Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 CVE-2025-20265

Cisco Secure Firewall Management Center Software Radius Remote Code Execution Vulnerability_CVE-2025-20265

A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, re...

Cisco Cisco Firepower Management Center 7.0.7 CVE
CRITICAL 9.8 TALOSBLOG:2E575...

What happened in Vegas (that you actually want to know about)_TALOSBLOG:2E5750634BF4A53879ACA24A74E002C6

![What happened in Vegas \(that you actually want to know about\)](https://blog.talosintelligence.com/content/images/2025/08/threat-source-newslett...

N/A N/A TALOSBLOG
CRITICAL 9.8 CVE-2025-51451

CVE-2025-51451_CVE-2025-51451

In TOTOLINK EX1200T firmware 4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2025-50594

CVE-2025-50594_CVE-2025-50594

An issue was discovered in /Code/Websites/DanpheEMR/Controllers/Settings/SecuritySettingsController.cs in Danphe Health Hospital Management System ...

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2025-52385

CVE-2025-52385_CVE-2025-52385

An issue in Studio 3T v.2025.1.0 and before allows a remote attacker to execute arbitrary code via a crafted payload to the child_process module

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2025-8047

Multiple Plugins from itayamar – Supply Chain Compromise_CVE-2025-8047

The disable-right-click-powered-by-pixterme through v1.2 and pixter-image-digital-license thtough v1.0 WordPress plugins load a JavaScript file whi...

Unknown disable-right-click-powered-by-pixterme CVE
CRITICAL 9.4 CVE-2025-8876

Command Injection Vulnerability_CVE-2025-8876

Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: before 2025.3.1.

N-able N-central CVE
CRITICAL 9.4 CVE-2025-8875

Insecure Deserialization Vulnerability_CVE-2025-8875

Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1.

N-able N-central CVE
CRITICAL 9.8 CVE-2025-43982

CVE-2025-43982_CVE-2025-43982

Shenzhen Tuoshi NR500-EA RG500UEAABxCOMSLICv3.4.2731.16.43 devices enable the SSH service by default. There is a hidden hard-coded root account tha...

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2025-43986

CVE-2025-43986_CVE-2025-43986

An issue was discovered on KuWFi GC111 GC111-GL-LM321_V3.0_20191211 devices. The TELNET service is enabled by default and exposed over the WAN inte...

n/a n/a n/a CVE