A threat actor is compromising NGINX servers in a campaign that hijacks user traffic and reroutes it through the attacker's backend infrastructure. [...]
Currently trending CVE - Hype Score: 1 - Execution with Unnecessary Privileges vulnerability in multiple services of Mitsubishi Electric Iconics Digital Solutions GENESIS64 all versions, Mitsubishi Electric Iconics Digital Solutions GENESIS version 11.00, Mitsubishi Electric GENESIS64 all versions, Mitsubishi Electric ...
A vulnerability was found in adfinis document-merge-service up to 6.5.1 and classified as critical. This vulnerability affects unknown code of the component Template Handler. The manipulation results in improper neutralization of special elements used in a template engine.
This vulnerability is reported as CVE-2024-37301. The attack can be launched remotely. No exploit exists.
A vulnerability identified as critical has been detected in Humming Heads Defense Platform Home Edition up to 3.9.51.x. This affects an unknown part. This manipulation causes execution with unnecessary privileges.
This vulnerability is registered as CVE-2025-22890. The attack needs to be launched locally. No exploit is available.
A vulnerability labeled as critical has been found in Humming Heads Defense Platform Home Edition up to 3.9.51.x. This vulnerability affects unknown code. Such manipulation leads to buffer overflow.
This vulnerability is documented as CVE-2025-23236. The attack needs to be performed locally. There is not any exploit available.
A vulnerability described as critical has been identified in Humming Heads Defense Platform Home Edition up to 3.9.51.x. Impacted is an unknown function of the component Message Handler. Executing a manipulation can lead to unprotected windows messaging channel.
This vulnerability appears as CVE-2025-20094. The attack requires local access. There is no available exploit.
A vulnerability classified as problematic has been found in Humming Heads Defense Platform Home Edition up to 3.9.51.x. The affected element is an unknown function of the component Message Handler. The manipulation leads to unprotected windows messaging channel.
This vulnerability is traded as CVE-2025-22894. An attack has to be approached locally. There is no exploit available.
A vulnerability was found in Kubernetes ingress-nginx up to 1.11.4/1.12.0 and classified as very critical. This issue affects some unknown processing. Such manipulation leads to improper input validation.
This vulnerability is referenced as CVE-2025-24514. It is possible to launch the attack remotely. No exploit is available.
A vulnerability classified as very critical was found in Kubernetes ingress-nginx up to 1.11.4/1.12.0. Affected by this vulnerability is an unknown functionality of the component auth-tls-match-cn Ingress Annotation. Executing a manipulation can lead to improper input validation.
This vulnerability is handled as CVE-2025-1097. The attack can be executed remotely. There is not any exploit available.
A vulnerability, which was classified as very critical, has been found in Kubernetes ingress-nginx up to 1.11.4/1.12.0. Affected by this issue is some unknown functionality of the component Ingress Annotation Handler. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2025-1098. The attack is possible to be carried out remotely. No exploit exists.