Aggregator
CVE-2025-31481 | API Platform up to 4.0.21 Relay Special Node Type authorization (GHSA-cg3c-245w-728m)
CVE-2025-29462 | Tenda AC15 15.13.07.13 HTTP Request webCgiGetUploadFile buffer overflow
Connected cars drive into a cybersecurity crisis
Technology has entered all areas of life, and our cars are no exception. They have become computers on wheels, equipped with sensors, software, and connectivity that provide safety and comfort. However, like all technological innovations, this one also brings risks, making cars vulnerable to cyberattacks. The very fact that someone can hack a vehicle and take control of it is terrifying, turning scenarios from movies into reality. Add to this the fact that software in … More →
The post Connected cars drive into a cybersecurity crisis appeared first on Help Net Security.
CVE-2024-47217 | Snowplow Iglu up to 0.13.0 Authenticated Endpoint denial of service
CVE-2024-47214 | Snowplow Iglu up to 0.13.0 denial of service
CVE-2024-45198 | insightsoftware Spark JDBC 2.6.21 JDBC Driver injection
CVE-2024-47212 | Snowplow Iglu up to 0.13.0 API Endpoint denial of service
CVE-2024-45199 | insightsoftware Hive JDBC up to 2.6.13 JDBC Driver injection
CVE-2025-30406 | Gladinet CentreStack up to 16.1.10296.56315 Portal portal\web.config hard-coded key
CVE-2025-31119 | jhipster generator--entity-audit up to 5.9.0 externally-controlled input to select classes or code (GHSA-7rmp-3g9f-cvq8)
CVE-2025-24317 | Jtekt Electronics HMI ViewJet C-more/HMI GC-A2 allocation of resources
CVE-2024-47215 | Snowbridge Google Tag Manager Server Side denial of service
CVE-2025-29796 | Microsoft Edge up to 134.0.3124.66 on iOS User Interface clickjacking
CVE-2025-24310 | Jtekt Electronics HMI ViewJet C-more ui layer
CVE-2025-31489 | minio up to RELEASE.2025-02-28T09-55-16Z signature verification (GHSA-wg47-6jq2-q2hh)
CVE-2025-29815 | Microsoft Edge up to 134.0.3124.51 use after free
CVE-2025-25000 | Microsoft Edge up to 134.0.3124.51 type confusion
CVE-2025-25001 | Microsoft Edge up to 132.0.2957.115 on iOS cross site scripting
OpenVPN Flaw Allows Attackers Crash Servers and Run Remote Code
OpenVPN, a widely-used open-source virtual private network (VPN) software, has recently patched a security vulnerability that could allow attackers to crash servers and potentially execute remote code under certain conditions. The flaw, identified as CVE-2025-2704, affects OpenVPN servers using specific configurations and has been addressed in the newly released version OpenVPN 2.6.14. CVE-2025-2704: Overview The vulnerability is […]
The post OpenVPN Flaw Allows Attackers Crash Servers and Run Remote Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.