Aggregator
CVE-2023-5217 | Google Chrome up to 117.0.5938.62 libvpx heap-based overflow
CVE-2023-41446 | phpkobo AjaxNewTicker 1.0.5 index.php Title cross site scripting
CVE-2023-41447 | phpkobo AjaxNewTicker 1.0.5 index.php subcmd cross site scripting
CVE-2023-43874 | e017 CMS 2.3.2 Meta/Custom Tags Menu Copyright/Author cross site scripting
CVE-2023-5273 | SourceCodester Best Courier Management System 1.0 manage_parcel_status.php ID cross site scripting
CVE-2023-5077 | Hashicorp Vault/Vault Enterprise up to 1.12.x Google Cloud Secrets Engine permission assignment
CVE-2023-43879 | Rite CMS 3.0 Administration Menu cross site scripting
CVE-2023-3906 | GitLab Enterprise Edition Asset proxy access control (Issue 419213)
Submit #556275: markparticle WebServer 1.0 SQL Injection [Accepted]
Submit #556274: markparticle WebServer 1.0 SQL Injection [Accepted]
Submit #556273: markparticle WebServer 1.0 Arbitrary Memory Writing [Accepted]
《软件安全市场需求报告》(2025年)
《软件安全市场需求报告》(2025年)
Industry First: StrikeReady AI Platform Moves Security Teams Beyond Basic, One-Dimensional AI-Driven Triage Solutions
Brings Automated Response to Your Assets, Identity, Vulnerabilities, Alerts, and More to Redefine Risk Prioritization. For years, security teams have operated in reactive mode, contending with siloed tools, fragmented intelligence, and a never-ending backlog of alerts. Traditional Security Operations platforms were supposed to unify data and streamline response—but they often introduced their own complexity, requiring […]
The post Industry First: StrikeReady AI Platform Moves Security Teams Beyond Basic, One-Dimensional AI-Driven Triage Solutions appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-3843 | panhainan DS-Java 1.0 cross-site request forgery
CVE-2025-3842 | panhainan DS-Java 1.0 FileUpload.java uploadUserPic.action fileUpload code injection
RedGolf Hackers Linked to Fortinet Zero-Day Exploits and Cyber Attack Tools
Security researchers have linked the notorious RedGolf hacking group to a wave of exploits targeting Fortinet firewall zero-days and the deployment of custom cyber attack tools. The exposure of a misconfigured server tied to the KeyPlug malware—a hallmark of RedGolf operations—has granted security analysts a rare, unvarnished look into the workflows, tooling, and priorities of […]
The post RedGolf Hackers Linked to Fortinet Zero-Day Exploits and Cyber Attack Tools appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.