Vulnerability

CISA Issues Seven ICS Advisories Highlighting Critical VulnerabilitiesCISA Issues Seven ICS Advisories Highlighting Critical Vulnerabilities

CISA Issues Seven ICS Advisories Highlighting Critical Vulnerabilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) released seven Industrial Control Systems (ICS) advisories on February 20, 2025, addressing…

3 months ago
Symantec Diagnostic Tool Flaw Enables Unauthorized Privilege EscalationSymantec Diagnostic Tool Flaw Enables Unauthorized Privilege Escalation

Symantec Diagnostic Tool Flaw Enables Unauthorized Privilege Escalation

Symantec, a division of Broadcom, has released a critical security update to address a high-severity vulnerability identified in its Symantec…

3 months ago
90,000 WordPress Sites Exposed to Local File Inclusion Attacks90,000 WordPress Sites Exposed to Local File Inclusion Attacks

90,000 WordPress Sites Exposed to Local File Inclusion Attacks

A critical vulnerability (CVE-2025-0366) in the Jupiter X Core WordPress plugin, actively installed on over 90,000 websites, was disclosed on…

3 months ago
CISA Issues Warning on Palo Alto PAN-OS Security Flaw Under AttackCISA Issues Warning on Palo Alto PAN-OS Security Flaw Under Attack

CISA Issues Warning on Palo Alto PAN-OS Security Flaw Under Attack

CISA and Palo Alto Networks are scrambling to contain widespread exploitation of a critical authentication bypass vulnerability (CVE-2025-0108) affecting firewall…

3 months ago
LibreOffice Vulnerabilities Allow Attackers to Write to Files and Extract DataLibreOffice Vulnerabilities Allow Attackers to Write to Files and Extract Data

LibreOffice Vulnerabilities Allow Attackers to Write to Files and Extract Data

Two critical vulnerabilities in LibreOffice (CVE-2024-12425 and CVE-2024-12426) expose millions of users to file system manipulation and sensitive data extraction…

3 months ago
Apache Fineract SQL Injection Vulnerability Allows Malicious Data InjectionApache Fineract SQL Injection Vulnerability Allows Malicious Data Injection

Apache Fineract SQL Injection Vulnerability Allows Malicious Data Injection

The Apache Software Foundation has disclosed a critical SQL injection vulnerability in its widely utilized financial platform, Apache Fineract. The…

4 months ago
WinZip Vulnerability Allows Remote Attackers to Execute Arbitrary CodeWinZip Vulnerability Allows Remote Attackers to Execute Arbitrary Code

WinZip Vulnerability Allows Remote Attackers to Execute Arbitrary Code

A newly discovered vulnerability in WinZip, a popular file compression and archiving utility, has raised alarms among cybersecurity experts. Identified…

4 months ago
30,000 WordPress Sites Exposed to Exploitation via File Upload Vulnerability30,000 WordPress Sites Exposed to Exploitation via File Upload Vulnerability

30,000 WordPress Sites Exposed to Exploitation via File Upload Vulnerability

A critical security vulnerability in the "Security & Malware scan by CleanTalk" plugin has left over 30,000 WordPress websites exposed…

4 months ago
Amazon Machine Image Vulnerability Allows Hackers to Publish Fake ResourcesAmazon Machine Image Vulnerability Allows Hackers to Publish Fake Resources

Amazon Machine Image Vulnerability Allows Hackers to Publish Fake Resources

 A new security vulnerability targeting Amazon Machine Images (AMIs) has emerged, exposing organizations and users to potential exploitation. Dubbed the…

4 months ago
Palo Alto PAN-OS Zero-Day Flaw Allows Attackers to Bypass Web Interface AuthenticationPalo Alto PAN-OS Zero-Day Flaw Allows Attackers to Bypass Web Interface Authentication

Palo Alto PAN-OS Zero-Day Flaw Allows Attackers to Bypass Web Interface Authentication

Palo Alto Networks has disclosed a zero-day vulnerability in its PAN-OS software (CVE-2025-0108), allowing attackers to bypass authentication on the…

4 months ago