Aggregator
CVE-2024-29241 | Synology Surveillance Station prior 9.2.0-9289/9.2.0-11289 WebAPI authorization (SA_24_04 / EUVD-2024-26255)
施乐紧急修复两个高危漏洞
速修复!WinRAR 0day已遭活跃利用
«Умный» ИИ не смог сложить 2+2, зато убедительно объяснил почему получилось 5
台湾地区某恶意样本分析和威胁情报
Windows内核漏洞分析与EXP编写技巧
智能公交系统漏洞曝光:攻击者可远程操控车辆
CVE-2014-0038内核漏洞exp分析
Over 29,000 Unpatched Microsoft Exchange Servers Leaving Networks at Risk
CVE-2022-48424 | Linux Kernel up to 6.1.2 Attribute Name fs/ntfs3/inode.c attr out-of-bounds write (Nessus ID 248401)
CVE-2022-50113 | Linux Kernel up to 5.18.17/5.19.1 ASoC __graph_get_type reference count (Nessus ID 248400)
CVE-2025-38122 | Linux Kernel up to 5.15.185/6.1.141/6.6.93/6.12.33/6.15.2 gve_alloc_pending_packet null pointer dereference (EUVD-2025-19821 / Nessus ID 248399)
CVE-2019-12466 | Wikimedia MediaWiki up to 1.32.1 cross-site request forgery (Nessus ID 248405 / ID 176919)
CVE-2024-26788 | Linux Kernel up to 6.7.8 fsl-qdma initialization (Nessus ID 248407 / WID-SEC-2024-0773)
CVE-2025-3892 | Axis OS up to 12.5.30 ACAP Application unnecessary privileges (WID-SEC-2025-1762)
CVE-2025-30027 | Axis OS up to 12.3.35 ACAP Configuration File improper validation of specified type of input (WID-SEC-2025-1762)
Royal Enfield Reportedly Targeted in Ransomware Attack, Hackers Claim Data Encryption
Royal Enfield, the storied motorcycle manufacturer celebrated for its classic designs and global fan base, is reportedly grappling with a significant cybersecurity breach. A hacker collective posted a “Complete Breach Notice” on an underground forum, claiming full system compromise at Royal Enfield Corporation. According to the notice, all servers have been encrypted and backups wiped, […]
The post Royal Enfield Reportedly Targeted in Ransomware Attack, Hackers Claim Data Encryption appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2023-1787 | GitLab up to 15.9.3/15.10.0 Issue Description denial of service (Issue 394817 / EUVD-2023-23992)
SAP Security Patch Day Fixes 15 Flaws, Including 3 Injection Vulnerabilities
SAP released critical security updates on August 12, 2025, addressing 15 vulnerabilities across its enterprise software portfolio, with three severe code injection flaws receiving the highest CVSS scores of 9.9. The monthly Security Patch Day also included four updates to previously released security notes, highlighting the company’s ongoing commitment to protecting customer environments against evolving […]
The post SAP Security Patch Day Fixes 15 Flaws, Including 3 Injection Vulnerabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.