Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.7 CVE-2025-8810

Tenda AC20 SetFirewallCfg strcpy stack-based overflow_CVE-2025-8810

A vulnerability classified as critical was found in Tenda AC20 16.03.08.05. Affected by this vulnerability is the function strcpy of the file /gofo...

Tenda AC20 16.03.08.05 CVE
HIGH 8.8 THN:EA1E05D5207...

Researchers Reveal ReVault Attack Targeting Dell ControlVault3 Firmware in 100+ Laptop Models_THN:EA1E05D52071445EB0460A34D8ADBBA0

![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=) Cybersecurity researchers ...

N/A N/A THN
HIGH 8.8 TALOSBLOG:8B9C4...

ReVault! When your SoC turns against you… deep dive edition_TALOSBLOG:8B9C4540EA437366281812830656F38B

For a high-level overview of this research, you can refer to our Vulnerability Spotlight. This is the in-depth version that shares many more techni...

N/A N/A TALOSBLOG
HIGH 8.4 HACKREAD:F76746...

WinRAR Zero-Day CVE-2025-8088 Exploited to Spread RomCom Malware_HACKREAD:F76746CB6488A5743A9C70D28A500B60

Critical WinRAR flaw CVE-2025-8088 exploited by Russia-linked hackers to spread RomCom malware, update to version 7.13 now to…

N/A N/A HACKREAD
HIGH 7.3 CVE-2025-8758

TRENDnet TEW-822DRE vsftpd least privilege violation_CVE-2025-8758

A vulnerability was found in TRENDnet TEW-822DRE FW103B02. It has been classified as problematic. This affects an unknown part of the component vsf...

TRENDnet TEW-822DRE FW103B02 CVE
HIGH 7.3 CVE-2025-8757

TRENDnet TV-IP110WN Embedded Boa Web Server boa.conf least privilege violation_CVE-2025-8757

A vulnerability was found in TRENDnet TV-IP110WN 1.2.2 and classified as problematic. Affected by this issue is some unknown functionality of the f...

TRENDnet TV-IP110WN 1.2.2 CVE
HIGH 7.1 CVE-2025-55009

AuthKit: Sensitive auth data rendered in HTML_CVE-2025-55009

The AuthKit library for Remix provides convenient helpers for authentication and session management using WorkOS & AuthKit with Remix. In versions ...

workos authkit-remix < 0.15.0 CVE
HIGH 7.1 CVE-2025-55008

AuthKit React Router: Sensitive auth data rendered in HTML_CVE-2025-55008

The AuthKit library for React Router 7+ provides helpers for authentication and session management using WorkOS & AuthKit with React Router. In ver...

workos authkit-react-router < 0.7.0 CVE
HIGH 7.8 CVE-2025-50675

CVE-2025-50675_CVE-2025-50675

GPMAW 14, a bioinformatics software, has a critical vulnerability related to insecure file permissions in its installation directory. The directory...

n/a n/a n/a CVE
HIGH 8.7 CVE-2025-54888

@fedify/fedify: Improper Authentication and Incorrect Authorization_CVE-2025-54888

Fedify is a TypeScript library for building federated server apps powered by ActivityPub. In versions below 1.3.20, 1.4.0-dev.585 through 1.4.12, 1...

fedify-dev fedify < 1.3.20 CVE