Adam’s organization was going through a period of rapid growth. Part of this growth was spinning up new backend services…

Post Content Source: Read More 

CVE ID : CVE-2025-53770

Published : July 20, 2025, 1:15 a.m. | 22 hours, 14 minutes ago

Description : Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network.
Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild.
Microsoft is preparing and fully testing a comprehensive update to address this vulnerability. In the meantime, please make sure that the mitigation provided in this CVE documentation is in place so that you are protected from exploitation.

Severity: 9.8 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-7894

Published : July 20, 2025, 2:15 p.m. | 9 hours, 2 minutes ago

Description : A vulnerability, which was classified as critical, has been found in Onyx up to 0.29.1. This issue affects the function generate_simple_sql of the file backend/onyx/agents/agent_search/kb_search/nodes/a3_generate_simple_sql.py of the component Chat Interface. The manipulation leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Severity: 6.3 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-46382

Published : July 20, 2025, 3:15 p.m. | 8 hours, 2 minutes ago

Description : CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Severity: 5.3 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…