CVE-2025-2917 - Path Traversal in ChestnutCMS up to 1.5.3 via `/dev-api/cms/file/read` – Analysis & Exploit
CVE-2025-2917 is a serious vulnerability recently discovered in ChestnutCMS versions up to 1.5.3. This vulnerability allows a remote attacker to read arbitrary files
CVE-2024-12619 - Hidden Gate – Uncovering Unauthorized Project Access in GitLab CE/EE
Summary:
A critical security flaw, CVE-2024-12619, was recently found in GitLab Community and Enterprise Editions (GitLab CE/EE). This vulnerability, present in versions from 16.
CVE-2024-10307: Uncontrolled CPU Consumption in GitLab EE/CE caused by Maliciously Crafted Files
Security researchers have discovered a vulnerability in GitLab Enterprise Edition (EE) and GitLab Community Edition (CE) affecting all versions from 12.10 before 17.8.
CVE-2025-2294 - Critical Local File Inclusion Vulnerability in Kubio AI Page Builder for WordPress
A newly disclosed security flaw, tracked as CVE-2025-2294, exposes millions of WordPress sites using the popular Kubio AI Page Builder plugin to a devastating Local
CVE-2025-2855 - Deserialization Vulnerability in elunez eladmin Up to 2.7 (Exploit Details & Analysis)
Recently, a new vulnerability CVE-2025-2855 was found in elunez eladmin, an open-source admin system popular for Java and Spring Boot applications. This vulnerability affects versions
Episode
00:00:00
00:00:00