Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:208786

Aura-CAPTCHA: a Reinforcement Learning and GAN-Enhanced Multi-Modal CAPTCHA System_PACKETSTORM:208786

Aura-CAPTCHA was developed as a multi-modal CAPTCHA system to address vulnerabilities in traditional methods that are increasingly bypassed by AI t...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208778

Connected and Exposed: Cybersecurity Risks, Regulatory Gaps, and Public Perception in Internet-Connected Vehicles_PACKETSTORM:208778

The rapid advancement of Internet-connected vehicle technologies has introduced a new era of smart mobility, while simultaneously raising significa...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208775

Towards Scalable and Interpretable Mobile App Risk Analysis Via Large Language Models_PACKETSTORM:208775

Mobile application marketplaces are responsible for vetting apps to identify and mitigate security risks. Current vetting processes are labor-inten...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208776

Incorporating Device Characterization into Security Proofs_PACKETSTORM:208776

Typical security proofs for quantum key distribution (QKD) rely on having some model for the devices, with the security guarantees implicitly relyi...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208777

IPIGuard: a Novel Tool Dependency Graph-Based Defense against Indirect Prompt Injection in LLM Agents_PACKETSTORM:208777

Large language model (LLM) agents are widely deployed in real-world applications, where they leverage tools to retrieve and manipulate external dat...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208750

CISA: 2025 Minimum Elements for a Software Bill of Materials (SBOM)_PACKETSTORM:208750

CISA is requesting public comment on its updated guidance on Software Bill of Materials (SBOM) to reflect the current state of maturity in software...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208779

📄 Student Result Management System 2.0 SQL Injection / Local File Inclusion_PACKETSTORM:208779

Student Result Management System version 2.0 suffers from unauthenticated remote SQL injection...

N/A N/A PACKETSTORM
NONE PACKETSTORM:208780

📄 EasyApp Limited 2.5 Remote Code Execution / Deserialization / File Upload_PACKETSTORM:208780

EasyApp Limited versions 2.5 and below suffer from PHP object injection allowing for remote code execution, arbitrary file upload, and hardcoded cr...

N/A N/A PACKETSTORM
Unknown ADV-1992

IWCC 2025 Call for Papers

Exploit Details Basic Information Exploit Title IWCC 2025 Call for Papers Exploit ID PACKETSTORM:190683 Type packetstorm Published 2025-04-28T00:00...

N/A N/A NEWS
Unknown ADV-1991

Ruby on Rails Cross Site Request Forgery

Exploit Details Basic Information Exploit Title Ruby on Rails Cross Site Request Forgery Exploit ID PACKETSTORM:190681 Type packetstorm Published 2...

N/A N/A NEWS