Overview
- DIAL
- CentrosNet
Description
Statistics
- 1 Post
Fediverse
🚨 CRITICAL SQL injection (CVE-2025-10870) in DIAL CentrosNet <2.65 lets unauthenticated attackers control the DB via 'ultralogin'. Patch when available, restrict access, and monitor for abuse. https://radar.offseq.com/threat/cve-2025-10870-cwe-89-improper-neutralization-of-s-676f18de #OffSeq #CVE202510870 #SQLInjection #Infosec
Overview
- oobabooga
- text-generation-webui
Description
Statistics
- 1 Post
Fediverse
🚨 CVE-2025-12487: oobabooga text-generation-webui v2.5 has a CRITICAL RCE flaw via trust_remote_code in the join endpoint—no auth required. Restrict access & disable trust_remote_code now. Patch awaited. https://radar.offseq.com/threat/cve-2025-12487-cwe-807-reliance-on-untrusted-input-ffa604f2 #OffSeq #Vuln #AI #Infosec
Overview
Description
Statistics
- 1 Post
Overview
- Toshiba Tec Corporation
- Toshiba Tec e-Studio multi-function peripheral (MFP)
Description
Statistics
- 1 Post
Bluesky
Overview
- oobabooga
- text-generation-webui
Description
Statistics
- 1 Post
Fediverse
🚨 CVE-2025-12488: oobabooga text-generation-webui v2.5 suffers CRITICAL RCE via untrusted trust_remote_code input. No auth needed! Restrict endpoint, disable trust_remote_code, and monitor for abuse. Details: https://radar.offseq.com/threat/cve-2025-12488-cwe-807-reliance-on-untrusted-input-03a30621 #OffSeq #CVE202512488 #RCE #AIsecurity
Overview
Description
Statistics
- 1 Post
Fediverse
Go hack more AI shit.
https://vercel.com/changelog/cve-2025-48985-input-validation-bypass-on-ai-sdk
Overview
- NEC Corporation
- CLUSTERPRO X for Linux (EXPRESSCLUSTER X for Linux)
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: CVE-2025-11546 (CVSS 9.3) — OS command injection in NEC CLUSTERPRO X for Linux v4.0–5.2. Remote, no-auth exploit = full cluster compromise. Patch ASAP, restrict access, monitor traffic. More: https://radar.offseq.com/threat/cve-2025-11546-cwe-78-improper-neutralization-of-s-d690b3a1 #OffSeq #CVE202511546 #Linux #InfoSec
Overview
- Manager-io
- Manager
Description
Statistics
- 1 Post
Fediverse
🔒 CRITICAL: CVE-2025-64180 in Manager-io Manager (<25.11.1.3086) enables attackers to bypass DNS validation & access internal networks. Patch ASAP! Desktop needs no auth. Details: https://radar.offseq.com/threat/cve-2025-64180-cwe-367-time-of-check-time-of-use-t-ee12b800 #OffSeq #Vuln #CVE202564180 #Cybersecurity
Overview
- MacWarrior
- clipbucket-v5
Description
Statistics
- 1 Post
Fediverse
🔍 CVE-2025-64336: HIGH severity stored XSS in ClipBucket v5 (<5.5.2-#147). Auth’d users can inject JS in photo titles; payload executes in Admin → Manage Photos, risking admin takeover. Patch now! https://radar.offseq.com/threat/cve-2025-64336-cwe-79-improper-neutralization-of-i-e31649a8 #OffSeq #XSS #ClipBucket #Infosec
Overview
Description
Statistics
- 1 Post