Aggregator
CVE-2025-2825 | CrushFTP up to 10.8.3/11.3.0 HTTP Request improper authentication
CVE-2025-28942 | Trust Payments Gateway for WooCommerce Plugin up to 1.1.4 on WordPress sql injection
CVE-2025-26869 | Build Plugin up to 1.0.3 on WordPress cross site scripting
CVE-2025-28858 | Arrow Plugins Arrow Maps Plugin up to 1.0.9 on WordPress cross site scripting
CVE-2025-28865 | lionelroux WP Colorful Tag Cloud Plugin up to 2.0.1 on WordPress cross site scripting
CVE-2025-28855 | Teleport Plugin up to 1.2.4 on WordPress cross site scripting
CVE-2025-2820 | Bizerba GLx/CWx up to 16.19 resource consumption
CVE-2025-26747 | 99colorthemes RainbowNews Plugin up to 1.0.7 on WordPress cross site scripting
CVE-2025-26739 | themefunction newseqo Plugin up to 2.1.1 on WordPress cross site scripting
CVE-2025-27406 | Icinga icingaweb2-module-reporting up to 1.0.2 Setting cross site scripting
CVE-2025-2819 | Bizerba GT-SoftControl up to 5.x unrestricted upload
CVE-2025-2098 | Beijing Honghu Yuntu Fast CAD Reader up to 4.1.5 File Permission privileges assignment
CVE-2025-27404 | Icinga icingaweb2 up to 2.11.4/2.12.2 Setting cross site scripting (GHSA-c6pg-h955-wf66)
CVE-2025-27405 | Icinga icingaweb2 up to 2.11.4/2.12.2 Setting cross site scripting
Claude is testing ChatGPT-like Deep Research feature Compass
御辰:论攻击面管理在高校信息化建设中的重要性
PolarDB分布式版V2.0:安全可靠的集中分布式一体化数据库管理软件
Top 3 Cyber Attacks In March 2025
March 2025 saw a sharp uptick in cyber threats that put both individual users and organizations at risk. From banking apps weaponized to steal personal data, to trusted domains abused for redirecting users to phishing traps, cybercriminals didn’t hold back. Their tactics are growing more creative and more dangerous. Here’s a breakdown of the three […]
The post Top 3 Cyber Attacks In March 2025 appeared first on Cyber Security News.
YouTube Creators Under Attack via Brand Collaborators Requests Using Clickflix Technique
A sophisticated phishing campaign dubbed the “Clickflix Technique” has emerged targeting YouTube content creators through seemingly legitimate brand collaboration requests. This new attack vector exploits creators’ eagerness to secure sponsorship deals by disguising malware payloads as partnership documentation. Cybercriminals initiate contact via email or social media, posing as marketing representatives from established brands offering lucrative […]
The post YouTube Creators Under Attack via Brand Collaborators Requests Using Clickflix Technique appeared first on Cyber Security News.