Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available

🔐 Access to This Vulnerability Report Requires Support
This article is available to verified supporters only – contribute to read the full report
Contribute with Google
Or choose another support optio …
Read more

Published Date:
Jul 03, 2025 (5 hours, 6 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-6554

CVE-2025-20309 affects Cisco Unified CM

Skip to content🔎 Vulnerability OverviewCVE ID: CVE-2025-20309Severity: Critical (CVSS v3.1 Score: 10.0)Discovered in: Cisco Unified Communications Manager (Unified CM) and Session Management Edition ( …
Read more

Published Date:
Jul 03, 2025 (5 hours, 2 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-20309

CVE-2025-6554

CVE-2025-20156

Burn It With Fire: How to Eliminate an Industry-Wide Supply Chain Vulnerability

🔥 The supply chain bug that couldn’t be ignored — so I torched itIntroduction: A Typo That Could Compromise the JVMIn 2019, while debugging one of my own builds, I noticed something odd. The build was …
Read more

Published Date:
Jul 03, 2025 (2 hours, 50 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE ID : CVE-2025-5944

Published : July 3, 2025, 5:15 a.m. | 2 hours, 3 minutes ago

Description : The Element Pack Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-caption’ attribute in all versions up to, and including, 8.0.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

Severity: 6.4 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Deepin Font Manager is a tool to install and uninstall font easily, supports batch installation, font information recognition, etc The…

Cisco scores a perfect 10 – sadly for a critical flaw in its comms platform

If you’re running the Engineering-Special (ES) builds of Cisco Unified Communications Manager or its Session Management Edition, you need to apply Cisco’s urgent patch after someone at Switchzilla mad …
Read more

Published Date:
Jul 02, 2025 (5 hours, 15 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-20309

Linux Servers Hijacked: Attackers Install Legitimate Proxy Software for Covert Operations

The AhnLab SEcurity intelligence Center (ASEC) has uncovered a series of attacks on poorly secured Linux servers, where instead of deploying classic malware, attackers quietly install legitimate proxy …
Read more

Published Date:
Jul 03, 2025 (3 hours, 35 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2023-49606

CVE-2025-20309 (CVSS 10): Cisco Patches Critical Static SSH Root Credential Flaw in Unified CM

Cisco has disclosed a critical vulnerability in its Unified Communications Manager (Unified CM) and Session Management Edition (SME) platforms. Tracked as CVE-2025-20309 and rated CVSS 10, the flaw ex …
Read more

Published Date:
Jul 03, 2025 (2 hours, 9 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-20309

CVE-2025-20282

CVE-2025-20281

CVE-2025-36560

CVE-2025-31103

Four Critical RCE Flaws Found in Grafana Plugins via Chromium: Patch Now!

Grafana Labs has issued an urgent security advisory addressing four critical vulnerabilities affecting two of its key components: the Grafana Image Renderer plugin and the Synthetic Monitoring Agent. …
Read more

Published Date:
Jul 03, 2025 (1 hour, 38 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-6554

CVE-2025-6192

CVE-2025-6191

CVE-2025-5959