You can now share your thoughts on vulnerability CVE-2025-39581 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-39581
themifyme - Themify Shortcodes
You can now share your thoughts on vulnerability CVE-2025-39581 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-39581
themifyme - Themify Shortcodes
You can now share your thoughts on vulnerability CVE-2024-56406 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2024-56406
perl - perl
Vulnerability CVE-2025-22457 has received a comment on Vulnerability-Lookup:
PoC for CVE-2025-22457
http://vulnerability.circl.lu/comment/1140d063-7d5a-4971-8e08-9514c03dfef7
You can now share your thoughts on vulnerability CVE-2025-3022 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-3022
e-solutions - e-management
A new bundle, Ingress NGINX Controller for Kubernetes - Vulnerabilities fixed in controller-v1.12.1, has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/84edafcd-42a7-4c30-96f8-87de8e73e1ab
A new bundle, Pre-authentication SQL injection to RCE in GLPI (CVE-2025-24799/CVE-2025-24801), has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/2002296b-dd57-45e0-b127-feeaa53cc204
Vulnerability CVE-2024-56325 has received a comment on Vulnerability-Lookup:
Apache Pinot Improper Neutralization of Special Elements Authentication Bypass Vulnerability
http://vulnerability.circl.lu/comment/a9f2cad3-dbfc-4703-9c5f-9af054301f88
You can now share your thoughts on vulnerability CVE-2025-1661 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-1661
realmag777 - HUSKY – Products Filter Professional for WooCommerce
A new bundle, VMSA-2025-0004: VMware ESXi, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2025-22224, CVE-2025-22225, CVE-2025-22226), has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/f5e26632-2e27-44d4-8620-cfc829f6488a
Vulnerability CVE-2025-24085 has received a comment on Vulnerability-Lookup:
Formal Vulnerability Disclosure for iPhone 15 Pro Max (iOS 18.3.1)
http://vulnerability.circl.lu/comment/e2a22b2f-4064-4f7f-a7c5-6b9f4b3cd280
New blog post on the Vulnerability-Lookup blogs:
LLMs + Vulnerability-Lookup: What We’re Testing and Where We’re Headed
https://www.vulnerability-lookup.org/2025/02/26/exploring-llm-in-vulnerability-lookup/
Vulnerability CVE-2024-49587 has received a comment on Vulnerability-Lookup:
Palantir - Security Bulletin - CVE-2024-49581 - Palantir’s External Artifacts service (versions 105.110.1 through 105.115.0)
http://vulnerability.circl.lu/comment/6b5acef0-e6ed-4fe9-9181-33b50f601ae5
A new bundle, Console Chaos: A Campaign Targeting Publicly Exposed Management Interfaces on Fortinet FortiGate Firewalls - Arctic Wolf, has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/9a35bcae-d831-491f-945c-1fbd54769c38
A new bundle, February Security Advisory Ivanti Connect Secure (ICS),Ivanti Policy Secure (IPS) and Ivanti Secure Access Client (ISAC) (Multiple CVEs), has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/85f9fd3a-b2ef-443b-b091-2cad7418236f
Vulnerability CVE-2024-56161 has received a comment on Vulnerability-Lookup:
PoC - AMD EPYC 7B13 64-Core Processor (Milan) and AMD Ryzen 9 7940HS w/ Radeon 780M Graphics (Phoenix).
http://vulnerability.circl.lu/comment/4479dea7-72fb-4d91-90f4-95ffec3e0310
A new bundle, Threat Actors Use CVE-2019-18935 to Deliver Reverse Shells and…, has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/a4c1e6ab-1786-4631-8cc9-dfa00c7171a6
A new bundle, CISA and FBI Release Advisory on How Threat Actors Chained Vulnerabilities in Ivanti Cloud Service Applications, has been published on Vulnerability-Lookup:
http://vulnerability.circl.lu/bundle/bd1f7e06-4107-433a-9fa6-fbf3db5cfa34
Vulnerability CVE-2024-54507 has received a comment on Vulnerability-Lookup:
Proof Of Concept
http://vulnerability.circl.lu/comment/25c99b1c-5ba6-4c88-bac6-3ad6c5e525b4
New post from the #VulnerabilityLookup project about #Shadowserver and Sightings:
https://www.vulnerability-lookup.org/2025/01/22/shadowserver-sightings-in-vulnerability-lookup/
You can subscribe to the blog:
https://www.vulnerability-lookup.org/news/index.xml !
I am a bit ashamed of this release but here it is, FediVuln 0.8.0:
https://github.com/CIRCL/FediVuln/releases/tag/v0.8.0
which is providing sightings for Vulnerability-Lookup from the Fediverse and since recently capable of sending status related to new bundles and comments !