Aggregator
CVE-2025-55469 | youlai-boot 2.21.1 Administrator Backend access control
CVE-2025-53939 | Kiteworks Core up to 9.0.x Shared Folder permission (GHSA-hpf5-6376-2565 / EUVD-2025-199894)
CVE-2025-64715 | Cilium up to 1.16.16/1.17.9/1.18.3 CiliumNetworkPolicys toCIDRset access control (GHSA-38pp-6gcp-rqvm / EUVD-2025-199886)
CVE-2025-12848 | Webform Multiple File Upload Module 7.x on Drupal Multifile cross site scripting (CNNVD-202511-2925)
CVE-2025-66028 | oneuptime up to 8.0.5566 Login Response Manipulation isMasterAdmin access control (EUVD-2025-199750)
CVE-2025-65966 | oneuptime 9.0.5598 API Request improper authorization (EUVD-2025-199748)
CVE-2025-65675 | Classroomio LMS 0.1.13 SVG Profile Picture cross site scripting (EUVD-2025-199751)
React.js Hit by Maximum-Severity 'React2Shell' Vulnerability
SecWiki News 2025-12-05 Review
CVE-2024-37133 | Dell PowerScale OneFS up to 9.8.0.0 privileges management (dsa-2024-255 / Nessus ID 277545)
CVE-2024-37126 | Dell PowerScale OneFS up to 9.7.0.0/9.7.0.2/9.7.0.3/9.8.0.0 privileges management (dsa-2024-255 / Nessus ID 277544)
CVE-2024-37134 | Dell PowerScale OneFS up to 9.5.0.8/9.7.0.0/9.7.0.2/9.7.0.3/9.8.0.0 privileges assignment (dsa-2024-255 / Nessus ID 277545)
CVE-2024-32854 | Dell PowerScale OneFS up to 9.5.0.8/9.7.0.0/9.7.0.2/9.7.0.3/9.8.0.0 privileges management (dsa-2024-255 / Nessus ID 277545)
CVE-2024-32852 | Dell PowerScale OneFS up to 9.5.0.8/9.7.0.0 risky encryption (dsa-2024-255 / Nessus ID 277546)
MuddyWater Hackers Using UDPGangster Backdoor to Attack Windows Systems Evading Network Defenses
A sophisticated cyber threat has emerged targeting Windows systems across multiple countries in the Middle East. UDPGangster, a UDP-based backdoor, represents a dangerous new weapon in the arsenal of the MuddyWater threat group, known for conducting cyber espionage operations throughout the Middle East and neighboring regions. This malware gives attackers complete remote control over compromised […]
The post MuddyWater Hackers Using UDPGangster Backdoor to Attack Windows Systems Evading Network Defenses appeared first on Cyber Security News.
Hyundai запускает армию роботов-грузчиков с мозгами Tesla: MobED носит 57 кг, работает 4 часа… и выходит в 2026 году
Cloudflare Outage Traced to Emergency React2Shell Patch Deployment
Cloudflare’s global network suffered a brief but widespread disruption this morning, lasting approximately 25 minutes, due to an internal change in its Web Application Firewall (WAF) designed to counter a critical vulnerability in React Server Components. The incident, which began around 8:47 GMT, affected the Cloudflare Dashboard, APIs, and proxied services, causing 500 Internal Server […]
The post Cloudflare Outage Traced to Emergency React2Shell Patch Deployment appeared first on Cyber Security News.