A critical command injection vulnerability has been disclosed in the widely used GitHub Action tj-actions/branch-names, affecting over...
Vulnerability Report
Salesforce has released a security advisory addressing eight serious vulnerabilities affecting multiple versions of Tableau Server, the...
The CERT Coordination Center (CERT/CC) has issued a Vulnerability Note detailing a critical privilege escalation flaw affecting...
A critical vulnerability has been discovered in the popular open-source Node.js library Node-SAML, used to implement SAML...
NVIDIA has released software security updates for its GPU Display Drivers and vGPU software across Windows, Linux,...
Axios, the popular promise-based HTTP client for Node.js and browsers, has been found vulnerable through a critical...
A vulnerability in the popular Post SMTP WordPress plugin—installed on over 400,000 websites—has been disclosed by Patchstack,...
High-Severity SQL Injection (CVE-2025-52914) in Mitel MiCollab Allows Data Access, Command Execution
High-Severity SQL Injection (CVE-2025-52914) in Mitel MiCollab Allows Data Access, Command Execution
Mitel has released a security advisory addressing a high-severity SQL injection vulnerability in its MiCollab platform—an issue...
Amazon Web Services (AWS) has released a security patch for a high-severity local privilege escalation vulnerability (CVE-2025-8069)...
SonicWall has released a security updates for its Secure Mobile Access (SMA) 100 series appliances, addressing three...
In a recent security advisory coordinated by CERT@VDE, Weidmueller has disclosed multiple critical vulnerabilities affecting its IE-SR-2TX...
TP-Link has issued a security advisory warning users of two critical operating system command injection vulnerabilities affecting...
Synology has issued a security update to patch three significant vulnerabilities affecting the BeeDrive desktop application for...
A newly disclosed vulnerability in ASUSTOR’s Windows-based applications—ASUSTOR Backup Plan (ABP) and ASUSTOR EZSync (AES)—could allow local...
Dahua Technology has issued a security advisory addressing two high-severity vulnerabilities in its IP camera product line,...
Samsung’s widely used MagicINFO 9 Server, a digital signage management platform, was found multi security vulnerabilities. Security...
GitLab has released security updates for Community Edition (CE) and Enterprise Edition (EE), fixing multiple vulnerabilities—including high-severity...
A newly released Metasploit module highlights the critical threat posed by an actively exploited remote code execution...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities (KEV) Catalog with four...
A critical vulnerability has been uncovered in the widely used JavaScript library Form-Data, impacting millions of applications...
Last week, the Microsoft Security Response Center (MSRC) issued an urgent advisory regarding active exploitation of critical...
Google has released a new Stable Channel Update for Chrome Desktop, bringing the browser to version 138.0.7204.168/.169...