Aggregator
CVE-2025-62702 | PageTriage Extension up to 1.43 on Mediawiki cross site scripting (EUVD-2025-35129)
CVE-2025-62701 | Wikistories Extension up to 1.43 on Mediawiki cross site scripting (EUVD-2025-35136)
CVE-2025-62695 | WikiLambda Extension on Mediawiki cross site scripting (EUVD-2025-35131 / WID-SEC-2025-2341)
CVE-2025-6542 | TP-Link Systems Festa Gateway/Omada Gateway/Omada Pro Gateway Web Management Interface os command injection
CVE-2025-6541 | TP-Link Systems Festa Gateway/Omada Gateway/Omada Pro Gateway Web Management Interface os command injection
CVE-2025-7851 | TP-Link Systems Festa Gateway/Omada Gateway/Omada Pro Gateway privilege escalation
CVE-2025-7850 | TP-Link Festa Gateway/Omada Gateway/Omada Pro Gateway os command injection
CVE-2025-62699 | CheckUser Extension up to 1.38 on Mediawiki information disclosure (EUVD-2025-35133)
CVE-2025-62696 | Springboard Extension on Mediawiki command injection (EUVD-2025-35132 / WID-SEC-2025-2341)
CVE-2025-9133 | Zyxel ATP/USG FLEX/USG FLEX 50/USG20 -VPN authorization
CVE-2025-8078 | Zyxel ATP/USG FLEX/USG FLEX 50/USG20 -VPN String os command injection
CVE-2018-25118 | GeoVision GV-BX1500/GV-MFD1501 via /PictureCatch.cgi os command injection (Exploit 43982 / EDB-43982)
CVE-2025-59282
お知らせ:CyberNewsFlash「WatchGuard製ファイアウォール「Firebox」のikedにおける境界外書込みの脆弱性(CVE-2025-9242)について」
窃取加密货币的恶意VSCode插件在OpenVSX平台再度出现
窃取加密货币的恶意VSCode插件在OpenVSX平台再度出现
OTW - Bandit Level 7 to Level 8
When everything’s connected, everything’s at risk
In this Help Net Security interview, Ken Deitz, CISO at Brown & Brown, discusses how the definition of cyber risk has expanded beyond IT to include IoT, OT, and broader supply chain ecosystems. As organizations connect these assets through cloud and networked systems, the attack surface and dependencies have multiplied. Deitz also shares strategies for managing risk through visibility, segmentation, and resilient recovery planning. From your perspective, how have the boundaries of “cyber risk” expanded … More →
The post When everything’s connected, everything’s at risk appeared first on Help Net Security.
When the Backbone Breaks: Why the F5 Breach is a Five-Alarm Fire
Alan warns that the F5 breach — involving stolen source code, unpatched vulnerabilities, and customer configurations — is a five-alarm crisis for digital infrastructure. The attack exposes national security risks, vendor concentration dangers, and the fragility of our IT foundations.
The post When the Backbone Breaks: Why the F5 Breach is a Five-Alarm Fire appeared first on Security Boulevard.