Aggregator
Submit #661155: campcodes Online Learning Management System V1.0 SQL injection [Accepted]
Submit #660855: campcodes Online Learning Management System V1.0 SQL injection [Accepted]
Submit #660854: campcodes Online Learning Management System V1.0 SQL injection [Accepted]
Submit #659993: code-projects Project Monitoring System 1.0 SQL Injection [Accepted]
Submit #659933: Ruijie RG-EW5100BE - EW_3.0B11P280_EW5100BE-PRO_12183019 - Command Injection [Accepted]
CVE-2025-11071 | SeaCMS 13.3.20250820 Cron Task Management /admin_cron.php resourcefrom/collectID sql injection (EUVD-2025-31434)
New COLDRIVER Malware Campaign Joins BO Team and Bearlyfy in Russia-Focused Cyberattacks
New COLDRIVER Malware Campaign Joins BO Team and Bearlyfy in Russia-Focused Cyberattacks
Submit #659883: SeaCMS v13.3.20250820 SQL Injection [Accepted]
CVE-2025-11060 | Red Hat OpenShift Service Mesh 3 LIVE SELECT Subscription authorization
CVE-2025-9267 | Seagate Toolkit 2.34.0.33 on Windows uncontrolled search path
Submit #659875: SeaCms v13.3.20250820 Remote Code Execution [Duplicate]
Apache Airflow Vulnerability Lets Read-Only Users Access Sensitive Data
Apache Airflow maintainers have disclosed a serious security issue, tracked as CVE-2025-54831, that allows users holding only read permissions to view sensitive connection details via both the Airflow API and web interface. The vulnerability, present in Airflow version 3.0.3, undermines the platform’s intended “write-only” treatment of secrets in Connections and could lead to unauthorized exposure […]
The post Apache Airflow Vulnerability Lets Read-Only Users Access Sensitive Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Submit #659853: SeaCms v13.3.20250820 Code Injection [Duplicate]
Neon App pays users to record their phone calls, sells data for AI training
As fraud surges, UK prepares to replace its broken reporting service
Слежка, прослушка, скриншоты? Исследование показало, как на самом деле MAX работает с камерой, микрофоном и геолокацией на Android и iOS
Salesforce Faces Lawsuits Over Compromises of Third-Party Apps: Report
Salesforce is facing a possible class action lawsuit from almost two dozen plaintiffs who say the SaaS giant should have had better security around its platform, even though a spate of high-profile data-stealing attacks on third-party partners did not start with a breach of its systems.
The post Salesforce Faces Lawsuits Over Compromises of Third-Party Apps: Report appeared first on Security Boulevard.