Aggregator
CVE-2025-22273: Allocation of Resources Without Limits or Throttling
1 year 3 months ago
CVE-2025-22273: Allocation of Resources Without Limits or Throttling
Dark Web Informer - Cyber Threat Intelligence
Exploiting DeepSeek-R1: Breaking Down Chain of Thought Security
1 year 3 months ago
This entry explores how the Chain of Thought reasoning in the DeepSeek-R1 AI model can be susceptible to prompt attacks, insecure output generation, and sensitive data theft.
Trent Holmes
GreyNoise Observes Exploitation of Three Newly Added KEV Vulnerabilities
1 year 3 months ago
On March 3, 2025, the Cybersecurity and Infrastructure Security Agency added five vulnerabilities to its Known Exploited Vulnerabilities catalog, confirming their exploitation in the wild.
顺应时代潮流,威努特积极响应企业办公电脑需求
1 year 3 months ago
为用户打造更稳定和舒适的办公电脑及办公环境。
CVE-2024-49301 | Sinan Yorulmaz G Meta Keywords Plugin up to 1.4 on WordPress cross site scripting
1 year 3 months ago
A vulnerability classified as problematic was found in Sinan Yorulmaz G Meta Keywords Plugin up to 1.4 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-49301. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49309 | Digitally Plugin up to 1.0.8 on WordPress cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in Digitally Plugin up to 1.0.8 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-49309. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49296 | Coder426 Custom Add to Cart Button Label and Link Plugin up to 1.6.1 on WordPress cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, was found in Coder426 Custom Add to Cart Button Label and Link Plugin up to 1.6.1 on WordPress. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-49296. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-49298 | PeproDev Ultimate Invoice Plugin up to 2.0.6 on WordPress cross site scripting
1 year 3 months ago
A vulnerability has been found in PeproDev Ultimate Invoice Plugin up to 2.0.6 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-49298. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-49255 | Daniele Alessandra Da Reactions Plugin up to 5.1.5 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in Daniele Alessandra Da Reactions Plugin up to 5.1.5 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-49255. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-49292 | Exclusive Addons Elementor Plugin up to 2.7.1 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in Exclusive Addons Elementor Plugin up to 2.7.1 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-49292. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-49295 | PressTigers Simple Testimonials Showcase Plugin up to 1.1.6 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in PressTigers Simple Testimonials Showcase Plugin up to 1.1.6 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-49295. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49248 | Igor Funa Ad Inserter Plugin up to 2.7.37 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in Igor Funa Ad Inserter Plugin up to 2.7.37 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-49248. The attack may be initiated remotely. There is no exploit available.
vuldb.com
Daily Dose of Dark Web Informer - March 3rd, 2025
1 year 3 months ago
This daily article is intended to make it easier for those who want to stay updated with my regular Dark Web Informer and X/Twitter posts.
Dark Web Informer - Cyber Threat Intelligence
CVE-2025-24154 | Apple iOS/iPadOS Kernel Memory out-of-bounds write (Nessus ID 214661)
1 year 3 months ago
A vulnerability was found in Apple iOS and iPadOS. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Kernel Memory Handler. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2025-24154. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24162 | Apple visionOS Web denial of service (Nessus ID 214659)
1 year 3 months ago
A vulnerability, which was classified as problematic, was found in Apple visionOS. Affected is an unknown function of the component Web Handler. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2025-24162. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24162 | Apple tvOS Web denial of service (Nessus ID 214659)
1 year 3 months ago
A vulnerability has been found in Apple tvOS and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Web Handler. The manipulation leads to denial of service.
This vulnerability is known as CVE-2025-24162. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24162 | Apple macOS Web denial of service (Nessus ID 214659)
1 year 3 months ago
A vulnerability was found in Apple macOS and classified as problematic. Affected by this issue is some unknown functionality of the component Web Handler. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-24162. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24162 | Apple Safari Web denial of service (Nessus ID 214659)
1 year 3 months ago
A vulnerability was found in Apple Safari. It has been classified as problematic. This affects an unknown part of the component Web Handler. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2025-24162. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-24162 | Apple watchOS Web denial of service (Nessus ID 214659)
1 year 3 months ago
A vulnerability was found in Apple watchOS. It has been declared as problematic. This vulnerability affects unknown code of the component Web Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2025-24162. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com