Aggregator
CVE-2025-13571 | code-projects Simple Food Ordering System 1.0 /listorder.php ID sql injection (EUVD-2025-198589)
Submit #698495: Code-Projects Simple Food Ordering System 1.0 SQL Injection [Accepted]
Submit #698502: itsourcecode Baptism Information Management System In PHP 1.0 SQL injection [Duplicate]
Submit #698494: itsourcecode Baptism Information Management System In PHP 1.0 SQL injection [Duplicate]
CVE-2025-13570 | itsourcecode COVID Tracking System 1.0 /admin/?page=state sql injection (EUVD-2025-198588)
CVE-2025-13569 | itsourcecode COVID Tracking System 1.0 /admin/?page=city sql injection (EUVD-2025-198586)
CVE-2025-13568 | itsourcecode COVID Tracking System 1.0 /admin/?page=people sql injection (EUVD-2025-198587)
CVE-2025-13567 | itsourcecode COVID Tracking System 1.0 ?page=establishment sql injection (EUVD-2025-198584)
Submit #698656: itsourcecode COVID Tracking System V1.0 SQL Injection [Accepted]
Submit #698655: itsourcecode COVID Tracking System V1.0 SQL Injection [Accepted]
Submit #698117: itsourcecode COVID Tracking System V1.0 SQL Injection [Accepted]
Submit #698116: itsourcecode COVID Tracking System V1.0 SQL Injection [Accepted]
WhatsApp API flaw let researchers scrape 3.5 billion accounts
Salesforce: Some Customer Data Accessed via Gainsight Breach
An attack on the app of CRM platform-provider Gainsight led to the data of hundreds of Salesforce customers being compromised, highlighting the ongoing threats posed by third-party software in SaaS environments and illustrating how one data breach can lead to others, cybersecurity pros say.
The post Salesforce: Some Customer Data Accessed via Gainsight Breach appeared first on Security Boulevard.
CVE-2025-13566 | jarun nnn up to 5.1 nnn/src/nnn.c show_content_in_floating_window/run_cmd_as_plugin double free (Issue 2091 / EUVD-2025-198585)
CVE-2025-13565 | SourceCodester Inventory Management System 1.0 resetPassword.php password recovery (EUVD-2025-198582)
Submit #698113: nnn v5.1 Double Free [Accepted]
Saturday Security: Zero-Day Logitech Breach Exposes 1.8TB of Data
Logitech, a prominent PC accessories brand, has recently confirmed a major data breach after cybercriminals exploited a zero-day vulnerability in a third-party platform. While Logitech assures that exposed data was limited and credit card numbers, as well as national IDs, were not stored on the impacted systems, the situation remains concerning. The notorious Clop ransomware […]
The post Saturday Security: Zero-Day Logitech Breach Exposes 1.8TB of Data appeared first on Security Boulevard.