A vulnerability has been found in MongoDB Server up to 7.0.21/8.0.9 and classified as problematic. Affected by this issue is some unknown functionality of the component KMIP Response Parser. This manipulation causes improper check for unusual conditions.
This vulnerability is handled as CVE-2025-12657. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability described as critical has been identified in Microsoft Windows. The affected element is an unknown function of the component StateRepository API Server. Such manipulation leads to missing authentication.
This vulnerability is listed as CVE-2025-53789. The attack must be carried out locally. There is no available exploit.
Applying a patch is advised to resolve this issue.
A vulnerability was found in Microsoft Windows Server 2025. It has been rated as critical. Affected by this issue is some unknown functionality of the component Kerberos. Performing manipulation results in relative path traversal.
This vulnerability was named CVE-2025-53779. The attack may be initiated remotely. There is no available exploit.
To fix this issue, it is recommended to deploy a patch.
A vulnerability has been found in Microsoft Windows Security App and classified as problematic. This affects an unknown function. The manipulation leads to file inclusion.
This vulnerability is traded as CVE-2025-53769. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component NTLM. Such manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2025-53778. The attack can be launched remotely. No exploit exists.
A patch should be applied to remediate this issue.
A vulnerability labeled as critical has been found in Microsoft Windows. This impacts an unknown function of the component Push Notifications Apps. Such manipulation leads to type confusion.
This vulnerability is listed as CVE-2025-53726. The attack must be carried out locally. There is no available exploit.
A patch should be applied to remediate this issue.
A vulnerability identified as critical has been detected in Microsoft Windows. This affects an unknown function of the component Push Notifications Apps. This manipulation causes type confusion.
This vulnerability is tracked as CVE-2025-53725. The attack is restricted to local execution. No exploit exists.
It is suggested to install a patch to address this issue.
A vulnerability, which was classified as very critical, was found in Microsoft Windows. The impacted element is an unknown function of the component GDI+. Executing manipulation can lead to heap-based buffer overflow.
This vulnerability appears as CVE-2025-53766. The attack may be performed from remote. There is no available exploit.
It is best practice to apply a patch to resolve this issue.
A vulnerability categorized as critical has been discovered in Microsoft Windows. The impacted element is an unknown function of the component Push Notifications Apps. The manipulation results in type confusion.
This vulnerability is identified as CVE-2025-53724. The attack is only possible with local access. There is not any exploit available.
Applying a patch is advised to resolve this issue.
A vulnerability was found in Microsoft Windows. It has been rated as critical. The affected element is an unknown function of the component Hyper-V. The manipulation leads to numeric truncation error.
This vulnerability is referenced as CVE-2025-53723. The attack can only be performed from a local environment. No exploit is available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows. It has been declared as critical. Impacted is an unknown function of the component Remote Desktop Services. Executing manipulation can lead to resource consumption.
The identification of this vulnerability is CVE-2025-53722. The attack may be launched remotely. There is no exploit available.
It is best practice to apply a patch to resolve this issue.
A vulnerability was found in Walter Pinem OneClick Chat to Order Plugin up to 1.0.8 on WordPress. It has been rated as problematic. Impacted is the function wa_order_thank_you_override of the component Customer Information Handler. The manipulation leads to improper control of resource identifiers.
This vulnerability is referenced as CVE-2025-13526. Remote exploitation of the attack is possible. No exploit is available.
3-Year Espionage Campaign Targeted Taiwanese Firms Chinese nation-state group APT24 targeted multiple Taiwanese companies as part of an espionage operation that went undetected for three years. The hacking group continually updated its malware infrastructure and tactics, enabling it to stay under the radar, Google Cloud said.
A vulnerability was found in Oracle Utilities Framework 4.3.0.6.0/4.4.0.0.0/4.4.0.2.0/4.4.0.3.0. It has been rated as critical. The impacted element is an unknown function of the component General. This manipulation causes improper input validation.
This vulnerability is registered as CVE-2021-44832. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
A vulnerability described as critical has been identified in Oracle Communications BRM - Elastic Charging Engine. This issue affects some unknown processing of the component Charging Server. Such manipulation leads to improper input validation.
This vulnerability is referenced as CVE-2021-44832. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.