THREAT OPS › Threat News
Threat Intelligence News
12253 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- [NVD] CVE-2026-0765 — Rejected reason: Open WebU's investigation further investigation showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.opnvd · 2026-01-23
- Pwn2Own Automotive 2026 - Day Three Results and the Master of Pwnzdi_blog · 2026-01-23
- [NVD] CVE-2026-23760 (CRITICAL 9.8) — SmarterTools SmarterMail versions prior to build 9511 contain an authentication bypass vulnerability in the password reset API. The force-reset-password endpoint permits anonymous requests and fails to verify the existing password or a reset token when resetting system administranvd · 2026-01-22
- [NVD] CVE-2026-24332 (MEDIUM 4.3) — Discord through 2026-01-16 allows gathering information about whether a user's client state is Invisible (and not actually offline) because the response to a WebSocket API request includes the user in the presences array (with "status": "offline"), whereas offline users are omittnvd · 2026-01-22
- [NVD] CVE-2026-24049 (HIGH 7.1) — wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filnvd · 2026-01-22
- [NVD] CVE-2025-13465 (MEDIUM 5.3) — Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions. An attacker can pass crafted paths which cause Lodash to delete methods from global prototypes. The issue permits deletion of properties but does not allow overwritinnvd · 2026-01-21
- [NVD] CVE-2025-13878 (HIGH 7.5) — Malformed BRID/HHIT records can cause `named` to terminate unexpectedly. This issue affects BIND 9 versions 9.18.40 through 9.18.43, 9.20.13 through 9.20.17, 9.21.12 through 9.21.16, 9.18.40-S1 through 9.18.43-S1, and 9.20.13-S1 through 9.20.17-S1.nvd · 2026-01-21
- [NVD] CVE-2026-21962 (CRITICAL 10.0) — Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS). Supported versions that are affected are 12.2.1.4.0, 14.1.1nvd · 2026-01-20
- [NVD] CVE-2025-56005 (CRITICAL 9.8) — An undocumented and unsafe feature in the PLY (Python Lex-Yacc) library 3.11 allows Remote Code Execution (RCE) via the `picklefile` parameter in the `yacc()` function. This parameter accepts a `.pkl` file that is deserialized with `pickle.load()` without validation. Because `picnvd · 2026-01-20
- Introducing VulHunt: A High-Level Look at Binary Vulnerability Detectionbinarly · 2026-01-20
- [NVD] CVE-2026-23950 (HIGH 8.8) — node-tar,a Tar for Node.js, has a race condition vulnerability in versions up to and including 7.5.3. This is due to an incomplete handling of Unicode path collisions in the `path-reservations` system. On case-insensitive or normalization-insensitive filesystems (such as macOS APnvd · 2026-01-20
- [NVD] CVE-2026-22797 (CRITICAL 9.9) — An issue was discovered in OpenStack keystonemiddleware 10.5 through 10.7 before 10.7.2, 10.8 and 10.9 before 10.9.1, and 10.10 through 10.12 before 10.12.1. The external_oauth2_token middleware fails to sanitize incoming authentication headers before processing OAuth 2.0 tokens.nvd · 2026-01-19
- [NVD] CVE-2026-23745 (MEDIUM 6.1) — node-tar is a Tar for Node.js. The node-tar library (<= 7.5.2) fails to sanitize the linkpath of Link (hardlink) and SymbolicLink entries when preservePaths is false (the default secure behavior). This allows malicious archives to bypass the extraction root restriction, leading tnvd · 2026-01-16
- [NVD] CVE-2026-23490 (HIGH 7.5) — pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.nvd · 2026-01-16
- New Infostealer Campaign Targets Users via Spoofed Software Installersvirustotal_blog · 2026-01-16
- [NVD] CVE-2026-0992 (LOW 2.9) — A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability occurs when processing XML catalogs that contain repeated <nextCatalog> elements pointing to the same downstream catalog. A remote attacker can exploit this by supplying crafted catalogsnvd · 2026-01-15
- [NVD] CVE-2026-0990 (MEDIUM 5.9) — A flaw was found in libxml2, an XML parsing library. This uncontrolled recursion vulnerability occurs in the xmlCatalogXMLResolveURI function when an XML catalog contains a delegate URI entry that references itself. A remote attacker could exploit this configuration-dependent issnvd · 2026-01-15
- [NVD] CVE-2026-0989 (LOW 3.7) — A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursinvd · 2026-01-15
