Aggregator
CVE-2026-23550 | Modular DS Plugin up to 2.5.1 on WordPress privileges assignment (EUVD-2026-2436)
【直播预告】新法落地!教你合规防护双避坑
1月14日(周三)15:00
立即预约:领取千元好礼+邮箱安全资料包
直播亮点
新法划重点|合规自查指南:解读关键条款,厘清企业安全责任
案例敲黑板|年度高威胁复盘:拆解亚马逊/ HW/高校等真实事件
福利别错过|预约领资料抽大奖
预约直播间!直击新法合规要点+ 邮件场景防护实操,这波干货千万别错过!
Популярнее, чем Google. Домен хакерского ботнета обогнал мирового гиганта в рейтингах Cloudflare
CVE-2025-15372 | youlaitech vue3-element-admin up to 3.4.0 Notice index.vue cross site scripting
CVE-2025-15391 | D-Link DIR-806A 100CNb11 SSDP Request ssdpcgi_main command injection
CVE-2025-15392 | Kohana KodiCMS up to 13.82.135 Search API Endpoint page.php like keyword sql injection (EUVD-2025-205992)
CVE-2025-69224 | aio-libs aiohttp up to 3.13.2 Python HTTP Parser request smuggling (GHSA-69f9-5gxw-wvc2 / EUVD-2026-1048)
CVE-2025-69226 | aio-libs aiohttp up to 3.13.2 web.static path traversal (GHSA-54jq-c3m8-4m76 / EUVD-2026-1046)
CVE-2025-69225 | aio-libs aiohttp up to 3.13.2 Parser request smuggling (GHSA-mqqc-3gqh-h2x8 / Nessus ID 281865)
CVE-2025-15452 | xnx3 wangmarket up to 4.9 Backend Variable Search variableList.do variableList Description cross site scripting
CVE-2025-15443 | CRMEB up to 5.6.1 product_export cate_id sql injection (EUVD-2026-0778)
CVE-2026-0547 | PHPGurukul Online Course Registration up to 3.1 Student Registration Page edit-student-profile.php photo unrestricted upload (EUVD-2026-0698)
CVE-2025-34468 | libcoap up to 4.3.5 Proxy Request stack-based overflow (30db3ea / EUVD-2025-206064)
CVE-2025-15398 | Uasoft badaso up to 2.9.7 Token BadasoAuthController.php forgetPassword password recovery (EUVD-2025-206105)
CVE-2025-66866 | GNU Binutils 2.26 PE File cp-demangle.c d_abi_tags denial of service (EUVD-2025-205615 / Nessus ID 280128)
CVE-2025-14687 | IBM DB2 Intelligence Center 1.1.0/1.1.1/1.1.2 client-side enforcement of server-side security
CVE-2025-66864 | GNU Binutils 2.26 PE File cp-demangle.c d_print_comp_inner denial of service (EUVD-2025-205614 / Nessus ID 280133)
CVE-2025-36192 | IBM DS8A00/DS8900F authorization (EUVD-2025-205442)
LinkedIn wants to make verification a portable trust signal
In this Help Net Security interview, Oscar Rodriguez, VP Trust Product at LinkedIn, discusses how verification is becoming a portable trust signal across the internet. He explains how LinkedIn is extending professional identity beyond its platform to address rising AI-driven fraud, impersonation, and online scams. Rodriguez also outlines how LinkedIn views its role in digital trust alongside platforms, partners, and existing identity systems. LinkedIn is positioning verification as a foundational trust signal not just on … More →
The post LinkedIn wants to make verification a portable trust signal appeared first on Help Net Security.