Aggregator
CVE-2025-48069 | Shopify ejson2env up to 2.0.7 os command injection (GHSA-2c47-m757-32g6)
CVE-2025-46822 | OsamaTaher Java-springboot-codebase absolute path traversal (GHSA-q6mm-cm37-w637)
CVE-2025-45752 | SeedDMS 6.0.32 Extension Manager code injection
CVE-2025-47291 | containerd up to 2.0.4 privileges assignment (GHSA-cxfp-7pvr-95ff)
CVE-2025-48063 | xwiki-platform up to 16.10.3/17.1.0-rc0 improper authorization (GHSA-rhfv-688c-p6hp)
Pandas Galore: Chinese Hackers Boost Attacks in Latin America
CVE-2025-36535 | AutomationDirect MB-Gateway missing authentication (icsa-25-140-09)
Lumma infostealer infected about 10 million systems before global disruption
Cybercriminals used the prolific malware to target individuals and businesses, including Fortune 500 companies, according to the FBI.
The post Lumma infostealer infected about 10 million systems before global disruption appeared first on CyberScoop.
Cisco security advisory (AV25-288)
GitLab security advisory (AV25-287)
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Securing Open Banking: How Fintechs Can Defend Against Automated Fraud & API Abuse
Open Banking is accelerating innovation, and fraud—with API abuse, credential stuffing, and fake account creation now among the top threats fintechs must defend against in real time.
The post Securing Open Banking: How Fintechs Can Defend Against Automated Fraud & API Abuse appeared first on Security Boulevard.