Aggregator
CVE-2025-9440 | 1000projects Online Project Report Submission and Evaluation System /admin/add_title.php cross site scripting
CVE-2025-9439 | 1000projects Online Project Report Submission and Evaluation System edit_faculty.php?id=2 cross site scripting
CVE-2025-9438 | 1000projects Online Project Report Submission and Evaluation System /admin/add_student.php cross site scripting
Cloudflare secures sensitive data without fully restricting AI usage
Cloudflare announced new capabilities for Cloudflare One, its zero trust platform, designed to help organizations securely adopt, build and deploy emerging generative AI applications. With these new features, Cloudflare is giving customers the ability to automatically understand, analyze and set controls on how generative AI is used throughout their organization, enhancing the productivity and innovation of their teams without sacrificing security or privacy standards. Across every team – from finance and marketing to engineering and … More →
The post Cloudflare secures sensitive data without fully restricting AI usage appeared first on Help Net Security.
CVE-2017-6415 | radare2 1.2.1 DEX File libr/bin/p/bin_dex.c dex_parse_debug_item null pointer dereference (Nessus ID 254359 / BID-96523)
CVE-2017-9728 | uClibc 0.9.33.2 Regular Expression misc/regex/regexec.c get_subexp out-of-bounds (Nessus ID 254360)
CVE-2018-6536 | Icinga up to 2.8.1 Daemon /pathname/icinga2.pid` access control (Issue 5991 / Nessus ID 254361)
CVE-2016-2464 | Google Android up to 4.4.3/5.0.1/5.1.0/6.x Mediaserver input validation (ID 23167726 / Nessus ID 254363)
CVE-2016-10515 | Redmine up to 3.2.2 Textile/Markdown Stored cross site scripting (Nessus ID 254362)
CVE-2016-8640 | pycsw up to 1.8.5/1.10.4/2.0.1 sql injection (Nessus ID 254365 / BID-94302)
CVE-2019-9187 | Ikiwiki prior 3.20170111.1/3.20190226 Aggregate Plugin server-side request forgery (DLA 1716-1 / Nessus ID 254371)
Submit #634208: 1000projects.org Online Project Report Submission and Evaluation System v1.0 Cross Site Scripting [Accepted]
Submit #634197: 1000projects.org Online Project Report Submission and Evaluation System v1.0 Cross Site Scripting [Accepted]
Submit #634195: 1000projects.org Online Project Report Submission and Evaluation System v1.0 Cross Site Scripting [Accepted]
Multiple vtenext Vulnerabilities Let Attackers Bypass Authentication and Execute Remote Codes
A comprehensive security analysis of vtenext CRM version 25.02 has revealed multiple critical vulnerabilities that allow unauthenticated attackers to bypass authentication mechanisms through three distinct attack vectors, ultimately leading to remote code execution on target systems. The Italian CRM solution, utilized by numerous small and medium enterprises across Italy, faces significant security exposure despite attempted […]
The post Multiple vtenext Vulnerabilities Let Attackers Bypass Authentication and Execute Remote Codes appeared first on Cyber Security News.