- [NVD] CVE-2026-0976 (LOW 3.7) — A flaw was found in Keycloak. This improper input validation vulnerability occurs because Keycloak accepts RFC-compliant matrix parameters in URL path segments, while common reverse proxy configurations may ignore or mishandle them. A remote attacker can craft requests to mask panvd · 2026-01-15
- Minting Next.js Authentication Cookiesembracethered · 2026-01-15
- A 0-click exploit chain for the Pixel 9 Part 3: Where do we go from here?project_zero · 2026-01-14
- A 0-click exploit chain for the Pixel 9 Part 2: Cracking the Sandbox with a Big Waveproject_zero · 2026-01-14
- A 0-click exploit chain for the Pixel 9 Part 1: Decoding Dolbyproject_zero · 2026-01-14
- [NVD] CVE-2025-71142 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: cpuset: fix warning when disabling remote partition A warning was triggered as follows: WARNING: kernel/cgroup/cpuset.c:1651 at remote_partition_disable+0xf7/0x110 RIP: 0010:remote_partition_disable+0xf7/0x110nvd · 2026-01-14
- [NVD] CVE-2026-0716 (MEDIUM 4.8) — A flaw was found in libsoup’s WebSocket frame processing when handling incoming messages. If a non-default configuration is used where the maximum incoming payload size is unset, the library may read memory outside the intended bounds. This can cause unintended memory exposure ornvd · 2026-01-13
- [NVD] CVE-2026-21303 (MEDIUM 5.5) — Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user intnvd · 2026-01-13
- [NVD] CVE-2026-21302 (MEDIUM 5.5) — Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user intnvd · 2026-01-13
- [NVD] CVE-2026-21301 (MEDIUM 5.5) — Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-01-13
- [NVD] CVE-2026-21300 (MEDIUM 5.5) — Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-01-13
- [NVD] CVE-2026-21299 (HIGH 7.8) — Substance3D - Modeler versions 1.22.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious filnvd · 2026-01-13
- [NVD] CVE-2026-21298 (HIGH 7.8) — Substance3D - Modeler versions 1.22.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious filnvd · 2026-01-13
- [NVD] CVE-2026-21308 (MEDIUM 5.5) — Substance3D - Designer versions 15.0.3 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user innvd · 2026-01-13
- [NVD] CVE-2026-21307 (HIGH 7.8) — Substance3D - Designer versions 15.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious finvd · 2026-01-13
- [NVD] CVE-2026-21306 (HIGH 7.8) — Substance3D - Sampler versions 5.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious filenvd · 2026-01-13
- [NVD] CVE-2026-21305 (HIGH 7.8) — Substance3D - Painter versions 11.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious filnvd · 2026-01-13
- [NVD] CVE-2026-21287 (HIGH 7.8) — Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-01-13
- [NVD] CVE-2026-21304 (HIGH 7.8) — InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicinvd · 2026-01-13
- [NVD] CVE-2026-21288 (MEDIUM 5.5) — Illustrator versions 29.8.3, 30.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to services. Exploitation of this issnvd · 2026-01-13
- [NVD] CVE-2026-21283 (HIGH 7.8) — Bridge versions 15.1.2, 16.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-01-13
- [NVD] CVE-2026-21281 (HIGH 7.8) — InCopy versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-01-13
- [NVD] CVE-2026-21280 (HIGH 8.6) — Illustrator versions 29.8.3, 30.0 and earlier are affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses a search path to locate critical resources such as programs, an attacker nvd · 2026-01-13
- [NVD] CVE-2026-21278 (MEDIUM 5.5) — InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of this issue requires user intenvd · 2026-01-13
- [NVD] CVE-2026-21277 (HIGH 7.8) — InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicinvd · 2026-01-13
- [NVD] CVE-2026-21276 (HIGH 7.8) — InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a nvd · 2026-01-13
- [NVD] CVE-2026-21275 (HIGH 7.8) — InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a nvd · 2026-01-13
- [NVD] CVE-2026-21274 (HIGH 7.8) — Dreamweaver Desktop versions 21.6 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could leverage this vulnerability to bypass security measures and execute unauthorinvd · 2026-01-13
- [NVD] CVE-2026-21272 (HIGH 8.6) — Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system write. An attacker could leverage this vulnerability to manipulate or inject malicious data into files on the system. Exploitation of nvd · 2026-01-13
- [NVD] CVE-2026-21271 (HIGH 8.6) — Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious fnvd · 2026-01-13
