Development

An opinionated Laravel starter kit with Vue.js, Inertia.js, and Tailwind CSS including authentication, admin dashboard, and essential features for building…

BladedFeline: Iran-Aligned APT Group Expands Arsenal With Whisper and PrimeCache

In a detailed expose released by ESET, researchers unveiled a sophisticated and persistent cyberespionage campaign by an Iran-aligned APT group dubbed BladedFeline, a suspected subgroup of the notorio …
Read more

Published Date:
Jun 10, 2025 (1 hour, 37 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-27920

CVE-2024-30088

CVE-2025-41646: Critical Authentication Bypass in RevPi Webstatus Threatens Industrial Systems

KUNBUS has issued a critical security advisory for its RevPi Webstatus application following the discovery of an authentication bypass vulnerability identified as CVE-2025-41646. With a CVSS base scor …
Read more

Published Date:
Jun 10, 2025 (1 hour, 24 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-41646

Operation DRAGONCLONE: China Mobile Tietong Hit by Advanced APT Attack

Seqrite Labs APT-Team has uncovered a targeted campaign against China Mobile Tietong Co., Ltd., a prominent subsidiary of China Mobile, using a combination of DLL sideloading, anti-sandbox techniques, …
Read more

Published Date:
Jun 10, 2025 (1 hour, 18 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-41646

CVE-2025-31324

CVE-2024-1709

CVE ID : CVE-2025-49137

Published : June 9, 2025, 9:15 p.m. | 2 hours, 44 minutes ago

Description : HAX CMS PHP allows users to manage their microsite universe with a PHP backend. Prior to version 11.0.0, the application does not sufficiently sanitize user input, allowing for the execution of arbitrary JavaScript code. The ‘saveNode’ and ‘saveManifest’ endpoints take user input and store it in the JSON schema for the site. This content is then rendered in the generated HAX site. Although the application does not allow users to supply a `script` tag, it does allow the use of other HTML tags to run JavaScript. Version 11.0.0 fixes the issue.

Severity: 8.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…