Vulnerabilities Vulnerabilities Patched in Qualcomm, Mediatek Chipsets Chip makers Qualcomm and Mediatek have released patches for many vulnerabilities across their products. Ionut ArghireMarch 4, 2025
Vulnerabilities Broadcom Patches 3 VMware Zero-Days Exploited in the Wild Broadcom patched VMware zero-days CVE-2025-22224, CVE-2025-22225 and CVE-2025-22226 after Microsoft warned it of exploitation. Eduard KovacsMarch 4, 2025
Vulnerabilities Exploitation Long Known for Most of CISA’s Latest KEV Additions Exploitation has been known for months or years for most of the latest vulnerabilities added by CISA to its KEV catalog. Eduard KovacsMarch 4, 2025
Vulnerabilities Cisco Patches Vulnerabilities in Nexus Switches Cisco has patched command injection and DoS vulnerabilities affecting some of its Nexus switches, including a high-severity flaw. Eduard KovacsFebruary 27, 2025
Vulnerabilities Vulnerabilities in MongoDB Library Allow RCE on Node.js Servers OPSWAT details two critical vulnerabilities in the Mongoose ODM library for MongoDB leading to remote code execution on the Node.js server. Ionut ArghireFebruary 21, 2025
Vulnerabilities Atlassian Patches Critical Vulnerabilities in Confluence, Crowd Atlassian has released patches for 12 critical- and high-severity vulnerabilities in Bamboo, Bitbucket, Confluence, Crowd, and Jira. Ionut ArghireFebruary 20, 2025
Vulnerabilities PoC Exploit Published for Critical Ivanti EPM Vulnerabilities Proof-of-concept (PoC) code and technical details on four critical-severity Ivanti EPM vulnerabilities are now available. Ionut ArghireFebruary 20, 2025
Vulnerabilities Chrome 133, Firefox 135 Updates Patch High-Severity Vulnerabilities Google and Mozilla resolve high-severity memory safety vulnerabilities with the latest Chrome and Firefox security updates. Ionut ArghireFebruary 19, 2025
Vulnerabilities Critical Vulnerability Patched in Juniper Session Smart Router A critical vulnerability tracked as CVE-2025-21589 has been patched in Juniper Networks’ Session Smart Router. Eduard KovacsFebruary 18, 2025
Endpoint Security Xerox Versalink Printer Vulnerabilities Enable Lateral Movement Xerox released security updates to resolve pass-back attack vulnerabilities in Versalink multifunction printers. Ionut ArghireFebruary 17, 2025
Vulnerabilities SonicWall Firewall Vulnerability Exploited After PoC Publication The exploitation of a recent SonicWall vulnerability has started shortly after proof-of-concept (PoC) code was published. Ionut ArghireFebruary 14, 2025
Vulnerabilities Palo Alto Networks Patches Potentially Serious Firewall Vulnerability Palo Alto Networks has published 10 new security advisories, including one for a high-severity firewall authentication bypass vulnerability. Eduard KovacsFebruary 13, 2025