Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

kb.cert.org

CERT Recently Published Vulnerability Notes

Get the latest updates from CERT Recently Published Vulnerability Notes directly as they happen.

Follow now 134 followers

Latest posts

Last updated about 1 hour ago

VU#383552: thelibrarian does not secure its interface, allowing for access to internal system data

about 1 hour ago

Overview Multiple vulnerabilities were discovered in The Librarian, an AI-powered personal assistant...

VU#650657: Livewire Filemanager contains an insecure .php component that allows for unauthenticated RCE in Laravel Products

about 1 hour ago

Overview A vulnerability, tracked as CVE-2025-14894, has been discovered within Livewire Filemanager,...

VU#472136: Information Leak and DoS Vulnerabilities in Redmi Buds 3 Pro through 6 Pro

about 23 hours ago

Overview Redmi Buds, a series of Bluetooth earbuds produced and sold by...

VU#361400: BeeS Software Solutions BeeS Examination Tool (BET) portal contains SQL injection vulnerability

7 days ago

Overview The BeeS Examination Tool (BET) portal from BeeS Software Solutions contains...

VU#295169: TOTOLINK EX200 firmware-upload error handling can activate an unauthenticated root telnet service

10 days ago

Overview A flaw in the firmware-upload error-handling logic of the TOTOLINK EX200...

VU#420440: Vulnerable Python version used in Forcepoint One DLP Client

10 days ago

Overview A vulnerability in the Forcepoint One DLP Client allows bypass of...

VU#382314: Vulnerability in UEFI firmware modules prevents IOMMU initialization on some UEFI-based motherboards

30 days ago

Overview A newly identified vulnerability in some UEFI-supported motherboard models leaves systems...

VU#651499: Siemens Gridscale X Prepay username enumeration and account lock bypass vulnerability

about 1 month ago

Overview Vulnerabilities have been identified in Siemens Gridscale X Prepay that allows...

VU#821724: TOTOLINK's X5000R's (AX1800 router) lacks authentication for telnet

about 1 month ago

Overview An unauthenticated HTTP request can enable telnet which may lead to...

VU#404544: Vulnerabilities identified in PCIe Integrity and Data Encryption (IDE) protocol specification

about 1 month ago

Overview PCI Express Integrity and Data Encryption (PCIe IDE), introduced in the...

VU#441887: Duc contains a stack buffer overflow vulnerability in the buffer_get function, allowing for out-of-bounds memory read

about 1 month ago

Overview Duc, an open-source disk management tool, contains a stack-based buffer overflow...

VU#633103: Insufficient Session Cookie Invalidation in nopCommerce ASP.NET Core eCommerce Platform

about 2 months ago

Overview nopCommerce, an ecommerce platform, fails to invalidate session cookies upon user...