Aggregator
Submit #616740: PHPGurukul Complaint Management System 2.0 Cross Site Scripting [Accepted]
5 months ago
Submit #616740 / VDB-316868
Вас назначили поручителем молча. Центробанк просят вмешаться
5 months ago
Депутаты хотят навести порядок в кредитных заявках.
【售后专栏】更新!长亭400热线热搜答疑-产品能量胶-6月篇
5 months ago
更新!6月篇!
长亭云图|出道2年,增速第一!
5 months ago
👍 👍 👍
诱导大模型 | 新型“回音室”攻击和对抗技术
5 months ago
CVE-2025-7801 | BossSoft CRM 6.0 HNDCBas_customPrmSearchDtl.jsp cstid sql injection (EUVD-2025-21926)
5 months ago
A vulnerability has been found in BossSoft CRM 6.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /crm/module/HNDCBas_customPrmSearchDtl.jsp. The manipulation of the argument cstid leads to sql injection.
This vulnerability is known as CVE-2025-7801. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-32124 | Fortinet FortiIsolator up to 2.3.4/2.4.4 HTTP Request access control (FG-IR-24-045 / EUVD-2024-29945)
5 months ago
A vulnerability, which was classified as critical, was found in Fortinet FortiIsolator up to 2.3.4/2.4.4. Affected is an unknown function of the component HTTP Request Handler. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2024-32124. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-38349 | Linux Kernel up to 6.6.98/6.12.38/6.15.6/6.16-rc5 eventpoll use after free (EUVD-2025-21860 / WID-SEC-2025-1596)
5 months ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.6.98/6.12.38/6.15.6/6.16-rc5. This issue affects some unknown processing of the component eventpoll. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2025-38349. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-7800 | cgpandey hotelmis up to c572198e6c4780fccc63b1d3e8f3f72f825fc94e HTTP GET Request admin.php Search cross site scripting (EUVD-2025-21927)
5 months ago
A vulnerability classified as problematic was found in cgpandey hotelmis up to c572198e6c4780fccc63b1d3e8f3f72f825fc94e. This vulnerability affects unknown code of the file admin.php of the component HTTP GET Request Handler. The manipulation of the argument Search leads to cross site scripting.
This vulnerability was named CVE-2025-7800. The attack can be initiated remotely. There is no exploit available.
This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
vuldb.com
IRify 性能升级,突破数据库性能瓶颈
5 months ago
验证吞吐量提升 20%!
Submit #616840: BossSoft CRM V6.0 SQL Injection [Accepted]
5 months ago
Submit #616840 / VDB-316867
cc2024k
Submit #616838: cgpandey hotelmis master (latest commit: c572198) CWE-79 [Accepted]
5 months ago
Submit #616838 / VDB-316864
dev03303
使用n8n构建自动化哈希解密机器人
5 months ago
前言在前段时间某哈希解密大站更新了他们的付费API使用规则,更新的说明如下新规定说白了就是除非充值最高金额,
Он пришёл на концерт Coldplay — а вышел героем соцсетей. Добро пожаловать в эпоху, где камера — судья, а мем — приговор
5 months ago
Миллионы смотрят 15 секунд их жизни снова и снова.
5 Features Every AI-Powered SOC Platform Needs in 2025
5 months ago
A modern AI-based SOC platform must adapt in real time to handle alert overloads and fast-moving threats, surpassing traditional SIEM tools. Modern security operations centers (SOCs) are under immense pressure. Analysts are overwhelmed, alert queues are overflowing, and attackers are moving faster than ever. Where once it was enough to have good visibility and a […]
Pierluigi Paganini
AI-Generated Lcryx Ransomware Discovered in Cryptomining Botnet
5 months ago
A cryptomining botnet active since 2019 has incorporated likely AI-generated Lcryx ransomware into its operations
Retail Becomes New Target as Healthcare Ransomware Attacks Slow
5 months ago
Comparitech found that healthcare ransomware attacks rose 4% in H1 2025, a significantly lower rate than the cross-sector average of 50%
美马联手对我“芯片围城”,我替代路径分析
5 months ago
美国对华科技封锁的魔网正从前线延伸至第三国,马来西亚成为关键一环,“合规陷阱”逼迫我AI产业走钢丝。短期内,
关于老特和爱泼斯坦的已知时间线
5 months ago
这不是花边,这是一份情报。当2025年7月白宫玫瑰园的镁光灯再次对准爱泼斯坦案,特朗普一句“他就是个怪人”试图把十五年孽缘一笔勾销。