Sign in

CyberAlerts

@cyberalerts.bsky.social
49 followers 14 following 427 posts

🚨 Automated posting of Known Exploited Vulnerabilities (KEV) from CyberAlerts.io

PostsRepliesMedia
CyberAlerts @cyberalerts.bsky.social · 14/08/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Command Injection Vulnerability CVE-2025-8876
cyberalerts.io
Command Injection Vulnerability - CyberAlerts
View detailed information about CVE-2025-8876 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 13/08/2025
🚨 New CISA Vulnerability Alert 🚨 : N-able N-Central Command Injection Vulnerability CVE-2025-8876
cyberalerts.io
N-able N-Central Command Injection Vulnerability - CyberAlerts
View detailed information about CVE-2025-8876 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 12/08/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: RARLAB WinRAR Path Traversal Vulnerability CVE-2025-8088
cyberalerts.io
RARLAB WinRAR Path Traversal Vulnerability - CyberAlerts
View detailed information about CVE-2025-8088 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 08/08/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: Path traversal vulnerability in WinRAR CVE-2025-8088
cyberalerts.io
Path traversal vulnerability in WinRAR - CyberAlerts
View detailed information about CVE-2025-8088 on CyberAlerts
001
CyberAlerts @cyberalerts.bsky.social · 05/08/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability CVE-2020-25078
cyberalerts.io
D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability - CyberAlerts
View detailed information about CVE-2020-25078 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 31/07/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged... CVE-2024-39717
cyberalerts.io
The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged... - CyberAlerts
View detailed information about CVE-2024-39717 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 31/07/2025
🚨 New CISA Vulnerability Alert 🚨 : Apache OFBiz: Unauthenticated endpoint could allow execution of screen rendering code CVE-2024-38856
cyberalerts.io
Apache OFBiz: Unauthenticated endpoint could allow execution of screen rendering code - CyberAlerts
View detailed information about CVE-2024-38856 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 : Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via SVG animate attributes. CVE-2024-37383
cyberalerts.io
Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via SVG animate attributes. - CyberAlerts
View detailed information about CVE-2024-37383 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full... CVE-2024-37085
cyberalerts.io
VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full... - CyberAlerts
View detailed information about CVE-2024-37085 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect CVE-2024-3400
cyberalerts.io
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect - CyberAlerts
View detailed information about CVE-2024-3400 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 : there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution... CVE-2024-32896
cyberalerts.io
there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution... - CyberAlerts
View detailed information about CVE-2024-32896 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi command injection CVE-2024-3273
cyberalerts.io
D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi command injection - CyberAlerts
View detailed information about CVE-2024-3273 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi hard-coded credentials CVE-2024-3272
cyberalerts.io
D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi hard-coded credentials - CyberAlerts
View detailed information about CVE-2024-3272 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated attacker within the same... CVE-2024-29824
cyberalerts.io
An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated attacker within the same... - CyberAlerts
View detailed information about CVE-2024-29824 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 : there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution... CVE-2024-29748
cyberalerts.io
there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution... - CyberAlerts
View detailed information about CVE-2024-29748 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 : there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution... CVE-2024-29745
cyberalerts.io
there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution... - CyberAlerts
View detailed information about CVE-2024-29745 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: SolarWinds Serv-U L Directory Transversal Vulnerability CVE-2024-28995
cyberalerts.io
SolarWinds Serv-U L Directory Transversal Vulnerability - CyberAlerts
View detailed information about CVE-2024-28995 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: SolarWinds Web Help Desk Hardcoded Credential Vulnerability CVE-2024-28987
cyberalerts.io
SolarWinds Web Help Desk Hardcoded Credential Vulnerability - CyberAlerts
View detailed information about CVE-2024-28987 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: Information disclosure CVE-2024-24919
cyberalerts.io
Information disclosure - CyberAlerts
View detailed information about CVE-2024-24919 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 : Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by... CVE-2024-23897
cyberalerts.io
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by... - CyberAlerts
View detailed information about CVE-2024-23897 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13,... CVE-2024-23113
cyberalerts.io
A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13,... - CyberAlerts
View detailed information about CVE-2024-23113 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and... CVE-2024-21893
cyberalerts.io
A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and... - CyberAlerts
View detailed information about CVE-2024-21893 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Process Extension). The... CVE-2024-21287
cyberalerts.io
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Software Development Kit, Process Extension). The... - CyberAlerts
View detailed information about CVE-2024-21287 on CyberAlerts
010
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense... CVE-2024-20481
cyberalerts.io
A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense... - CyberAlerts
View detailed information about CVE-2024-20481 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plug-ins and that has been available in Cisco Adaptive... CVE-2024-20359
cyberalerts.io
A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plug-ins and that has been available in Cisco Adaptive... - CyberAlerts
View detailed information about CVE-2024-20359 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 30/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: A vulnerability in the management and VPN web servers for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD)... CVE-2024-20353
cyberalerts.io
A vulnerability in the management and VPN web servers for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD)... - CyberAlerts
View detailed information about CVE-2024-20353 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 29/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Authentication bypass using an alternate path or channel CVE-2024-1709
