Vulnerability

Zimbra Classic Web Client Vulnerability Allows Attackers to Execute Arbitrary JavaScript

Zimbra has released critical security patches addressing a severe stored cross-site scripting vulnerability in its Classic Web Client that could…

10 months ago

Critical Convoy Vulnerability Allows Remote Code Execution on Servers

A critical directory traversal vulnerability has been discovered in Performave Convoy's LocaleController component, enabling unauthenticated remote attackers to execute arbitrary…

10 months ago

Xiaomi App Vulnerability Allows Hackers to Gain Unauthorized Access to Devices

Xiaomi has disclosed a critical security vulnerability in its interoperability application that could allow attackers to gain unauthorized access to…

10 months ago

WinRAR Directory Vulnerability Allows Arbitrary Code Execution via Malicious File

A critical security vulnerability has been discovered in RARLAB's popular WinRAR archiving software that allows remote attackers to execute arbitrary…

10 months ago

Notepad++ Vulnerability Allows Attacker to Take Full Control of System – PoC Released

A critical privilege escalation vulnerability has been discovered in Notepad++ v8.8.1 installer that enables unprivileged users to gain SYSTEM-level privileges…

10 months ago

Critical Meshtastic Vulnerability Allows Attackers to Read Encrypted Messages

A critical security vulnerability has been discovered in Meshtastic, the popular open-source mesh networking platform, that could allow attackers to…

10 months ago

CoinMarketCap Vulnerability in Doodle Image Allows Malicious Code Execution via API

CoinMarketCap, one of the world's leading cryptocurrency data platforms, experienced a security incident on June 20, 2025, when its security…

10 months ago

Versa Director Vulnerability Allow for Arbitrary Command Execution

Multiple critical security vulnerabilities discovered in Versa Director have created significant security risks for organizations utilizing the SD-WAN management platform.…

10 months ago

Dover Fueling Solutions Vulnerability Exposes Fueling Operations to Attackers

A critical security vulnerability in Dover Fueling Solutions' ProGauge MagLink LX fuel monitoring systems could allow remote attackers to gain…

10 months ago

Critical Apache SeaTunnel Vulnerability Allows Unauthenticated Deserialization

A moderate-severity security vulnerability has been discovered in Apache SeaTunnel, a distributed data integration platform, affecting versions 2.3.1 through 2.3.10.…

10 months ago