CVE-2025-25711 - Privilege Escalation in dtp.ae tNexus Airport View v2.8 via ProfileID Injection
---
Intro
A new vulnerability, CVE-2025-25711, has been discovered in the popular airport management software, dtp.ae tNexus Airport View v2.8. The flaw lets
CVE-2025-20138 - Privilege Escalation in Cisco IOS XR CLI – How Attackers Get Root via Bad Input Validation
A newly discovered security flaw, CVE-2025-20138, has rocked the networking community. This is a privilege escalation vulnerability affecting the Command Line Interface (CLI) of Cisco
CVE-2025-2240: Out-of-Memory Vulnerability in Smallrye Fault Tolerance May Lead to Denial of Service
A critical vulnerability has been identified in Smallrye, a popular open-source implementation of the Eclipse MicroProfile project. The vulnerability, which is tracked as CVE-2025-2240, resides
CVE-2025-29891 - Bypass/Injection Vulnerability in Apache Camel—Details, Exploit, and How to Stay Safe
Published: June 2024
Severity: Medium–High
Affected Versions:
What is CVE-2025-29891?
A serious bypass/injection vulnerability has been found in multiple versions of Apache Camel,
CVE-2025-27915 - Stored XSS in Zimbra 9/10 Allows Email Hijack via Malicious ICS Files
A newly disclosed vulnerability, CVE-2025-27915, affects Zimbra Collaboration Suite (ZCS) versions 9., 10., and 10.1. Zimbra is a widely-used open-source email and collaboration platform
Episode
00:00:00
00:00:00