- [NVD] CVE-2026-21268 (HIGH 8.6) — Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious fnvd · 2026-01-13
- [NVD] CVE-2026-21267 (HIGH 8.6) — Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an attacker. Exploitation of this issue requires user interactinvd · 2026-01-13
- [NVD] CVE-2025-25249 (HIGH 8.1) — A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4 all versions, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 alnvd · 2026-01-13
- [NVD] CVE-2025-68794 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: iomap: adjust read range correctly for non-block-aligned positions iomap_adjust_read_range() assumes that the position and length passed in are block-aligned. This is not always the case however, as shown in thnvd · 2026-01-13
- [NVD] CVE-2025-68781 — In the Linux kernel, the following vulnerability has been resolved: usb: phy: fsl-usb: Fix use-after-free in delayed work during device removal The delayed work item otg_event is initialized in fsl_otg_conf() and scheduled under two conditions: 1. When a host controller binds tnvd · 2026-01-13
- [NVD] CVE-2025-12548 (CRITICAL 9.0) — A flaw was found in Eclipse Che che-machine-exec. This vulnerability allows unauthenticated remote arbitrary command execution and secret exfiltration (SSH keys, tokens, etc.) from other users' Developer Workspace containers, via an unauthenticated JSON-RPC / websocket API exposenvd · 2026-01-13
- [NVD] CVE-2025-15514 (HIGH 7.5) — Ollama 0.11.5-rc0 through current version 0.13.5 contain a null pointer dereference vulnerability in the multi-modal model image processing functionality. When processing base64-encoded image data via the /api/chat endpoint, the application fails to validate that the decoded datanvd · 2026-01-12
- [NVD] CVE-2026-22029 (HIGH 8.0) — React Router is a router for React. In @remix-run/router version prior to 1.23.2 and react-router 7.0.0 through 7.11.0, React Router (and Remix v1/v2) SPA open navigation redirects originating from loaders or actions in Framework Mode, Data Mode, or the unstable RSC modes can resnvd · 2026-01-10
- [NVD] CVE-2026-22244 (HIGH 7.2) — OpenMetadata is a unified metadata platform. Versions 1.5.0 through 1.11.3 are vulnerable to remote code execution via Server-Side Template Injection (SSTI) in FreeMarker email templates. An attacker must have administrative privileges to exploit the vulnerability. Version 1.11.4nvd · 2026-01-08
- [NVD] CVE-2025-15079 (MEDIUM 5.3) — When doing SSH-based transfers using either SCP or SFTP, and setting the known_hosts file, libcurl could still mistakenly accept connecting to hosts *not present* in the specified file if they were added as recognized in the libssh *global* known_hosts file.nvd · 2026-01-08
- [NVD] CVE-2025-14819 (MEDIUM 5.3) — When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. Tnvd · 2026-01-08
- [NVD] CVE-2025-14524 (MEDIUM 5.3) — When an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer performs a cross-protocol redirect to a second URL that uses an IMAP, LDAP, POP3 or SMTP scheme, curl might wrongly pass on the bearer token to the new target host.nvd · 2026-01-08
- [NVD] CVE-2025-14017 (MEDIUM 6.3) — When doing multi-threaded LDAPS transfers (LDAP over TLS) with libcurl, changing TLS options in one thread would inadvertently change them globally and therefore possibly also affect other concurrently setup transfers. Disabling certificate verification for a specific transfer cnvd · 2026-01-08
- [NVD] CVE-2025-13034 (MEDIUM 5.9) — When using `CURLOPT_PINNEDPUBLICKEY` option with libcurl or `--pinnedpubkey` with the curl tool, curl should check the public key of the server certificate to verify the peer. This check was skipped in a certain condition that would then make curl allow the connection without penvd · 2026-01-08
- [NVD] CVE-2026-21441 (HIGH 7.5) — urllib3 is an HTTP client library for Python. urllib3's streaming API is designed for the efficient handling of large HTTP responses by reading the content in chunks, rather than loading the entire response body into memory at once. urllib3 can perform decoding or decompression bnvd · 2026-01-07
- [NVD] CVE-2026-22184 (HIGH 7.8) — zlib versions up to and including 1.3.1.2 include a global buffer overflow in the untgz utility located under contrib/untgz. The vulnerability is limited to the standalone demonstration utility and does not affect the core zlib compression library. The flaw occurs when a user exenvd · 2026-01-07
