Aggregator
CVE-2025-46881 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48 / Nessus ID 238053)
CVE-2025-46879 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48 / Nessus ID 238053)
CVE-2025-46880 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48 / Nessus ID 238053)
CVE-2025-46878 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48 / Nessus ID 238053)
CVE-2025-26383 | Johnson Controls iSTAR Configuration Utility up to 6.9.4 uninitialized variable (icsa-25-146-01 / EUVD-2025-18131)
CVE-2025-43578 | Adobe Acrobat Reader up to 20.005.30763/24.001.30235/25.001.20521 out-of-bounds (apsb25-57 / EUVD-2025-17823)
CVE-2025-1698 | Motorola Edge+ 2023 prior 2025-06-01 Fingerprint Sensor Service null pointer dereference (EUVD-2025-18130)
CVE-2025-1699 | Motorola g34/g34t/g45 5G prior 2025-06-01 default permission (EUVD-2025-18129)
CVE-2025-6002 | VirtueMart up to 4.4.9 Product Image Section unrestricted upload (EUVD-2025-18127)
CVE-2025-6001 | VirtueMart up to 4.4.9 Media Manager cross-site request forgery (EUVD-2025-18128)
Chairs’ statement on G7 Cybersecurity Working Group meeting
Dems want watchdog study of two troubled federally-funded vulnerability tracking initiatives
The CVE program publishes standardized information about known cyber vulnerabilities, while the NVD is a storehouse for vulnerability management data.
The post Dems want watchdog study of two troubled federally-funded vulnerability tracking initiatives appeared first on CyberScoop.
Модель нового поколения от OpenAI. O3-pro превосходит конкурентов в математике и науке, но требует больше времени
CVE-2024-37394 | REDCap 13.1.9 Project Dashboard Dashboard title/Dashboard content cross site scripting (EUVD-2024-54664)
CVE-2025-46999 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48 / EUVD-2025-17879)
CVE-2025-47080 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48 / EUVD-2025-17891)
Google Bug Allowed Brute-Forcing of Any User Phone Number
Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers
Microsoft confirmed a critical security vulnerability (CVE-2025-47176) in Microsoft Office Outlook, enabling attackers to execute arbitrary code. Despite the “Remote Code Execution” title, the attack vector is local, requiring attackers to run code from a user’s own machine. However, the potential impact remains high for organizations, as successful exploitation can compromise the confidentiality, integrity, and […]
The post Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Your Social Security Number Could be for Sale: Old AT&T Data Leak Exposes 44M SSN Numbers
If you’re an AT&T customer, now’s the time to take action. A previously reported data breach has exposed personal information...
The post Your Social Security Number Could be for Sale: Old AT&T Data Leak Exposes 44M SSN Numbers appeared first on McAfee Blog.