Aggregator
AI生成代码的隐患:神对手还是猪队友
1 year 1 month ago
AI生成代码的隐患:神对手还是猪队友
1 year 1 month ago
AI生成代码的隐患:神对手还是猪队友
1 year 1 month ago
AI生成代码的隐患:神对手还是猪队友
1 year 1 month ago
Termite
1 year 1 month ago
cohenido
«Мы знаем все о вас»: рекламная корпорация похвасталась тотальной слежкой за потребителями
1 year 1 month ago
Корпорация утверждает, что прогнозирует поведение 91% пользователей сети.
CVE-2025-2340 | otale Tale Blog 2.0.5 Site Settings /options/save saveOptions Site Title cross site scripting
1 year 1 month ago
A vulnerability was found in otale Tale Blog 2.0.5. It has been declared as problematic. This vulnerability affects the function saveOptions of the file /options/save of the component Site Settings. The manipulation of the argument Site Title leads to cross site scripting. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability was named CVE-2025-2340. The attack can be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2025-2339 | otale Tale Blog 2.0.5 /%61dmin/api/logs improper authentication
1 year 1 month ago
A vulnerability was found in otale Tale Blog 2.0.5. It has been classified as problematic. This affects an unknown part of the file /%61dmin/api/logs. The manipulation leads to improper authentication. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is uniquely identified as CVE-2025-2339. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
Submit #514793: Tale Tale v2.0.5 Cross Site Scripting [Accepted]
1 year 1 month ago
Submit #514793 / VDB-299806
yitclara
Submit #511578: Tale Blog Tale v2.0.5 Exposure of Sensitive System Information to an Unauthorized Cont [Accepted]
1 year 1 month ago
Submit #511578 / VDB-299805
yitclara
BSides Exeter 2024 – Blue Track – DFIR – Ctrl+Alt+Defeat: Using Threat Intelligence To Navigate The Cyber Battlefield
1 year 1 month ago
Authors/Presenters: Sophia McCall
Our thanks to Bsides Exeter, and the Presenters/Authors for publishing their timely Bsides Exeter Conference content. All brought to you via the organizations YouTube channel.
The post BSides Exeter 2024 – Blue Track – DFIR – Ctrl+Alt+Defeat: Using Threat Intelligence To Navigate The Cyber Battlefield appeared first on Security Boulevard.
Marc Handelman
CVE-2025-1530 | tripetto Form Builder Plugin for Contact Forms, Surveys and Quizzes cross-site request forgery
1 year 1 month ago
A vulnerability was found in tripetto Form Builder Plugin for Contact Forms, Surveys and Quizzes up to 8.0.9 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2025-1530. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-2025 | GiveWP Plugin up to 3.22.0 on WordPress give_reports_earnings authorization
1 year 1 month ago
A vulnerability has been found in GiveWP Plugin up to 3.22.0 on WordPress and classified as problematic. Affected by this vulnerability is the function give_reports_earnings. The manipulation leads to missing authorization.
This vulnerability is known as CVE-2025-2025. The attack can be launched remotely. There is no exploit available.
vuldb.com
BidenCash Allegedly Breached – 40GB of Partial Credit Card Data Leaked on Cybercrime Forum
1 year 1 month ago
BidenCash Allegedly Breached – 40GB of Partial Credit Card Data Leaked on Cybercrime Forum
Dark Web Informer - Cyber Threat Intelligence
CVE-2025-2338 | tbeu matio 1.5.28 src/io.c strdup_vprintf heap-based overflow (Issue 269)
1 year 1 month ago
A vulnerability, which was classified as critical, was found in tbeu matio 1.5.28. Affected is the function strdup_vprintf of the file src/io.c. The manipulation leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2025-2338. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-2337 | tbeu matio 1.5.28 src/mat.c Mat_VarPrint heap-based overflow (Issue 267)
1 year 1 month ago
A vulnerability, which was classified as critical, has been found in tbeu matio 1.5.28. This issue affects the function Mat_VarPrint of the file src/mat.c. The manipulation leads to heap-based buffer overflow.
The identification of this vulnerability is CVE-2025-2337. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #510781: https://github.com/tbeu/matio matio 1.5.28 Heap-based Buffer Overflow [Accepted]
1 year 1 month ago
Submit #510781 / VDB-299802
Submit #510780: https://github.com/tbeu/matio matio 1.5.28 Heap-based Buffer Overflow [Duplicate]
1 year 1 month ago
Submit #510780 / VDB-299801
Submit #510779: https://github.com/tbeu/matio matio 1.5.28 Heap-based Buffer Overflow [Accepted]
1 year 1 month ago
Submit #510779 / VDB-299801