TheHackerWire
banner
thehackerwire.bsky.social
TheHackerWire
@thehackerwire.bsky.social
Knowledge is the ultimate weapon against cyber threats.
🔴 CVE-2025-68664 - Critical (9.3)

LangChain is a framework for building agents and LLM-powered applications. Prior to versions 0.3....

https://www.thehackerwire.com/vulnerability/CVE-2025-68664/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 11:44 PM
🔴 CVE-2025-68669 - Critical (9.6)

5ire is a cross-platform desktop artificial intelligence assistant and model context protocol cli...

https://www.thehackerwire.com/vulnerability/CVE-2025-68669/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 11:44 PM
🟠 CVE-2025-68665 - High (8.6)

LangChain is a framework for building LLM-powered applications. Prior to @langchain/core versions...

https://www.thehackerwire.com/vulnerability/CVE-2025-68665/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 11:44 PM
🔴 CVE-2025-14500 - Critical (9.8)

IceWarp14 X-File-Operation Command Injection Remote Code Execution Vulnerability. This vulnerabil...

https://www.thehackerwire.com/vulnerability/CVE-2025-14500/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 10:45 PM
🟠 CVE-2025-14499 - High (8.8)

IceWarp gmaps Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows...

https://www.thehackerwire.com/vulnerability/CVE-2025-14499/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 10:45 PM
🔴 CVE-2025-50526 - Critical (9.8)

Netgear EX8000 V1.0.0.126 was discovered to contain a command injection vulnerability via the swi...

https://www.thehackerwire.com/vulnerability/CVE-2025-50526/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 9:20 PM
🔴 CVE-2024-57521 - Critical (10)

SQL Injection vulnerability in RuoYi v.4.7.9 and before allows a remote attacker to execute arbit...

https://www.thehackerwire.com/vulnerability/CVE-2024-57521/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 9:20 PM
🔴 CVE-2025-14931 - Critical (10)

Hugging Face smolagents Remote Python Executor Deserialization of Untrusted Data Remote Code Exec...

https://www.thehackerwire.com/vulnerability/CVE-2025-14931/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 9:20 PM
🟠 CVE-2021-47721 - High (8.8)

Orangescrum 1.8.0 contains a privilege escalation vulnerability that allows authenticated users t...

https://www.thehackerwire.com/vulnerability/CVE-2021-47721/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 9:12 PM
🟠 CVE-2021-47739 - High (8.4)

Epic Games Easy Anti-Cheat 4.0 contains an unquoted service path vulnerability that allows local ...

https://www.thehackerwire.com/vulnerability/CVE-2021-47739/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 9:12 PM
🟠 CVE-2021-47736 - High (8.8)

CMSimple_XH 1.7.4 contains an authenticated remote code execution vulnerability in the content ed...

https://www.thehackerwire.com/vulnerability/CVE-2021-47736/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 8:48 PM
🟠 CVE-2021-47735 - High (8.8)

CMSimple 5.4 contains an authenticated remote code execution vulnerability that allows logged-in ...

https://www.thehackerwire.com/vulnerability/CVE-2021-47735/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 8:45 PM
🔴 CVE-2025-65354 - Critical (9.8)

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management ...

https://www.thehackerwire.com/vulnerability/CVE-2025-65354/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 8:45 PM
🟠 CVE-2023-53982 - High (8.2)

PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php endpoin...

https://www.thehackerwire.com/vulnerability/CVE-2023-53982/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 8:45 PM
🔴 CVE-2025-29228 - Critical (9.8)

Linksys E5600 V1.1.0.26 is vulnerable to command injection in the runtime.macClone function via t...

https://www.thehackerwire.com/vulnerability/CVE-2025-29228/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 7:40 PM
🔴 CVE-2025-51511 - Critical (9.8)

Cadmium CMS v.0.4.9 has a background arbitrary file upload vulnerability in /admin/content/filema...

https://www.thehackerwire.com/vulnerability/CVE-2025-51511/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 7:40 PM
🟠 CVE-2025-25364 - High (8.4)

A command injection vulnerability in the me.connectify.SMJobBlessHelper XPC service of Speedify V...

https://www.thehackerwire.com/vulnerability/CVE-2025-25364/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 7:39 PM
🔴 CVE-2025-29229 - Critical (9.8)

linksys E5600 V1.1.0.26 is vulnerable to command injection in the function ddnsStatus.

https://www.thehackerwire.com/vulnerability/CVE-2025-29229/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 7:05 PM
🔴 CVE-2025-33224 - Critical (9.8)

NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause an execution with ...

https://www.thehackerwire.com/vulnerability/CVE-2025-33224/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 5:44 PM
🔴 CVE-2025-33223 - Critical (9.8)

NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause an execution with ...

https://www.thehackerwire.com/vulnerability/CVE-2025-33223/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 5:44 PM
🔴 CVE-2025-33222 - Critical (9.8)

NVIDIA Isaac Launchable contains a vulnerability where an attacker could exploit a hard-coded cre...

https://www.thehackerwire.com/vulnerability/CVE-2025-33222/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 5:44 PM
🔴 CVE-2025-67108 - Critical (10)

eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resul...

https://www.thehackerwire.com/vulnerability/CVE-2025-67108/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 4:26 PM
🔴 CVE-2025-67109 - Critical (10)

Improper verification of the time certificate in Eclipse Cyclone DDS before v0.10.5 allows attack...

https://www.thehackerwire.com/vulnerability/CVE-2025-67109/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 4:26 PM
🔴 CVE-2025-67108 - Critical (10)

eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resul...

https://www.thehackerwire.com/vulnerability/CVE-2025-67108/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 4:25 PM
🔴 CVE-2025-67109 - Critical (10)

Improper verification of the time certificate in Eclipse Cyclone DDS before v0.10.5 allows attack...

https://www.thehackerwire.com/vulnerability/CVE-2025-67109/

#infosec #cybersecurity #CVE #vulnerability #security
December 23, 2025 at 4:25 PM