CVEFeed Newsroom – Latest Cybersecurity Updates

The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.

  • seclists.org
[KIS-2025-13] PKP-WAL <= 3.5.0-3 (X-Forwarded-Host) LESS Code Injection Vulnerability

Full Disclosure mailing list archives From: Egidio Romano <n0b0d13s () gmail com> Date: Tue, 23 Dec 2025 12:20:01 +0100 ----------------------------------------------------------------------- PKP-WAL ...

Published Date: Dec 28, 2025 (1 day, 21 hours ago)
  • seclists.org
[KIS-2025-12] PKP-WAL <= 3.5.0-1 (baseColour) LESS Code Injection Vulnerability

Full Disclosure mailing list archives From: Egidio Romano <n0b0d13s () gmail com> Date: Tue, 23 Dec 2025 12:19:02 +0100 ----------------------------------------------------------------- PKP-WAL <= 3.5 ...

Published Date: Dec 28, 2025 (1 day, 21 hours ago)
  • seclists.org
[KIS-2025-11] Open Journal Systems <= 3.5.0-1 (NativeXmlIssueGalleyFilter.php) Path Traversal Vulnerability

Full Disclosure mailing list archives From: Egidio Romano <n0b0d13s () gmail com> Date: Tue, 23 Dec 2025 12:18:17 +0100 -------------------------------------------------------------------------------- ...

Published Date: Dec 28, 2025 (1 day, 21 hours ago)
  • seclists.org
[KIS-2025-10] PKP-WAL <= 3.5.0-1 (Institution Collector) SQL Injection Vulnerability

Full Disclosure mailing list archives From: Egidio Romano <n0b0d13s () gmail com> Date: Tue, 23 Dec 2025 12:17:34 +0100 ---------------------------------------------------------------------- PKP-WAL < ...

Published Date: Dec 28, 2025 (1 day, 21 hours ago)
  • CybersecurityNews
87,000+ MongoDB Instances Vulnerable to MongoBleed Flaw Exposed Online – PoC Exploit Released

A high-severity vulnerability in MongoDB Server that allows unauthenticated remote attackers to siphon sensitive data from database memory. Dubbed “MongoBleed” due to its automated similarities to the ...

Published Date: Dec 28, 2025 (1 day, 22 hours ago)
  • security.nl
NCSC verwacht op korte termijn misbruik van MongoDB-kwetsbaarheid

Het Nationaal Cyber Security Centrum (NCSC) verwacht dat aanvallers op korte termijn misbruik zullen maken van een kwetsbaarheid in MongoDB waarvoor een aantal dagen geleden een beveiligingsupdate ver ...

Published Date: Dec 27, 2025 (2 days, 13 hours ago)
  • CybersecurityNews
Mongobleed PoC Exploit Tool Released for MongoDB Flaw that Exposes Sensitive Data

A proof-of-concept (PoC) exploit dubbed “mongobleed” for CVE-2025-14847, a critical unauthenticated memory leak vulnerability in MongoDB’s zlib decompression handling. Dubbed by its creator Joe Desimo ...

Published Date: Dec 27, 2025 (2 days, 14 hours ago)
  • TheCyberThrone
CVE-2025-14847 affecting MongoDB

December 27, 2025CVE-2025-14847 exposes MongoDB Server to unauthenticated remote attacks through malformed zlib-compressed protocol headers, leaking uninitialized heap memory on port 27017. This high- ...

Published Date: Dec 27, 2025 (2 days, 15 hours ago)
  • The Hacker News
New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory

Dec 27, 2025Ravie LakshmananDatabase Security / Vulnerability A high-severity security flaw has been disclosed in MongoDB that could allow unauthenticated users to read uninitialized heap memory. Th ...

Published Date: Dec 27, 2025 (2 days, 18 hours ago)
  • CybersecurityNews
TeamViewer DEX Vulnerabilities Let Attackers Trigger DoS Attack and Expose Sensitive Data

Multiple critical vulnerabilities in TeamViewer DEX Client’s Content Distribution Service (NomadBranch.exe), formerly part of 1E Client. Affecting Windows versions before 25.11 and select older branch ...

Published Date: Dec 27, 2025 (2 days, 21 hours ago)

Filters

Filter news that are affecting your technology stack
Showing 10 of 8894 Results