Topic: security patch

  • Cisco patches critical flaw in enterprise comms platform (CVE-2025-20309)

    Cisco patches critical flaw in enterprise comms platform (CVE-2025-20309)

    Cisco has released an urgent patch for a critical vulnerability (CVE-2025-20309) involving default root credentials, allowing attackers remote administrative access to affected systems. The flaw impacts Cisco Unified Communications Manager and its Session Management Edition, affecting specific En...

    Read More »
  • Patch Now: FortiWeb Pre-Auth RCE Exploits Released

    Patch Now: FortiWeb Pre-Auth RCE Exploits Released

    A critical vulnerability (CVE-2025-25257, 9.8/10 severity) in Fortinet's FortiWeb WAF allows unauthenticated remote code execution via SQL injection, requiring immediate patching. Exploits leverage improper SQL sanitization in the Fabric Connector, enabling attackers to inject malicious commands ...

    Read More »
  • AI-Powered Cursor IDE at Risk of Prompt Injection Attacks

    AI-Powered Cursor IDE at Risk of Prompt Injection Attacks

    A critical security flaw (CVE-2025-54135) in Cursor IDE, dubbed CurXecute, allows remote code execution via manipulated AI prompts, risking unauthorized system access. Attackers can exploit the Model Context Protocol (MCP) by injecting malicious prompts through third-party servers (e.g., Slack), ...

    Read More »
Close

Adblock Detected

We noticed you're using an ad blocker. To continue enjoying our content and support our work, please consider disabling your ad blocker for this site. Ads help keep our content free and accessible. Thank you for your understanding!