Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 MS:CVE-2025-8578

Chromium: CVE-2025-8578 Use after free in Cast_MS:CVE-2025-8578

Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

N/A N/A MSCVE
HIGH 7 CVE-2025-26513

CVE-2025-26513_CVE-2025-26513

The installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerability which when successfully exploited could al...

NetApp SAN Host Utilities for Windows CVE
HIGH 8.2 CVE-2025-53787

Microsoft 365 Copilot BizChat Information Disclosure Vulnerability_CVE-2025-53787

{“lastseen”:””,”description”:””,”published”:”2025-08-07T21:01:04.272Z”,&#82...

Microsoft Microsoft 365 Copilot's Business Chat N/A CVE
HIGH 7.8 THN:AC4C3FA038B...

SocGholish Malware Spread via Ad Tools; Delivers Access to LockBit, Evil Corp, and Others_THN:AC4C3FA038B5261D22D8E00BD8889587

...

N/A N/A THN
HIGH 8.8 CVE-2025-51629

CVE-2025-51629_CVE-2025-51629

A cross-site scripting (XSS) vulnerability in the PdfViewer component of Agenzia Impresa Eccobook 2.81.1 allows attackers to execute arbitrary web ...

N/A N/A CVE
HIGH 8.8 CVE-2025-24000

WordPress Post SMTP plugin <= 3.2.0 - Account Takeover Vulnerability_CVE-2025-24000

Authentication Bypass Using an Alternate Path or Channel vulnerability in WPExperts Post SMTP allows Authentication Bypass.This issue affects Post ...

WPExperts Post SMTP n/a CVE
HIGH 7.4 CVE-2025-55137

CVE-2025-55137_CVE-2025-55137

LinkJoin through 882f196 mishandles lacks type checking in password reset.

Latkecrszy LinkJoin CVE
HIGH 7.4 CVE-2025-55138

CVE-2025-55138_CVE-2025-55138

LinkJoin through 882f196 mishandles token ownership in password reset.

Latkecrszy LinkJoin CVE
HIGH 7 CVE-2025-47907

CVE-2025-47907_CVE-2025-47907

Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the returned Rows can re...

N/A N/A CVE
HIGH 8.7 CVE-2025-7054

Infinite loop triggered by connection ID retirement_CVE-2025-7054

Cloudflare quiche was discovered to be vulnerable to an infinite loop when sending packets containing RETIRE_CONNECTION_ID frames. QUIC connection...

Cloudflare quiche 0.15.0 CVE