CVE/vulnerability

We talk about the newest information and stories about Common Vulnerabilities and Exposures (CVE) and security holes in this section. This includes newly found security holes, security patches, warnings, and the best ways to fix them. Know about the newest dangers and how to keep your data and systems safe from possible security risks.

GLPI ITSM Tool Flaw Allows Attackers to Inject Malicious SQL QueriesGLPI ITSM Tool Flaw Allows Attackers to Inject Malicious SQL Queries

GLPI ITSM Tool Flaw Allows Attackers to Inject Malicious SQL Queries

A critical SQL injection vulnerability, tracked as CVE-2025-24799, has been identified in GLPI, a widely used open-source IT Service Management (ITSM) tool.…

2 days ago
Synology Mail Server Vulnerability Enables Remote System Configuration TamperingSynology Mail Server Vulnerability Enables Remote System Configuration Tampering

Synology Mail Server Vulnerability Enables Remote System Configuration Tampering

Synology announced the discovery and resolution of a moderate-severity vulnerability in their Mail Server, which could allow remote authenticated attackers…

3 days ago
CISA Adds Sitecore CMS Code Execution Vulnerability to Exploited ListCISA Adds Sitecore CMS Code Execution Vulnerability to Exploited List

CISA Adds Sitecore CMS Code Execution Vulnerability to Exploited List

 The Cybersecurity and Infrastructure Security Agency (CISA) has included a critical deserialization vulnerability affecting Sitecore CMS and Experience Platform (XP).…

3 days ago
PoC Exploit Released for Ingress-NGINX RCE VulnerabilitiesPoC Exploit Released for Ingress-NGINX RCE Vulnerabilities

PoC Exploit Released for Ingress-NGINX RCE Vulnerabilities

A recently disclosed vulnerability in Ingress-NGINX, tracked as CVE-2025-1974, has raised concerns about the security of Kubernetes environments. This vulnerability…

3 days ago
Exim Use-After-Free Vulnerability Enables Privilege EscalationExim Use-After-Free Vulnerability Enables Privilege Escalation

Exim Use-After-Free Vulnerability Enables Privilege Escalation

A significant security threat has been uncovered in Exim, a popular open-source mail transfer agent (MTA) widely used in Linux…

3 days ago
Splunk RCE Vulnerability Enables Remote Code Execution via File UploadSplunk RCE Vulnerability Enables Remote Code Execution via File Upload

Splunk RCE Vulnerability Enables Remote Code Execution via File Upload

A severe vulnerability in Splunk Enterprise and Splunk Cloud Platform has been identified, allowing for Remote Code Execution (RCE) via…

3 days ago
CrushFTP Warns of HTTP(S) Port Vulnerability Enabling Unauthorized AccessCrushFTP Warns of HTTP(S) Port Vulnerability Enabling Unauthorized Access

CrushFTP Warns of HTTP(S) Port Vulnerability Enabling Unauthorized Access

Both CrushFTP, a popular file transfer technology, and Next.js, a widely used React framework for building web applications, have come…

4 days ago
New Chrome Installer Fails on Windows 10 & 11 With “This app can’t run on your PC” ErrorNew Chrome Installer Fails on Windows 10 & 11 With “This app can’t run on your PC” Error

New Chrome Installer Fails on Windows 10 & 11 With “This app can’t run on your PC” Error

A recent snag in Google's Chrome distribution process has left Windows users unable to install the browser on their Intel…

4 days ago
Critical NetApp SnapCenter Server Vulnerability Allows Attackers to Gain Admin AccessCritical NetApp SnapCenter Server Vulnerability Allows Attackers to Gain Admin Access

Critical NetApp SnapCenter Server Vulnerability Allows Attackers to Gain Admin Access

A critical vulnerability has been identified in NetApp's SnapCenter Server, affecting versions before 6.0.1P1 and 6.1P1. This flaw allows an…

4 days ago
Clevo Devices Vulnerable as Boot Guard Private Key Leaks via Firmware UpdatesClevo Devices Vulnerable as Boot Guard Private Key Leaks via Firmware Updates

Clevo Devices Vulnerable as Boot Guard Private Key Leaks via Firmware Updates

A recent investigation has revealed that several Clevo-based devices are vulnerable due to a leak of Boot Guard private keys.…

4 days ago