TheHackerWire
banner
thehackerwire.bsky.social
TheHackerWire
@thehackerwire.bsky.social
Knowledge is the ultimate weapon against cyber threats.
🟠 CVE-2025-69217 - High (7.7)

coturn is a free open source implementation of TURN and STUN Server. Versions 4.6.2r5 through 4.7...

https://www.thehackerwire.com/vulnerability/CVE-2025-69217/

#infosec #cybersecurity #CVE #vulnerability #security
December 30, 2025 at 2:00 AM
🟠 CVE-2025-68036 - High (7.5)

Missing Authorization vulnerability in Emraan Cheema CubeWP allows Accessing Functionality Not Pr...

https://www.thehackerwire.com/vulnerability/CVE-2025-68036/

#infosec #cybersecurity #CVE #vulnerability #security
December 30, 2025 at 12:31 AM
🟠 CVE-2025-15284 - High (7.5)

Improper Input Validation vulnerability in qs (parse modules) allows HTTP DoS.This issue affects ...

https://www.thehackerwire.com/vulnerability/CVE-2025-15284/

#infosec #cybersecurity #CVE #vulnerability #security
December 30, 2025 at 12:00 AM
🔴 CVE-2025-68860 - Critical (9.8)

Authentication Bypass Using an Alternate Path or Channel vulnerability in Mobile Builder Mobile b...

https://www.thehackerwire.com/vulnerability/CVE-2025-68860/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 10:20 PM
🔴 CVE-2025-68562 - Critical (9.9)

Unrestricted Upload of File with Dangerous Type vulnerability in RomanCode MapSVG allows Upload a...

https://www.thehackerwire.com/vulnerability/CVE-2025-68562/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 10:20 PM
🔴 CVE-2025-68860 - Critical (9.8)

Authentication Bypass Using an Alternate Path or Channel vulnerability in Mobile Builder Mobile b...

https://www.thehackerwire.com/vulnerability/CVE-2025-68860/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 10:20 PM
🔴 CVE-2025-68562 - Critical (9.9)

Unrestricted Upload of File with Dangerous Type vulnerability in RomanCode MapSVG allows Upload a...

https://www.thehackerwire.com/vulnerability/CVE-2025-68562/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 10:20 PM
🟠 CVE-2025-13417 - High (8.6)

The Plugin Organizer WordPress plugin before 10.2.4 does not sanitize and escape a parameter befo...

https://www.thehackerwire.com/vulnerability/CVE-2025-13417/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 9:29 PM
🟠 CVE-2025-55061 - High (8.8)

CWE-434 Unrestricted Upload of File with Dangerous Type

https://www.thehackerwire.com/vulnerability/CVE-2025-55061/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 7:00 PM
🟠 CVE-2025-68870 - High (7.5)

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclu...

https://www.thehackerwire.com/vulnerability/CVE-2025-68870/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 6:00 PM
🟠 CVE-2025-69200 - High (7.5)

phpMyFAQ is an open source FAQ web application. In versions prior to 4.0.16, an unauthenticated r...

https://www.thehackerwire.com/vulnerability/CVE-2025-69200/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:24 PM
🔴 CVE-2025-15194 - Critical (9.8)

A vulnerability was found in D-Link DIR-600 up to 2.15WWb02. Affected by this vulnerability is an...

https://www.thehackerwire.com/vulnerability/CVE-2025-15194/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:23 PM
🟠 CVE-2025-68877 - High (7.5)

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclu...

https://www.thehackerwire.com/vulnerability/CVE-2025-68877/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:23 PM
🟠 CVE-2025-69200 - High (7.5)

phpMyFAQ is an open source FAQ web application. In versions prior to 4.0.16, an unauthenticated r...

https://www.thehackerwire.com/vulnerability/CVE-2025-69200/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:22 PM
🟠 CVE-2025-69200 - High (7.5)

phpMyFAQ is an open source FAQ web application. In versions prior to 4.0.16, an unauthenticated r...

https://www.thehackerwire.com/vulnerability/CVE-2025-69200/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:22 PM
🔴 CVE-2025-68897 - Critical (9.9)

Improper Control of Generation of Code ('Code Injection') vulnerability in Mohammad I. Okfie IF A...

https://www.thehackerwire.com/vulnerability/CVE-2025-68897/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:22 PM
🟠 CVE-2025-15193 - High (8.8)

A vulnerability was detected in D-Link DWR-M920 up to 1.1.50. This affects the function sub_42384...

https://www.thehackerwire.com/vulnerability/CVE-2025-15193/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:00 PM
🔴 CVE-2025-68929 - Critical (9)

Frappe is a full-stack web application framework. Prior to versions 14.99.6 and 15.88.1, an authe...

https://www.thehackerwire.com/vulnerability/CVE-2025-68929/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 4:00 PM
🟠 CVE-2025-15190 - High (8.8)

A security flaw has been discovered in D-Link DWR-M920 up to 1.1.50. Impacted is the function sub...

https://www.thehackerwire.com/vulnerability/CVE-2025-15190/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 2:23 PM
🟠 CVE-2025-15189 - High (8.8)

A vulnerability was identified in D-Link DWR-M920 up to 1.1.50. This issue affects the function s...

https://www.thehackerwire.com/vulnerability/CVE-2025-15189/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 1:22 PM
🔴 CVE-2025-15228 - Critical (9.8)

BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Upload vulnerability, allowin...

https://www.thehackerwire.com/vulnerability/CVE-2025-15228/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 8:38 AM
🟠 CVE-2025-15227 - High (7.5)

BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Read vulnerability, allowing ...

https://www.thehackerwire.com/vulnerability/CVE-2025-15227/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 8:38 AM
🔴 CVE-2025-15226 - Critical (9.8)

WMPro developed by Sunnet has a Arbitrary File Upload vulnerability, allowing unauthenticated rem...

https://www.thehackerwire.com/vulnerability/CVE-2025-15226/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 8:00 AM
🟠 CVE-2025-15225 - High (7.5)

WMPro developed by Sunnet has an Arbitrary File Read vulnerability, allowing unauthenticated remo...

https://www.thehackerwire.com/vulnerability/CVE-2025-15225/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 8:00 AM
🔴 CVE-2025-15226 - Critical (9.8)

WMPro developed by Sunnet has a Arbitrary File Upload vulnerability, allowing unauthenticated rem...

https://www.thehackerwire.com/vulnerability/CVE-2025-15226/

#infosec #cybersecurity #CVE #vulnerability #security
December 29, 2025 at 8:00 AM