Development

Microsoft: April updates cause Windows Server auth issues

Microsoft says the April 2025 security updates are causing authentication issues on some Windows Server 2025 domain controllers.
The list of impacted platforms includes Windows Server 2016, Windows Se …
Read more

Published Date:
May 07, 2025 (2 hours, 13 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-26647

Chrome Security Patch Addresses WebAudio Vulnerability Allowing Code Execution

Google has released a critical security update for Chrome, addressing a vulnerability that could allow attackers to execute malicious code through the browser’s WebAudio component.
According to an ann …
Read more

Published Date:
May 07, 2025 (3 hours, 44 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-4372

CVE-2024-0224

CVE-2023-6345

WordPress-sites aangevallen via kritiek lek in OttoKit-plug-in

WordPress-sites worden aangevallen via een kritieke kwetsbaarheid in de plug-in OttoKit, die eerder nog bekend stond als SureTriggers. Via het beveiligingslek kan een ongeauthenticeerde aanvaller admi …
Read more

Published Date:
May 07, 2025 (3 hours, 31 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-27007

CVE-2025-3102

Mirai Botnet Actively Exploiting GeoVision IoT Devices Command Injection Vulnerabilities

The cybersecurity landscape has once again been disrupted by the resurgence of the notorious Mirai botnet, which has been actively exploiting command injection vulnerabilities in discontinued GeoVisio …
Read more

Published Date:
May 07, 2025 (2 hours, 22 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2024-11120

CVE-2024-6047

Ubiquiti UniFi Protect-camera’s via kritiek lek op afstand over te nemen

Een kritieke kwetsbaarheid maakt het mogelijk voor ongeauthenticeerde aanvallers om Ubiquiti UniFi Protect-camera’s op afstand over te nemen. De impact van het beveiligingslek (CVE-2025-23123) is op e …
Read more

Published Date:
May 07, 2025 (2 hours, 13 minutes ago)

Vulnerabilities has been mentioned in this article.

Critical Kibana Vulnerability Let Attackers Execute Arbitrary Code

Elastic has disclosed a critical security vulnerability in Kibana, its popular data visualization platform, that could allow attackers to execute arbitrary code.
The vulnerability, identified as CVE-2 …
Read more

Published Date:
May 07, 2025 (2 hours, 5 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-25014

CVE-2025-25015

Actively exploited FreeType flaw fixed in Android (CVE-2025-27363)

Google has released fixes for a bucketload of Android security vulnerabilities, including a FreeType flaw (CVE-2025-27363) that “may be under limited, targeted exploitation.”
About CVE-2025-27363
CVE- …
Read more

Published Date:
May 07, 2025 (1 hour, 19 minutes ago)

Vulnerabilities has been mentioned in this article.

CVE-2025-3248

CVE-2025-27363

CVE-2024-7399

CVE ID : CVE-2025-20962

Published : May 7, 2025, 9:15 a.m. | 2 hours, 21 minutes ago

Description : Improper handling of insufficient permission in SpenGesture service prior to SMR May-2025 Release 1 allows local attackers to track the S Pen position.

Severity: 4.0 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-20961

Published : May 7, 2025, 9:15 a.m. | 2 hours, 21 minutes ago

Description : Improper handling of insufficient permission or privileges in sepunion service prior to SMR May-2025 Release 1 allows local privileged attackers to access files with system privilege.

Severity: 5.5 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-20963

Published : May 7, 2025, 9:15 a.m. | 2 hours, 21 minutes ago

Description : Out-of-bounds write in memory initialization in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.

Severity: 6.6 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-20960

Published : May 7, 2025, 9:15 a.m. | 2 hours, 21 minutes ago

Description : Improper handling of insufficient permission in CocktailBarService prior to SMR May-2025 Release 1 allows local attackers to use the privileged api.

Severity: 4.0 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…