Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 CVE-2025-54785

SuiteCRM is Vulnerable to PHP Object Injection in Reports_CVE-2025-54785

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.6 and 8.8.0, user-suppl...

SuiteCRM SuiteCRM >= 7.14.6, < 7.14.7 CVE
HIGH 8.8 CVE-2025-54788

SuiteCRM: Authenticated Blind SQL Injection in InboundEmail module_CVE-2025-54788

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions and below, the InboundEmail m...

SuiteCRM SuiteCRM < 7.14.7 CVE
HIGH 8.2 MS:CVE-2025-53787

Microsoft 365 Copilot BizChat Information Disclosure Vulnerability_MS:CVE-2025-53787

{“lastseen”:”2025-08-07T22:54:54″,”description”:””,”published”:”2025-08-07T07:00:...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-8576

Chromium: CVE-2025-8576 Use after free in Extensions_MS:CVE-2025-8576

Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-8578

Chromium: CVE-2025-8578 Use after free in Cast_MS:CVE-2025-8578

Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

N/A N/A MSCVE
HIGH 7 CVE-2025-26513

CVE-2025-26513_CVE-2025-26513

The installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerability which when successfully exploited could al...

NetApp SAN Host Utilities for Windows CVE
HIGH 8.2 CVE-2025-53787

Microsoft 365 Copilot BizChat Information Disclosure Vulnerability_CVE-2025-53787

{“lastseen”:””,”description”:””,”published”:”2025-08-07T21:01:04.272Z”,&#82...

Microsoft Microsoft 365 Copilot's Business Chat N/A CVE
HIGH 7.8 THN:AC4C3FA038B...

SocGholish Malware Spread via Ad Tools; Delivers Access to LockBit, Evil Corp, and Others_THN:AC4C3FA038B5261D22D8E00BD8889587

...

N/A N/A THN
HIGH 8.8 CVE-2025-51629

CVE-2025-51629_CVE-2025-51629

A cross-site scripting (XSS) vulnerability in the PdfViewer component of Agenzia Impresa Eccobook 2.81.1 allows attackers to execute arbitrary web ...

N/A N/A CVE
HIGH 8.8 CVE-2025-24000

WordPress Post SMTP plugin <= 3.2.0 - Account Takeover Vulnerability_CVE-2025-24000

Authentication Bypass Using an Alternate Path or Channel vulnerability in WPExperts Post SMTP allows Authentication Bypass.This issue affects Post ...

WPExperts Post SMTP n/a CVE