Aggregator
CVE-2025-37862 | Linux Kernel up to 6.14.2 HID pidff_find_fields null pointer dereference (Nessus ID 237255 / WID-SEC-2025-1114)
CVE-2025-37843 | Linux Kernel up to 6.12.23/6.13.11/6.14.2 PCI pci_lock_rescan_remove deadlock (Nessus ID 240657 / WID-SEC-2025-1114)
CVE-2025-37842 | Linux Kernel up to 6.13.11/6.14.2 spi devm_add_action_or_reset denial of service (EUVD-2025-14150 / Nessus ID 240657)
CVE-2025-37844 | Linux Kernel up to 53e83828d352304fec5e19751f38ed8c65e6ec2f cifs cifs_server_dbg null pointer dereference (Nessus ID 237255 / WID-SEC-2025-1114)
CVE-2025-38235 | Linux Kernel up to 6.15.4/6.16-rc3 HID appletb_kbd_probe reference count (EUVD-2025-20134 / Nessus ID 246867)
CVE-2025-37840 | Linux Kernel up to 6.14.2 mtd internals.h nand_reset_op uninitialized pointer (Nessus ID 237255 / WID-SEC-2025-1114)
CVE-2025-37841 | Linux Kernel up to 6.14.2 pm null pointer dereference (Nessus ID 237255 / WID-SEC-2025-1114)
CVE-2025-38234 | Linux Kernel up to 6.15.3 push_rt_task null pointer dereference (EUVD-2025-20022 / Nessus ID 270738)
LGPD (Brazil)
What is the LGPD (Brazil)? The Lei Geral de Proteção de Dados Pessoais (LGPD), or General Data Protection Law (Law No. 13.709/2018), is Brazil’s comprehensive data protection framework, inspired by the European Union’s GDPR. It regulates the collection, use, storage, and sharing of personal data, applying to both public and private entities, regardless of industry, […]
The post LGPD (Brazil) appeared first on Centraleyes.
The post LGPD (Brazil) appeared first on Security Boulevard.
CVE-2025-12696 | HelloLeads CRM Form Shortcode Plugin up to 1.0 on WordPress cross-site request forgery
CVE-2025-67896 | Exim up to 4.99.0 heap-based overflow
CVE-2025-12537 | wpvibes Addon Elements for Elementor Plugin up to 1.14.3 on WordPress Widget cross site scripting
CVE-2025-67897 | sequoia-pgp sequoia up to 2.0.x PKESK aes_key_unwrap signed to unsigned conversion error
CVE-2025-13126 | tomdever wpForo Forum Plugin up to 2.4.12 on WordPress post_args/topic_args sql injection
CVE-2025-14586 | TOTOLINK X5000R 9.1.0cu.2089_B20211224 cstecgi.cgi?action=exportOvpn&type=user snprintf User os command injection (EUVD-2025-203237)
利用数据流“清洗”大模型漏洞检测:LLMSAN 技术解析
Week in review: 40 open-source tools securing the stack, invisible IT to be the next workplace priority
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 40 open-source tools redefining how security teams secure the stack Open source security software has become a key way for teams to get flexibility, transparency, and capability without licensing costs. The free tools in this roundup address problems security teams deal with, from managing large environments to catching misconfigurations and understanding how new technologies change threat exposure. AI agents break … More →
The post Week in review: 40 open-source tools securing the stack, invisible IT to be the next workplace priority appeared first on Help Net Security.