Posted by Matteo Beccati on Oct 25
========================================================================Posted by Matteo Beccati on Oct 25
========================================================================Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Oct 21
SEC Consult Vulnerability Lab Security Advisory < 20251021-0 >Posted by Matthias Deeg via Fulldisclosure on Oct 21
Advisory ID: SYSS-2025-017Posted by Matthias Deeg via Fulldisclosure on Oct 21
Advisory ID: SYSS-2025-016Posted by Matthias Deeg via Fulldisclosure on Oct 21
Advisory ID: SYSS-2025-015Posted by malvuln on Oct 21
Greetings, I created a MISP-compatible feed for Malvuln that providesPosted by BSidesSF CFP via Fulldisclosure on Oct 21
BSidesSF is still soliciting submissions for the annual BSidesSFPosted by Security Explorations on Oct 21
Dear All,Posted by Thomas Weber | CyberDanube via Fulldisclosure on Oct 18
CyberDanube Security Research 20251014-0Posted by Patrick via Fulldisclosure on Oct 18
----------------------------------------------------------------------------Posted by cve on Oct 18
The critical vulnerabilities discovered within Mercku routers,Posted by Gynvael Coldwind on Oct 15
Vendor Response PatternPosted by Christopher Dickinson via Fulldisclosure on Oct 13
Security Advisory: Multiple High-Severity Vulnerabilities in Suno.comPosted by SBA Research Security Advisory via Fulldisclosure on Oct 13
# Checkmk Path Traversal #Posted by SBA Research Security Advisory via Fulldisclosure on Oct 13
# Checkmk Agent Privilege Escalation via Insecure Temporary Files #Posted by Seralys Research Team via Fulldisclosure on Oct 08
Seralys Security Advisory | https://www.seralys.com/researchPosted by josephgoyd via Fulldisclosure on Oct 07
The GitHub link has a write up on the attack-chain. Along with the CNVD certs that were issued for validation.Posted by full on Oct 07
Substack is down. If there is a replacement, it is appreciated.Posted by Stefan Kanthak via Fulldisclosure on Oct 07
On a fresh installation of the just released Windows 11 25H2 the former filePosted by josephgoyd via Fulldisclosure on Oct 02
Updated repo location: https://github.com/JGoyd/Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201Posted by josephgoyd via Fulldisclosure on Oct 02
Updated repo location: https://github.com/JGoyd/iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201Posted by Ron E on Sep 30
A denial-of-service vulnerability exists in Samtools and the underlyingPosted by Ron E on Sep 30
In the samtools coverage subcommand, the -w / --n-bins option allows thePosted by Ron E on Sep 30
A heap buffer overflow vulnerability exists in the geotifcp utility,Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-6 visionOS 26.0.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-5 macOS Sonoma 14.8.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-4 macOS Sequoia 15.7.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-3 macOS Tahoe 26.0.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-2 iOS 18.7.1 and iPadOS 18.7.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-1 iOS 26.0.1 and iPadOS 26.0.1Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Sep 25
SEC Consult Vulnerability Lab Security Advisory < 20250925-0 >Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Sep 25
SEC Consult Vulnerability Lab Security Advisory < 20250923-0 >Posted by Thomas Weber | CyberDanube via Fulldisclosure on Sep 25
CyberDanube Security Research 20250919-0Posted by Thomas Weber | CyberDanube via Fulldisclosure on Sep 25
CyberDanube Security Research 20250909-0Posted by Antoine Martin via Fulldisclosure on Sep 25
1) About XpraPosted by Stefan Kanthak via Fulldisclosure on Sep 22
Hi @ll,Posted by Stefan Kanthak via Fulldisclosure on Sep 22
Hi @ll,Posted by Stefan Kanthak via Fulldisclosure on Sep 22
Hi @ll,Posted by Ron E on Sep 22
gmo2msg in libelf contains a stack-based buffer overflow in po/gmo2msg.cPosted by Andrey Stoykov on Sep 22
# Exploit Title: Stored HTML Injection - flatpressv1.4.1Posted by Andrey Stoykov on Sep 22
# Exploit Title: Current Password not Required When Changing Password -Posted by Burning River Cyber Con via Fulldisclosure on Sep 22
Burning River CyberCon is seeking submissions for our 2025 conference. We're looking for presentations on all thingsPosted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-12 Xcode 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-11 Safari 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-10 visionOS 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-9 watchOS 26