Aggregator
CVE-2023-37023 | Open5GS MME up to 2.6.4 NAS Packet MME_UE_S1AP_ID denial of service
7 months 3 weeks ago
A vulnerability has been found in Open5GS MME up to 2.6.4 and classified as critical. Affected by this vulnerability is the function MME_UE_S1AP_ID of the component NAS Packet Handler. The manipulation leads to denial of service.
This vulnerability is known as CVE-2023-37023. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-24429 | Open5GS up to 2.6.4 NGAP Packet nas_eps_send_emm_to_esm denial of service
7 months 3 weeks ago
A vulnerability was found in Open5GS up to 2.6.4. It has been declared as critical. Affected by this vulnerability is the function nas_eps_send_emm_to_esm of the component NGAP Packet Handler. The manipulation leads to denial of service.
This vulnerability is known as CVE-2024-24429. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-23605 | LamPD Call To Action Popup Plugin up to 1.0.2 on WordPress cross site scripting
7 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in LamPD Call To Action Popup Plugin up to 1.0.2 on WordPress. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-23605. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-23602 | EELV Newsletter Plugin up to 4.8.2 on WordPress cross site scripting
7 months 3 weeks ago
A vulnerability, which was classified as problematic, has been found in EELV Newsletter Plugin up to 4.8.2 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-23602. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-23592 | dForms Plugin up to 1.0 on WordPress cross site scripting
7 months 3 weeks ago
A vulnerability classified as problematic was found in dForms Plugin up to 1.0 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-23592. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-24432 | Open5GS up to 2.6.4 NAS Packet ogs_kdf_hash_mme denial of service
7 months 3 weeks ago
A vulnerability has been found in Open5GS up to 2.6.4 and classified as critical. This vulnerability affects the function ogs_kdf_hash_mme of the component NAS Packet Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2024-24432. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-23604 | Rezdy Reloaded Plugin up to 1.0.1 on WordPress cross site scripting
7 months 3 weeks ago
A vulnerability classified as problematic has been found in Rezdy Reloaded Plugin up to 1.0.1 on WordPress. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-23604. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-23589 | ContentOptin Lite Plugin up to 1.1 on WordPress cross site scripting
7 months 3 weeks ago
A vulnerability was found in ContentOptin Lite Plugin up to 1.1 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-23589. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-23601 | Tab My Content Plugin up to 1.0.0 on WordPress cross site scripting
7 months 3 weeks ago
A vulnerability was found in Tab My Content Plugin up to 1.0.0 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-23601. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
ИИ как оружие мирной революции: OpenAI предлагает США новый курс
7 months 3 weeks ago
Компания настаивает на единой национальной стратегии.
[Control systems] ABB security advisory (AV25-032)
7 months 3 weeks ago
Canadian Centre for Cyber Security
Tycoon 2FA Phishing Kit Upgraded to Bypass Security Measures
7 months 3 weeks ago
Threat researchers analyzed the updated Tycoon 2FA phishing kit, which bypasses MFA
HugBunter Discusses Change for Dread
7 months 3 weeks ago
HugBunter Discusses Change for Dread
Dark Web Informer - Cyber Threat Intelligence
我实验室2篇论文被WWW 2025接收!
7 months 3 weeks ago
How to Handle Secrets at the Command Line [cheat sheet included]
7 months 3 weeks ago
Developers need to prevent credentials from being exposed while working on the command line. Learn how you might be at risk and what tools and methods to help you work more safely.
The post How to Handle Secrets at the Command Line [cheat sheet included] appeared first on Security Boulevard.
Dwayne McDaniel
Omni Fiber, LLC Has Fallen Victim to MONTI Ransomware
7 months 3 weeks ago
Omni Fiber, LLC Has Fallen Victim to MONTI Ransomware
Dark Web Informer - Cyber Threat Intelligence
MasterCard DNS Error Went Unnoticed for Years
7 months 3 weeks ago
The payment card giant MasterCard just fixed a glaring error in its domain name server settings that could have allowed anyone to intercept or divert Internet traffic for the company by registering an unused domain name. The misconfiguration persisted for nearly five years until a security researcher spent $300 to register the domain and prevent it from being grabbed by cybercriminals.
BrianKrebs
Восстание машин началось с кухни: IoT-ботнет установил рекорд DDoS-атаки
7 months 3 weeks ago
Искусственный интеллект за 13 секунд остановил атаку без участия человека.
Windows 11 24H2 now also offered to all eligible Windows 10 PCs
7 months 3 weeks ago
Microsoft says Windows 11 24H2 has entered the broad deployment phase and is now available to all seekers via Windows Update. [...]
Sergiu Gatlan