Vulnerability

ADOdb SQLite3 Driver Vulnerability Enables Arbitrary SQL Statement Execution

A critical SQL injection vulnerability affecting the widely-used ADOdb PHP database abstraction library has been discovered and patched, posing significant…

9 months ago

New Streamlit Vulnerability Enables Cloud Account Takeover Attacks

A critical vulnerability in Streamlit's file upload feature that could enable attackers to execute cloud account takeover attacks on misconfigured…

9 months ago

FUJIFILM Printer Vulnerability Exposes Devices to Denial-of-Service Attacks

A newly disclosed vulnerability in FUJIFILM’s Internet Printing Protocol (IPP) and Line Printer Daemon (LPD) processing logic allows malicious actors…

9 months ago

Researchers Exploit 0-Day Vulnerability in Google kernelCTF and Debian 12

Security researchers have successfully exploited a critical zero-day vulnerability in the Linux kernel, compromising multiple Google kernelCTF instances and Debian…

9 months ago

Cursor IDE Vulnerability Exposes Users to Remote Code Execution

A critical security vulnerability in the popular AI-powered code editor Cursor IDE has been disclosed that allows attackers to execute…

9 months ago

Critical Squid Vulnerability Let Attackers Execute Remote Code

A critical security vulnerability in the widely-used Squid proxy server has been discovered that could allow attackers to execute remote…

9 months ago

Critical HashiCorp Vulnerability Enables Host-Level Code Execution

HashiCorp has issued a high-severity advisory (HCSEC-2025-14) detailing CVE-2025-6000, a vulnerability that allows a privileged Vault operator to achieve remote…

9 months ago

Critical NestJS Vulnerability Allows Remote Code Execution on Developer Machines

A critical Remote Code Execution (RCE) vulnerability has been discovered in the NestJS development tools package, allowing malicious websites to…

9 months ago

Critical SUSE Manager Vulnerability Allows Remote Root Command Execution

A severe security vulnerability has been discovered in SUSE Manager that allows unauthenticated attackers to execute arbitrary commands with root…

9 months ago

CrushFTP 0-Day RCE Vulnerability: Technical Details & PoC Released

A critical zero-day vulnerability in CrushFTP has been disclosed, allowing attackers to achieve remote code execution without authentication. The vulnerability,…

9 months ago