection Report: What’s new? | Red Canary
3 months ago
Red Canary
设备买了,也有人管,怎么还是被勒索?成长型企业怎么做安全建设
3 months ago
一、我们懂,成长型企业安全建设的“难言之隐” 对于所有企业来说,安全工作有着相同的关键目标:威胁风险能提前预防 […]
深信服
行业会议 | 第六届网络空间安全前沿论坛
3 months ago
行业会议 | 第六届网络空间安全前沿论坛
3 months ago
行业会议 | 第六届网络空间安全前沿论坛
3 months ago
行业会议 | 第六届网络空间安全前沿论坛
3 months ago
行业会议 | 第六届网络空间安全前沿论坛
3 months ago
Светодиоды размером с вирус: китайские физики создают свет там, где раньше был только мрак
3 months ago
Физики преодолели оптический предел, создав пиксели меньше длины волны света.
UAT-5918: Китай создает скрытую сеть контроля на Тайване
3 months ago
Инфраструктура Тайваня под прицелом китайского кибершпионажа.
CVE-2025-2593 | FastCMS up to 0.1.5 /api/client/article/list orderBy sql injection
3 months ago
A vulnerability has been found in FastCMS up to 0.1.5 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /api/client/article/list. The manipulation of the argument orderBy leads to sql injection.
This vulnerability is known as CVE-2025-2593. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-30348 | Qt up to 5.15.18/6.5.8/6.7.x QDom encodeText algorithmic complexity
3 months ago
A vulnerability, which was classified as problematic, was found in Qt up to 5.15.18/6.5.8/6.7.x. Affected is the function encodeText of the component QDom. The manipulation leads to inefficient algorithmic complexity.
This vulnerability is traded as CVE-2025-30348. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Submit #517927: fastcms v0.1.5 SQL injection vulnerability [Duplicate]
3 months ago
Submit #517927 / VDB-300577
icefoxh
Submit #517926: fastcms v0.1.5 SQL injection vulnerability [Accepted]
3 months ago
Submit #517926 / VDB-300577
icefoxh
CVE-2025-2592 | Open Asset Import Library Assimp 5.4.3 CSMLoader.cpp InternReadFile heap-based overflow (Issue 6010)
3 months ago
A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function CSMImporter::InternReadFile of the file code/AssetLib/CSM/CSMLoader.cpp. The manipulation leads to heap-based buffer overflow.
The identification of this vulnerability is CVE-2025-2592. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-2591 | Open Asset Import Library Assimp 5.4.3 MDLLoader.cpp InternReadFile_Quake1 skinwidth/skinheight divide by zero (Issue 6009)
3 months ago
A vulnerability classified as problematic was found in Open Asset Import Library Assimp 5.4.3. This vulnerability affects the function MDLImporter::InternReadFile_Quake1 of the file code/AssetLib/MDL/MDLLoader.cpp. The manipulation of the argument skinwidth/skinheight leads to divide by zero.
This vulnerability was named CVE-2025-2591. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com