Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      10 Top Node.js Development Companies for Enterprise-Scale Projects (2025-2026 Ranked & Reviewed)

      July 4, 2025

      12 Must-Know Cost Factors When Hiring Node.js Developers for Your Enterprise

      July 4, 2025

      Mirantis reveals Lens Prism, an AI copilot for operating Kubernetes clusters

      July 3, 2025

      Avoid these common platform engineering mistakes

      July 3, 2025

      Buy EcoFlow portable power stations and air conditioners for nearly 50% off for Prime Day

      July 7, 2025

      A UN Human Rights Council report lists Microsoft among big tech companies that “profit” from Gaza genocide

      July 6, 2025

      The best Costco deals to compete with Prime Day: TVs, laptops, Apple products, and more

      July 6, 2025

      This 9-in-1 off-grid portable power station has a 17-year lifespan – and it’s over 50% off

      July 6, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Token System using PHP and MySQL

      July 6, 2025
      Recent

      Token System using PHP and MySQL

      July 6, 2025

      Create React UI component with uncontrollable

      July 6, 2025

      Flaget – new small 5kB CLI argument parser

      July 5, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      A UN Human Rights Council report lists Microsoft among big tech companies that “profit” from Gaza genocide

      July 6, 2025
      Recent

      A UN Human Rights Council report lists Microsoft among big tech companies that “profit” from Gaza genocide

      July 6, 2025

      Microsoft Forms Was Down for Some Users; But Now Fixed

      July 6, 2025

      DistroWatch Weekly, Issue 1129

      July 6, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Security»Common Vulnerabilities and Exposures (CVEs)»CVE-2025-47947 – ModSecurity Denial of Service Vulnerability

    CVE-2025-47947 – ModSecurity Denial of Service Vulnerability

    May 21, 2025

    CVE ID : CVE-2025-47947

    Published : May 21, 2025, 10:15 p.m. | 35 minutes ago

    Description : ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions up to and including 2.9.8 are vulnerable to denial of service in one special case (in stable released versions): when the payload’s content type is `application/json`, and there is at least one rule which does a `sanitiseMatchedBytes` action. A patch is available at pull request 3389 and expected to be part of version 2.9.9. No known workarounds are available.

    Severity: 7.5 | HIGH

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleCVE-2025-48070 – Plane UserSerializer Account Takeover Vulnerability
    Next Article CVE-2025-47942 – Open edX Platform Python Lib Zip File Download Unauthorized Access Vulnerability

    Related Posts

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-7077 – Shenzhen Libituo Technology LBT-T300-T310 Buffer Overflow Vulnerability

    July 7, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-7084 – “Belkin F9K1122 Web-based Buffer Overflow Vulnerability”

    July 7, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    Sitegen is a simple but flexible static site generator

    Linux

    CVE-2025-48495 – Gokapi Cross-Site Scripting (XSS)

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-6135 – Projectworlds Life Insurance Management System SQL Injection

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2022-31807 – SiPass Firmware Update Integrity Bypass

    Common Vulnerabilities and Exposures (CVEs)

    Highlights

    CVE-2024-41198 – Ocuco Innovation REPORTS.EXE Remote Authentication Bypass and Privilege Escalation Vulnerability

    May 22, 2025

    CVE ID : CVE-2024-41198

    Published : May 22, 2025, 7:15 p.m. | 1 hour, 30 minutes ago

    Description : An issue in Ocuco Innovation – REPORTS.EXE v2.10.24.13 allows attackers to bypass authentication and escalate privileges to Administrator via a crafted TCP packet.

    Severity: 0.0 | NA

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    EC-DIT: Scaling Diffusion Transformers with Adaptive Expert-Choice Routing

    April 16, 2025

    Hackers Exploited 17-year-old Vulnerability to Weaponize Word Documents

    April 23, 2025

    CVE-2024-51552 – ASPECT Password Weakness

    May 22, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.