cyberalerts.io
Authentication bypass using an alternate path or channel - CyberAlerts
View detailed information about CVE-2024-1709 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 28/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: LoadMaster Pre-Authenticated OS Command Injection CVE-2024-1212
cyberalerts.io
LoadMaster Pre-Authenticated OS Command Injection - CyberAlerts
View detailed information about CVE-2024-1212 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 28/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) CVE-2024-0012
cyberalerts.io
PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) - CyberAlerts
View detailed information about CVE-2024-0012 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 28/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability CVE-2023-2533
cyberalerts.io
PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability - CyberAlerts
View detailed information about CVE-2023-2533 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 22/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: Microsoft SharePoint Code Injection Vulnerability CVE-2025-49704
cyberalerts.io
Microsoft SharePoint Code Injection Vulnerability - CyberAlerts
View detailed information about CVE-2025-49704 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 20/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Microsoft SharePoint Deserialization of Untrusted Data Vulnerability CVE-2025-53770
cyberalerts.io
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability - CyberAlerts
View detailed information about CVE-2025-53770 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 18/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and consequently allows remote... CVE-2025-54309
cyberalerts.io
CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and consequently allows remote... - CyberAlerts
View detailed information about CVE-2025-54309 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 18/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Fortinet FortiWeb SQL Injection Vulnerability CVE-2025-25257
cyberalerts.io
Fortinet FortiWeb SQL Injection Vulnerability - CyberAlerts
View detailed information about CVE-2025-25257 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 17/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: LILIN DVR Arbitrary File Read via net_html.cgi CVE-2025-34130
cyberalerts.io
LILIN DVR Arbitrary File Read via net_html.cgi - CyberAlerts
View detailed information about CVE-2025-34130 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 16/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: LILIN DVR RCE via Malicious FTP/NTP Configuration CVE-2025-34129
cyberalerts.io
LILIN DVR RCE via Malicious FTP/NTP Configuration - CyberAlerts
View detailed information about CVE-2025-34129 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 14/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability CVE-2025-47812
cyberalerts.io
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability - CyberAlerts
View detailed information about CVE-2025-47812 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 10/07/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability CVE-2025-5777
cyberalerts.io
Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability - CyberAlerts
View detailed information about CVE-2025-5777 on CyberAlerts
021
CyberAlerts @cyberalerts.bsky.social · 07/07/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability CVE-2019-9621
cyberalerts.io
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability - CyberAlerts
View detailed information about CVE-2019-9621 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 02/07/2025
🚨 New CISA Vulnerability Alert 🚨 : Google Chromium V8 Type Confusion Vulnerability CVE-2025-6554
cyberalerts.io
Google Chromium V8 Type Confusion Vulnerability - CyberAlerts
View detailed information about CVE-2025-6554 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 01/07/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability CVE-2025-48928
cyberalerts.io
TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability - CyberAlerts
View detailed information about CVE-2025-48928 on CyberAlerts
010
CyberAlerts @cyberalerts.bsky.social · 30/06/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability CVE-2025-6543
cyberalerts.io
Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability - CyberAlerts
View detailed information about CVE-2025-6543 on CyberAlerts
010
CyberAlerts @cyberalerts.bsky.social · 25/06/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: D-Link DIR-859 HTTP POST Request hedwig.cgi path traversal CVE-2024-0769
cyberalerts.io
D-Link DIR-859 HTTP POST Request hedwig.cgi path traversal - CyberAlerts
View detailed information about CVE-2024-0769 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 25/06/2025
🚨 New CISA Vulnerability Alert 🚨 MEDIUM: Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability CVE-2019-6693
cyberalerts.io
Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability - CyberAlerts
View detailed information about CVE-2019-6693 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 24/06/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Hikka vulnerable to RCE through dangling web interface CVE-2025-52572
cyberalerts.io
Hikka vulnerable to RCE through dangling web interface - CyberAlerts
View detailed information about CVE-2025-52572 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 24/06/2025
🚨 New CISA Vulnerability Alert 🚨 CRITICAL: Linksys Routers E/WAG/WAP/WES/WET/WRT-Series CVE-2025-34037
cyberalerts.io
Linksys Routers E/WAG/WAP/WES/WET/WRT-Series - CyberAlerts
View detailed information about CVE-2025-34037 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 17/06/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: Linux Kernel Improper Ownership Management Vulnerability CVE-2023-0386
cyberalerts.io
Linux Kernel Improper Ownership Management Vulnerability - CyberAlerts
View detailed information about CVE-2023-0386 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 16/06/2025
🚨 New CISA Vulnerability Alert 🚨 : This issue was addressed with improved checks. This issue is fixed in watchOS 11.3.1, macOS Ventura 13.7.4, iOS 15.8.4 and iPadOS 15.8.4, iOS... CVE-2025-43200
cyberalerts.io
This issue was addressed with improved checks. This issue is fixed in watchOS 11.3.1, macOS Ventura 13.7.4, iOS 15.8.4 and iPadOS 15.8.4, iOS... - CyberAlerts
View detailed information about CVE-2025-43200 on CyberAlerts
011
CyberAlerts @cyberalerts.bsky.social · 16/06/2025
🚨 New CISA Vulnerability Alert 🚨 HIGH: TP-Link Multiple Routers Command Injection Vulnerability CVE-2023-33538
cyberalerts.io
TP-Link Multiple Routers Command Injection Vulnerability - CyberAlerts
View detailed information about CVE-2023-33538 on CyberAlerts
000
CyberAlerts @cyberalerts.bsky.social · 11/06/2025
Unfortunately, CyberAlerts is not profitable as a business and it is time to shut it down. This has not been an easy decision. After 6+ months of costs and no income, it is not sustainable. Will be taken offline and your user data permanently deleted on June 30th, 2025.
001