24h | 7d | 30d

Overview

  • Adobe
  • Dreamweaver Desktop

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS v3.1
HIGH (8.6)
EPSS
Pending

KEV

Description

Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an attacker. Exploitation of this issue requires user interaction in that a victim must open a malicious file and scope is changed.

Statistics

  • 1 Post

Last activity: 1 hour ago

Fediverse

Profile picture

🟠 CVE-2026-21267 - High (8.6)

Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an attacker. Exploitation of t...

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 0
  • 1h ago

Overview

  • Pending

12 Jan 2026
Published
12 Jan 2026
Updated

CVSS
Pending
EPSS
0.09%

KEV

Description

Multiple SQL Injection vulnerabilities exist in AbhishekMali21 GYM-MANAGEMENT-SYSTEM 1.0 via the 'name' parameter in (1) member_search.php, (2) trainer_search.php, and (3) gym_search.php, and via the 'id' parameter in (4) payment_search.php. An unauthenticated remote attacker can exploit these issues to inject malicious SQL commands, leading to unauthorized data extraction, authentication bypass, or modification of database contents.

Statistics

  • 1 Post

Last activity: 22 hours ago

Fediverse

Profile picture

πŸ”΄ CVE-2025-67146 - Critical (9.4)

Multiple SQL Injection vulnerabilities exist in AbhishekMali21 GYM-MANAGEMENT-SYSTEM 1.0 via the 'name' parameter in (1) member_search.php, (2) trainer_search.php, and (3) gym_search.php, and via the 'id' parameter in (4) payment_search.php. An un...

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 0
  • 22h ago

Overview

  • Dell
  • SupportAssist OS Recovery

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS v3.1
HIGH (7.5)
EPSS
Pending

KEV

Description

Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

Statistics

  • 2 Posts

Last activity: 3 hours ago

Fediverse

Profile picture

🟠 CVE-2025-46685 - High (7.5)

Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevatio...

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 1
  • 3h ago

Overview

  • Progress Software
  • Flowmon ADS

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS v3.1
HIGH (8.8)
EPSS
Pending

KEV

Description

A vulnerability exists in Progress Flowmon ADS versions prior to 12.5.4 and 13.0.1 where an SQL injection vulnerability allows authenticated users to execute unintended SQL queries and commands.

Statistics

  • 1 Post

Last activity: 7 hours ago

Fediverse

Profile picture

🟠 CVE-2025-13774 - High (8.8)

A vulnerability exists in Progress Flowmon ADS versions prior to 12.5.4 and 13.0.1 where an SQL injection vulnerability allows authenticated users to execute unintended SQL queries and commands.

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 0
  • 7h ago

Overview

  • Fortinet
  • FortiSwitchManager

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS v3.1
HIGH (7.4)
EPSS
Pending

KEV

Description

A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4.0 through 6.4.16, FortiSASE 25.2.b, FortiSASE 25.1.a.2, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 allows attacker to execute unauthorized code or commands via specially crafted packets

Statistics

  • 1 Post

Last activity: 3 hours ago

Fediverse

Profile picture

🟠 CVE-2025-25249 - High (8.1)

A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4.0 through 6.4.16, FortiSASE 25.2.b, FortiSASE 25.1.a.2, FortiS...

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 0
  • 3h ago

Overview

  • SAP_SE
  • SAP Application Server for ABAP and SAP NetWeaver RFCSDK

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS v3.1
HIGH (8.4)
EPSS
0.44%

KEV

Description

Due to an OS Command Injection vulnerability in SAP Application Server for ABAP and SAP NetWeaver RFCSDK, an authenticated attacker with administrative access and adjacent network access could upload specially crafted content to the server. If processed by the application, this content enables execution of arbitrary operating system commands. Successful exploitation could lead to full compromise of the systemοΏ½s confidentiality, integrity, and availability.

Statistics

  • 1 Post

Last activity: 18 hours ago

Fediverse

Profile picture

🟠 CVE-2026-0507 - High (8.4)

Due to an OS Command Injection vulnerability in SAP Application Server for ABAP and SAP NetWeaver RFCSDK, an authenticated attacker with administrative access and adjacent network access could upload specially crafted content to the server. If pro...

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 0
  • 18h ago

Overview

  • Tenable
  • Nessus Agent

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS v4.0
HIGH (7.3)
EPSS
Pending

KEV

Description

A vulnerability has been identified in the installation/uninstallation of the Nessus Agent Tray App on Windows Hosts which could lead to escalation of privileges.

Statistics

  • 3 Posts

Last activity: 5 hours ago

Fediverse

Profile picture

🟠 CVE-2025-36640 - High (8.8)

A vulnerability has been identified in the installation/uninstallation of the Nessus Agent Tray App on Windows Hosts which could lead to escalation of privileges.

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 2
  • 5h ago

Overview

  • Unknown
  • Dreamer Blog

13 Jan 2026
Published
13 Jan 2026
Updated

CVSS
Pending
EPSS
0.02%

KEV

Description

The Dreamer Blog WordPress theme through 1.2 is vulnerable to arbitrary installations due to a missing capability check.

Statistics

  • 1 Post

Last activity: 5 hours ago

Fediverse

Profile picture

πŸ”΄ CVE-2025-10915 - Critical (9.8)

The Dreamer Blog WordPress theme through 1.2 is vulnerable to arbitrary installations due to a missing capability check.

πŸ”— thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

  • 0
  • 0
  • 0
  • 5h ago

Overview

  • Microsoft
  • Windows 10 Version 1809

08 Jul 2025
Published
23 Aug 2025
Updated

CVSS v3.1
HIGH (7.8)
EPSS
0.08%

KEV

Description

Heap-based buffer overflow in Windows Cred SSProvider Protocol allows an authorized attacker to elevate privileges locally.

Statistics

  • 2 Posts

Last activity: 9 hours ago

Fediverse

Profile picture

FYI: Es gibt einen Micropatch fΓΌr die CredsSSP-Schwachstelle CVE-2025-47987 fΓΌr Windows-Systeme, die von MS keine Updates mehr bekommen.

borncity.com/blog/2026/01/13/0

  • 0
  • 0
  • 1
  • 9h ago

Overview

  • Linux
  • Linux

04 Oct 2025
Published
06 Oct 2025
Updated

CVSS
Pending
EPSS
0.03%

KEV

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: delete timer and free skb queue when unloading Fix possible crash and memory leak on driver unload by deleting TX purge timer and freeing C2H queue in 'rtw_core_deinit()', shrink critical section in the latter by freeing COEX queue out of TX report lock scope.

Statistics

  • 1 Post

Last activity: 11 hours ago

Bluesky

Profile picture
Critical kernel vulnerability patched in #openSUSE (CVE-2023-53574). Allows local privilege escalation. Read more: πŸ‘‰ tinyurl.com/y84e6rr3 #Security
  • 0
  • 0
  • 0
  • 11h ago
Showing 31 to 40 of 128 CVEs