Aggregator
Submit #705036: OFFIS DCMTK 3.6.9 Buffer Overflow [Accepted]
CVE-2025-14606 | tiny-rdm Tiny RDM up to 1.2.5 Pickle Decoding pickle_convert.go pickle.loads deserialization
Canada’s privacy regulator to probe billboards equipped with facial scanning tech
Submit #704138: tiny-rdm Tiny RDM 1.2.5 Insecure Deserialization [Accepted]
What Tech Leaders Need to Know About MCP Authentication in 2025
MCP is transforming AI agent connectivity, but authentication is the critical gap. Learn about Shadow IT risks, enterprise requirements, and solutions.
The post What Tech Leaders Need to Know About MCP Authentication in 2025 appeared first on Security Boulevard.
Microsoft Will Bundle Security Copilot With M365 Enterprise Licenses
CVE-2025-12109 | Header Footer Script Adder Plugin up to 2.0.5 on WordPress cross site scripting
CVE-2025-12076 | Social Media Auto Publish Plugin up to 3.6.5 on WordPress PostMessage cross site scripting
CVE-2025-8779 | All-in-One Addons for Elementor Plugin up to 2.5.6 on WordPress Countdown Widget cross site scripting
CVE-2025-13705 | Custom Frames Plugin up to 1.0.1 on WordPress Shortcode customframe Class cross site scripting
CVE-2025-14378 | Quick Testimonials Plugin up to 2.1 on WordPress Setting cross site scripting
CVE-2025-9488 | Redux Framework Plugin up to 4.5.8 on WordPress data cross site scripting
CVE-2025-14394 | Popover Windows Plugin up to 1.2 on WordPress Setting cross-site request forgery
CVE-2025-12077 | WP to LinkedIn Auto Publish Plugin up to 1.9.8 on WordPress cross site scripting
CVE-2025-10289 | Filter & Grids Plugin up to 3.2.0 on WordPress phrase sql injection
CVE-2025-9873 | a3 Lazy Load Plugin up to 2.7.5 on WordPress cross site scripting
CVE-2025-11376 | Colibri Page Builder Plugin up to 1.0.335 on WordPress colibri_loop cross site scripting
Microsoft Expands its Bug Bounty Program to Include Third-Party Code
In a nod to the evolving threat landscape that comes with cloud computing and AI and the growing supply chain threats, Microsoft is broadening its bug bounty program to reward researchers who uncover threats to its users that come from third-party code, like commercial and open source software,
The post Microsoft Expands its Bug Bounty Program to Include Third-Party Code appeared first on Security Boulevard.
Funding of Israeli Cybersecurity Soars to Record Levels
Israeli cybersecurity firms raised $4.4B in 2025 as funding rounds jumped 46%. Record seed and Series A activity signals a maturing, globally dominant cyber ecosystem.
The post Funding of Israeli Cybersecurity Soars to Record Levels appeared first on Security Boulevard.