Overview
- Aarondoran
- servify-express
Description
Statistics
- 1 Post
Fediverse
🚨 CVE-2025-67731 (HIGH, CVSS 8.7): Aarondoran servify-express <1.2 lets attackers send huge JSON bodies, causing DoS. Fix: upgrade to 1.2+, set parser size limits, or use reverse proxy controls. Details: https://radar.offseq.com/threat/cve-2025-67731-cwe-400-uncontrolled-resource-consu-02a51622 #OffSeq #NodeJS #DoS #SecAlerts
Overview
- aliasrobotics
- cai
Description
Statistics
- 2 Posts
Bluesky
Overview
Description
Statistics
- 2 Posts
Bluesky
Overview
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
Bluesky
Overview
- sh1zen
- Multi Uploader for Gravity Forms
Description
Statistics
- 1 Post
Fediverse
🚨 CRITICAL (CVSS 9.8): Path traversal in sh1zen Multi Uploader for Gravity Forms (all versions) lets unauthenticated attackers delete files on WordPress servers. Audit, disable, or remove plugin now. CVE-2025-14344 https://radar.offseq.com/threat/cve-2025-14344-cwe-22-improper-limitation-of-a-pat-561e2c4d #OffSeq #WordPress #CVE202514344
Overview
- lazycoders
- LazyTasks – Project & Task Management with Collaboration, Kanban and Gantt Chart
Description
Statistics
- 1 Post
Fediverse
🚨 CRITICAL: CVE-2025-12963 in LazyTasks (WordPress)—all versions. Missing auth on REST API allows unauth’d account takeover & privilege escalation. Disable 'user/role/edit/' endpoint & monitor logs! https://radar.offseq.com/threat/cve-2025-12963-cwe-862-missing-authorization-in-la-b7f1f84a #OffSeq #WordPress #Infosec #CVE202512963
Overview
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post