The DistroWatch news feed is brought to you by TUXEDO COMPUTERS. The Parrot team have announced the release of Parrot 6.4, which will likely be the final release of the 6.x series. “We are proud to announce Parrot Security 6.4, the latest release of our security oriented operating system, this new version comes packed with most of the enhancements….

The DistroWatch news feed is brought to you by TUXEDO COMPUTERS. Arne Exton has announced the release of a new “DebEX” edition of Exton Linux, based on the upcoming release of Debian 13. It uses the KDE Plasma 6.3.5 desktop and comes with the Calamares system installer: “I have made a new extra version of DebEX KDE Plasma live….

CVE ID : CVE-2025-7114

Published : July 7, 2025, 6:15 a.m. | 3 hours, 32 minutes ago

Description : A vulnerability was found in SimStudioAI sim up to 37786d371e17d35e0764e1b5cd519d873d90d97b. It has been declared as critical. Affected by this vulnerability is the function POST of the file apps/sim/app/api/files/upload/route.ts of the component Session Handler. The manipulation of the argument Request leads to missing authentication. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Severity: 7.3 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-7115

Published : July 7, 2025, 6:15 a.m. | 3 hours, 32 minutes ago

Description : A vulnerability was found in rowboatlabs rowboat up to 8096eaf63b5a0732edd8f812bee05b78e214ee97. It has been rated as critical. Affected by this issue is the function PUT of the file apps/rowboat/app/api/uploads/[fileId]/route.ts of the component Session Handler. The manipulation of the argument params leads to missing authentication. The attack may be launched remotely. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. It is expected that this issue will be fixed in the near future.

Severity: 7.3 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…