Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

Cisco Webex for BroadWorks Credential Exposure Vulnerability

A low-severity vulnerability in Cisco Webex for BroadWorks Release 45.2 could allow an unauthenticated, remote attacker to access data and credentials if unsecure transport is configured for the SIP communication.

Read More
NewsSecurity Vulnerabilities

Critical Zero-day Vulnerabilities in VMware ESXi, Workstation, and Fusion (CVE-2025-22224, CVE-2025-22225 and CVE-2025-22226)

CVE-2025-22224 and CVE-2025-22225 and CVE-2025-22226 – Broadcom has addressed three exploited vulnerabilities that, when chained, can allow an attacker to access the hypervisor through a running virtual machine.

Read More
NewsSecurity Vulnerabilities

Deserialization of Untrusted Data Vulnerability In b1gMail (CVE-2025-1741)

CVE number = CVE-2025-1741 A vulnerability classified as problematic was found in b1gMail up to 7.4.1-pl1. Affected by this vulnerability

Read More
NewsSecurity Vulnerabilities

Cisco Nexus 3000 and 9000 Series Switches Health Monitoring Diagnostics Denial of Service Vulnerability (CVE-2025-20111)

A vulnerability in the health monitoring diagnostics of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.

Read More
NewsSecurity Vulnerabilities

Delta Electronics CNCSoft-G2 DPAX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability (CVE-2025-22880)

CVE-2025-22880 – This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics CNCSoft-G2.

Read More
NewsSecurity Vulnerabilities

Microsoft Windows Installer Service Link Following Local Privilege Escalation Vulnerability (CVE-2025-21373)

CVE-2025-21373 – This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows.

Read More
NewsSecurity Vulnerabilities

Microsoft Edge UI Misrepresentation Remote Code Execution Vulnerability (CVE-2025-21404)

CVE-2025-21404 – This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Edge.

Read More
NewsSecurity Vulnerabilities

RedHat Out-of-bounds Write vulnerability (CVE-2025-0690)

CVE number = CVE-2025-0690 The read command is used to read the keyboard input from the user, while reads it

Read More
NewsSecurity Vulnerabilities

Cisco Secure Email Gateway Email Filter Bypass Vulnerability (CVE-2025-20153)

A vulnerability (CVE-2025-20153) in the email filtering mechanism of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to bypass the configured rules and allow emails that should have been denied to flow through an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco BroadWorks Application Delivery Platform Cross-Site Scripting Vulnerability (CVE-2025-20211)

A vulnerability (CVE-2025-20211) in the web-based management interface of Cisco BroadWorks Application Delivery Platform could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack against a user of the interface.

Read More