Aggregator
CVE-2022-40353 | Online Tours & Travels Management System 1.0 /admin/up_booking.php ID sql injection
CVE-2022-31367 | Strapi up to 3.6.9/4.1.9 Admin API Response sql injection
CVE-2022-37193 | Chipolo ONE Bluetooth Tracker 2020 4.13.0 on iOS access control
CVE-2022-37209 | JFinal CMS 5.1.0 sql injection
CVE-2022-41604 | Check Point ZoneAlarm Extreme Security 4.2.712/9.1.507.000 Updates permission
CVE-2022-3047 | Google Chrome up to 104.0.5112.102 Extensions API authorization (FEDORA-2022-3f28aa88cf / Nessus ID 211177)
UAT-638 Hackers Exploit Cityworks Zero-Day to Attack IIS Servers With VSHell Malware
A sophisticated cyber threat group designated as UAT-6382 has been actively exploiting a critical zero-day vulnerability in Cityworks, a popular asset management system used by local governments across the United States. The vulnerability, tracked as CVE-2025-0994, allows remote code execution and has been under active exploitation since January 2025. The attackers have demonstrated a particular […]
The post UAT-638 Hackers Exploit Cityworks Zero-Day to Attack IIS Servers With VSHell Malware appeared first on Cyber Security News.
CVE-2025-39498 | Spotlight Plugin up to 1.7.1 on WordPress information disclosure
AI 用电量到 2028 年将占到美国家庭用电量的 22%
CVE-2025-47529 | Experto CTA Widget Plugin up to 1.1.1 on WordPress esc_admin_side_ajax_function authorization
CVE-2023-47466 | TagLib 1.x WAV File null pointer dereference (Issue 1163)
CVE-2025-32915 | Checkmk up to 2.1.0/2.2.0p41/2.3.0p31/2.4.0p0 on Linux/Solaris Automatic Agent Updates permission assignment (EUVD-2025-16120)
CVE-2025-1110 | GitLab Community Edition/Enterprise Edition up to 18.0.0 GraphQL Query insufficient granularity of access control (Issue 517693 / EUVD-2025-16116)
CVE-2025-4979 | GitLab Community Edition/Enterprise Edition up to 17.10.6/17.11.2/18.0.0 WebUI insufficient granularity of access control (Issue 524455 / EUVD-2025-16137)
INE Security Partners with Abadnet Institute for Cybersecurity Training Programs in Saudi Arabia
INE Security, a global leader in Cybersecurity training and certifications, has announced a strategic partnership with Abadnet Institute for Training, a Riyadh-based leader in specialized Information Technology, Cybersecurity, and Networking training. The collaboration leverages INE Security’s internationally recognized cybersecurity training content and Abadnet’s established presence in the Saudi Arabian market to deliver comprehensive cybersecurity education programs across the […]
The post INE Security Partners with Abadnet Institute for Cybersecurity Training Programs in Saudi Arabia appeared first on Cyber Security News.