- [NVD] CVE-2025-67366 (HIGH 7.5) — @sylphxltd/filesystem-mcp v0.5.8 is an MCP server that provides file content reading functionality. Version 0.5.8 of filesystem-mcp contains a critical path traversal vulnerability in its "read_content" tool. This vulnerability arises from improper symlink handling in the path vanvd · 2026-01-07
- [NVD] CVE-2025-12543 (CRITICAL 9.6) — A flaw was found in the Undertow HTTP server core, which is used in WildFly, JBoss EAP, and other Java applications. The Undertow library fails to properly validate the Host header in incoming HTTP requests.As a result, requests containing malformed or malicious Host headers are nvd · 2026-01-07
- [NVD] CVE-2025-12449 (MEDIUM 5.4) — The aBlocks – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data and disclosure of sensitive information due to missing capability checks on multiple AJAX actions in all versions up to, and including, 2.4.0. This makes it possible fnvd · 2026-01-07
- [NVD] CVE-2025-69230 (MEDIUM 5.3) — AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, reading multiple invalid cookies can lead to a logging storm. If the cookies attribute is accessed in an application, then an attacker may be able to trigger a storm of wnvd · 2026-01-06
- [NVD] CVE-2025-69223 (HIGH 7.5) — AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Versions 3.13.2 and below allow a zip bomb to be used to execute a DoS against the AIOHTTP server. An attacker may be able to send a compressed request that when decompressed by AIOHTTP could exhaust nvd · 2026-01-05
- [NVD] CVE-2025-68428 (HIGH 7.5) — jsPDF is a library to generate PDFs in JavaScript. Prior to version 4.0.0, user control of the first argument of the loadFile method in the node.js build allows local file inclusion/path traversal. If given the possibility to pass unsanitized paths to the loadFile method, a user nvd · 2026-01-05
- Agentic ProbLLMs: Exploiting AI Computer-Use And Coding Agents (39C3 Video + Slides)embracethered · 2025-12-31
- [NVD] CVE-2024-58315 (HIGH 7.8) — Tosibox Key Service 3.3.0 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can exploit the service startup process by inserting malicious code in the system root path, enanvd · 2025-12-30
- [NVD] CVE-2025-66823 (MEDIUM 5.4) — An HTML Injection vulnerability in TrueConf server 5.5.2.10813 in the conference description field allows an attacker to inject arbitrary HTML in the Create/Edit conference functionality. The payload will be triggered when the victim opens the Conference Info page ([conference urnvd · 2025-12-30
- [NVD] CVE-2025-66824 (HIGH 8.7) — A Stored Cross-Site Scripting (XSS) vulnerability exists in the Meeting location field of the Create/Edit Conference functionality in TrueConf Server v5.5.2.10813. The injected payload is stored via the meeting_room parameter and executed when users visit the Conference Info pagenvd · 2025-12-30
- [NVD] CVE-2023-54237 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: net/smc: fix potential panic dues to unprotected smc_llc_srv_add_link() There is a certain chance to trigger the following panic: PID: 5900 TASK: ffff88c1c8af4100 CPU: 1 COMMAND: "kworker/1:48" #0 [ffff9nvd · 2025-12-30
- Merry Christmas Day! Have a MongoDB security incident.doublepulsar · 2025-12-26
- [NVD] CVE-2025-36192 (MEDIUM 6.7) — IBM DS8A00( R10.1) 10.10.106.0 and IBM DS8A00 ( R10.0) 10.1.3.010.2.45.0 and IBM DS8900F ( R9.4) 89.40.83.089.42.18.089.44.5.0 IBM System Storage DS8000 could allow a local user with authorized CCW update permissions to delete or corrupt backups due to missing authorization in IBnvd · 2025-12-26
- [NVD] CVE-2025-68598 (MEDIUM 6.5) — Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Live Composer Team Page Builder: Live Composer live-composer-page-builder allows Stored XSS.This issue affects Page Builder: Live Composer: from n/a through 2.1.22.nvd · 2025-12-24
- [NVD] CVE-2023-54141 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: Add missing hw_ops->get_ring_selector() for IPQ5018 During sending data after clients connected, hw_ops->get_ring_selector() will be called. But for IPQ5018, this member isn't set, and the followinvd · 2025-12-24
- [NVD] CVE-2025-34290 — Versa SASE Client for Windows versions released between 7.8.7 and 7.9.4 contain a local privilege escalation vulnerability in the audit log export functionality. The client communicates user-controlled file paths to a privileged service, which performs file system operations withnvd · 2025-12-20
