Aggregator
Counter Claims to have Leaked the Data of Smoke's & Jack's Roleplay Forum
1 year 3 months ago
Counter Claims to have Leaked the Data of Smoke's & Jack's Roleplay Forum
Dark Web Informer - Cyber Threat Intelligence
Counter Claims to have Leaked the Data of TXG Corp
1 year 3 months ago
Counter Claims to have Leaked the Data of TXG Corp
Dark Web Informer - Cyber Threat Intelligence
320万用户因恶意浏览器扩展程序遭信息泄露
1 year 3 months ago
安全客
Attackers Leverage Microsoft Teams and Quick Assist for Access
1 year 3 months ago
Phishing attack exploits social engineering techniques alongside Microsoft Teams and remote access software to deploy BackConnect malware
白程序-利用ESET杀软白程序进行命令执行
1 year 3 months ago
ESET杀软安装目录中存在一个白程序,可以像windows下的MsiExec.exe功能一样来执行msi安装包。
OverFlame Targeted the Website of Ministry of Culture
1 year 3 months ago
OverFlame Targeted the Website of Ministry of Culture
Dark Web Informer - Cyber Threat Intelligence
Google’s New Email Shield Feature Let Users Hide Email From Apps
1 year 3 months ago
Google is advancing its email privacy arsenal with the development of Shielded Email, a feature designed to generate disposable email aliases for users signing up for apps and services. First uncovered in a Google Play Services v24.45.33 APK teardown by Android Authority, this tool aims to combat spam and protect primary Gmail addresses from exposure. […]
The post Google’s New Email Shield Feature Let Users Hide Email From Apps appeared first on Cyber Security News.
Kaaviya
CVE-2025-23496 | WP FPO Plugin up to 1.0 on WordPress cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in WP FPO Plugin up to 1.0 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-23496. The attack may be launched remotely. There is no exploit available.
vuldb.com
UK watchdog probes TikTok and Reddit over child privacy concerns
1 year 3 months ago
On Monday, the United Kingdom's privacy watchdog announced that it is investigating TikTok, Reddit, and Imgur because of privacy concerns about how they are processing children's data. [...]
Sergiu Gatlan
IBM完成对HashiCorp的收购,开创混合云自动化新时代
1 year 3 months ago
安全客
CVE-2025-23552 | Texteller Plugin up to 1.3.0 on WordPress cross site scripting
1 year 3 months ago
A vulnerability classified as problematic was found in Texteller Plugin up to 1.3.0 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-23552. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-27274 | GPX Viewer Plugin up to 2.2.11 on WordPress path traversal
1 year 3 months ago
A vulnerability classified as problematic has been found in GPX Viewer Plugin up to 2.2.11 on WordPress. Affected is an unknown function. The manipulation leads to path traversal: '.../...//'.
This vulnerability is traded as CVE-2025-27274. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-27278 | AcuGIS Leaflet Maps Plugin up to 5.1.1.0 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in AcuGIS Leaflet Maps Plugin up to 5.1.1.0 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-27278. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-27279 | Flashfader Plugin up to 1.1.1 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in Flashfader Plugin up to 1.1.1 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-27279. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-27273 | winking Affiliate Links Manager Plugin up to 1.0 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in winking Affiliate Links Manager Plugin up to 1.0 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-27273. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-27275 | andrew_fisher WOO Codice Fiscale Plugin up to 1.6.3 on WordPress cross site scripting
1 year 3 months ago
A vulnerability was found in andrew_fisher WOO Codice Fiscale Plugin up to 1.6.3 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-27275. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-0555 | GitLab-EE up to 17.7.5/17.8.3/17.9.0 cross site scripting (Nessus ID 217013)
1 year 3 months ago
A vulnerability has been found in GitLab-EE up to 17.7.5/17.8.3/17.9.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-0555. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27418 | LabRedesCefetRJ WeGIA up to 3.2.15 adicionar_tipo_atendido.php tipo cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, was found in LabRedesCefetRJ WeGIA up to 3.2.15. Affected is an unknown function of the file adicionar_tipo_atendido.php. The manipulation of the argument tipo leads to cross site scripting.
This vulnerability is traded as CVE-2025-27418. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-27417 | LabRedesCefetRJ WeGIA up to 3.2.15 adicionar_status_atendido.php status cross site scripting
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in LabRedesCefetRJ WeGIA up to 3.2.15. This issue affects some unknown processing of the file adicionar_status_atendido.php. The manipulation of the argument status leads to cross site scripting.
The identification of this vulnerability is CVE-2025-27417. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com