Aggregator
CVE-2025-48242 | wpWax Legal Pages Plugin up to 1.4.5 on WordPress authorization
CVE-2025-48344 | ed4becky Rootspersona Plugin up to 3.7.5 on WordPress cross-site request forgery
CVE-2025-48233 | affmngr Affiliates Manager Google reCAPTCHA Integration Plugin cross-site request forgery
CVE-2025-48235 | Bogdan Bendziukov WP Image Mask Plugin up to 3.1.2 on WordPress cross site scripting
CVE-2025-48234 | Ultimate Blocks Plugin up to 3.3.0 on WordPress cross site scripting
CVE-2025-48232 | Xpro Addons for Beaver Builder Plugin up to 1.5.5 on WordPress cross site scripting
CVE-2025-48341 | 10Web Form Maker Plugin up to 1.15.33 on WordPress cross site scripting
CVE-2025-48342 | RedefiningTheWeb Dynamic Pricing & Discounts Lite for WooCommerce Plugin cross-site request forgery
CVE-2025-43714 | ChatGPT System up to 2025-03-30 SVG Document cross site scripting
CVE-2025-48346 | Etsy360 Embed and Integrate Etsy Shop Plugin up to 1.0.4 on WordPress authorization
CVE-2024-55063 | EasyVirt DC NetScope up to 8.7.0 Setting code injection
CVE-2024-51106 | PHPGurukul Medical Card Generation System 1.0 /admin/aboutus.php pagetitle cross site scripting
Windows远程桌面网关UAF漏洞允许远程代码执行
护航大模型应用安全,360助力能源行业新质生产力发展
UK Legal Aid Agency confirms applicant data stolen in data breach
19th May – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 19th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Fashion giant Dior confirmed a data breach that exposed customer information from its Fashion and Accessories line. The leaked data includes names, gender, phone numbers, email addresses, postal addresses, and purchase history […]
The post 19th May – Threat Intelligence Report appeared first on Check Point Research.
Google Reveals Hackers Targeting US Following UK Retailer Attacks
The Google Threat Intelligence Group (GTIG) recently revealed that the well-known hacker collective UNC3944, which also overlaps with the widely publicized Scattered Spider, is a persistent and dynamic cyberthreat. Initially focused on telecommunications for SIM swap operations, UNC3944 has since pivoted to ransomware and data theft extortion tactics since early 2023, casting a wider net […]
The post Google Reveals Hackers Targeting US Following UK Retailer Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
RCE Vulnerability Found in RomethemeKit For Elementor Plugin
BSidesLV24 – GroundFloor – Prepare For The Apocalypse – Exposing Shadow And Zombie APIs
Author/Presenter: Amit Srour
Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel.
The post BSidesLV24 – GroundFloor – Prepare For The Apocalypse – Exposing Shadow And Zombie APIs appeared first on Security Boulevard.