Aggregator
CVE-2025-14259 | Jihai Jshop MiniProgram Mall System 2.9.0 /index.php/api.html cat_id sql injection
CVE-2025-14258 | itsourcecode Student Management System 1.0 /newsubject.php sub sql injection
CVE-2025-14257 | itsourcecode Student Management System 1.0 /newrecord.php ID sql injection
CVE-2025-14256 | itsourcecode Student Management System 1.0 /newcurriculm.php ID sql injection
December 2025 Patch Tuesday forecast: And it’s a wrap
It’s hard to believe that we’re in December of 2025 already and the end of the year is fast approaching. Looking back on the year, there are two major items that really stand out in my mind. First, there is the large number of Microsoft products that have come to EOL/EOS near the end of this year. It seemed there was always a reason their products would get official extended support at the last minute, … More →
The post December 2025 Patch Tuesday forecast: And it’s a wrap appeared first on Help Net Security.
Submit #702613: https://www.jihainet.com Jshop MiniProgram Mall System V2.9.0 SQL Injection [Accepted]
CVE-2025-14220 | ORICO CD3510 1.9.12 File Upload path traversal
CVE-2025-14221 | SourceCodester Online Banking System 1.0 /?page=user First Name/Last Name cross site scripting
CVE-2024-52702 | MyBB 1.8.38 install\index.php Website Name cross site scripting (Issue 4859)
南非企鹅因食物短缺大规模饿死
Submit #702619: itsourcecode Student Management System V1.0 SQL Injection [Accepted]
Submit #702487: itsourcecode Student Management System V1.0 SQL Injection [Accepted]
Submit #702484: itsourcecode Student Management System V1.0 SQL Injection [Accepted]
CVE-2019-16693 | phpipam 1.4 order.php table sql injection (Issue 2738 / EDB-52453)
CVE-2019-25024 | OpenRepeater up to 2.1 ajax_system.php post_service os command injection (EDB-52452)
CISA Releases New AI-in-OT Security Guidance: Key Principles & Risks
CISA and global partners issue new guidance for secure AI integration in operational technology, highlighting risks, governance, behavioral analytics, and OT safety.
The post CISA Releases New AI-in-OT Security Guidance: Key Principles & Risks appeared first on Security Boulevard.
NVIDIA research shows how agentic AI fails under attack
Enterprises are rushing to deploy agentic systems that plan, use tools, and make decisions with less human guidance than earlier AI models. This new class of systems also brings new kinds of risk that appear in the interactions between models, tools, data sources, and memory stores. A research team from NVIDIA and Lakera AI has released a safety and security framework that tries to map these risks and measure them inside real workflows. The work … More →
The post NVIDIA research shows how agentic AI fails under attack appeared first on Help Net Security.
WannaGame Championship 2025
Date: Dec. 6, 2025, 1 a.m. — 08 Dec. 2025, 01:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.cnsc.com.vn/
Rating weight: 29.00
Event organizers: Wanna.One