CVE-2025-13592 vulnerability affecting the Advanced Ads WordPress plugin
CVE-2025-13592 is a high-severity remote code execution (RCE) vulnerability affecting the Advanced Ads WordPress plugin (also known…
continue reading..
Telecom Sector Under Sustained Attack — Technical View
1. APT Activity: Targeting Signaling, Core, and Management Planes Attack Surface Common Techniques Impact 2. Supply-Chain Compromise:…
continue reading..
Highly sophisticated malware campaign targeting Maven Central
Security researchers have uncovered what appears to be the first highly sophisticated malware campaign targeting Maven Central,…
continue reading..
Romanian Waters (Apele Române) Ransomware Attack
Systems Impacted The attack disrupted large parts of the organization’s IT infrastructure, including: However, operational technology (OT)…
continue reading..
CVE-2025-68860 — Critical Authentication Bypass in WordPress Mobile Builder Plugin
Name: CVE-2025-68860 Type: Authentication Bypass (using alternate path or channel) Severity: Critical — CVSS v3.1 Base Score…
continue reading..
CVE-2024-27480, CVE-2024-25183, CVE-2024-25182 in givanz VvvebJs 1.7.2
All three CVE entries affect givanz VvvebJs 1.7.2 (a web editor / web UI component). The three…
continue reading..
CVE-2025-15212 — SQL injection in code-projects Refugee Food Management System 1.0
CVE-2025-15212 is a SQL injection vulnerability affecting Refugee Food Management System (version 1.0) distributed on code-projects. The…
continue reading..
CVE-2025-23458 – Reflected Cross-Site Scripting (XSS) in Rakessh Ads24 Lite plugin for WordPress
CVE-2025-23458 is a high-severity vulnerability involving Improper Neutralization of Input During Web Page Generation, commonly known as…
continue reading..
CVE-2025-23469 – Reflected Cross-Site Scripting (XSS) in Sleekplan WordPress plugin
CVE-2025-23469 is a Reflected Cross-Site Scripting (XSS) security issue found in versions up to and including 0.2.0…
continue reading..