- [NVD] CVE-2025-14300 (HIGH 8.1) — The HTTPS service on Tapo C200 v3, v5, C425 v1.2 and C100 v5 exposes a connectAP interface without proper authentication. An unauthenticated attacker on the same local network segment can exploit this to modify the device’s Wi-Fi configuration, resulting in loss of connectivity nvd · 2025-12-20
- [NVD] CVE-2025-14733 (CRITICAL 9.8) — An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the mobile user VPN with IKEv2 and the branch office VPN using IKEv2 when configured with a dynamnvd · 2025-12-19
- [NVD] CVE-2025-13911 (MEDIUM 6.4) — Ignition by Inductive Automation, when installed with default OS service account settings, may expose the host system to an elevated code execution risk via the gateway backup restore functionality. An authenticated user with Gateway Administrator privileges can import a malinvd · 2025-12-18
- 2025-042: Critical Vulnerability in Cisco Secure Email and Web Managercert_eu · 2025-12-18
- Cat’s Got Your Files: Lynx Ransomwaredfirreport · 2025-12-17
- There's Payloads, And Then There's pAIloads: A Look At Selected Opportunistic (And Possibly AI-"Enhanced") React2Shell Probes and Attacksgreynoise_blog · 2025-12-17
- [NVD] CVE-2025-68313 (HIGH 7.1) — In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Add RDSEED fix for Zen5 There's an issue with RDSEED's 16-bit and 32-bit register output variants on Zen5 which return a random value of 0 "at a rate inconsistent with randomness while incorrectly nvd · 2025-12-16
- [NVD] CVE-2025-68305 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sock: Prevent race in socket write iter and sock bind There is a potential race condition between sock bind and socket write iter. bind may free the same cmd via mgmt_pending before write iter senvd · 2025-12-16
- [NVD] CVE-2025-68299 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix delayed allocation of a cell's anonymous key The allocation of a cell's anonymous key is done in a background thread along with other cell setup such as doing a DNS upcall. In the reported bug, this invd · 2025-12-16
- [NVD] CVE-2025-10450 (HIGH 7.5) — Exposure of Private Personal Information to an Unauthorized Actor vulnerability in RTI Connext Professional (Core Libraries) allows Sniffing Network Traffic. This issue affects Connext Professional: from 7.4.0 before 7.7.0, from 7.2.0 before 7.3.1.nvd · 2025-12-16
- Welcome to the new Project Zero Blogproject_zero · 2025-12-16
- [NVD] CVE-2025-10898 (HIGH 7.8) — AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current pronvd · 2025-12-16
- [NVD] CVE-2025-10881 (HIGH 7.8) — A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current prnvd · 2025-12-16
- [NVD] CVE-2025-65835 (MEDIUM 6.2) — The Cordova plugin cordova-plugin-x-socialsharing (SocialSharing-PhoneGap-Plugin) for Android 6.0.4, registers an exported broadcast receiver nl.xservices.plugins.ShareChooserPendingIntent with an android.intent.action.SEND intent filter. The onReceive implementation accesses Intnvd · 2025-12-15
- [NVD] CVE-2025-11393 (HIGH 8.7) — A flaw was found in runtimes-inventory-rhel8-operator. An internal proxy component is incorrectly configured. Because of this flaw, the proxy attaches the cluster's main administrative credentials to any command it receives, instead of only the specific reports it is supposed to nvd · 2025-12-15
- [NVD] CVE-2025-13824 — A security issue exists due to improper handling of malformed CIP packets during fuzzing. The controller enters a hard fault with solid red Fault LED and becomes unresponsive. Upon power cycle, the controller will enter recoverable fault where the MS LED and Fault LED become flasnvd · 2025-12-15
- [NVD] CVE-2025-13823 — A security issue was found in the IPv6 stack in the Micro850 and Micro870 controllers when the controllers received multiple malformed packets during fuzzing. The controllers will go into recoverable fault with fault code 0xFE60. To recover the controller, clear the fault.nvd · 2025-12-15
- [NVD] CVE-2025-14512 (MEDIUM 6.5) — A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib's GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or remote filesystem attribute values.nvd · 2025-12-11
- HTTPS certificate industry phasing out less secure domain validation methodsgoogle_security · 2025-12-10
- Introducing Saved Searches in Google Threat Intelligence (GTI) and VirusTotal (VT): Enhance Collaboration and Efficiencyvirustotal_blog · 2025-12-10