CVE-2025-27816 - Insecure Deserialization in Arctera InfoScale’s Windows Plugin_Host Service
In early 2025, security researchers discovered a serious vulnerability tracked as CVE-2025-27816 in Arctera InfoScale versions 7. through 8..2. This flaw comes from insecure
CVE-2024-57972 - How a Simple API Flood Can Bring Down Microsoft HoloLens Devices
Microsoft HoloLens isn't just cool tech; it's the backbone of mixed reality apps in labs, hospitals, factories, and other critical workplaces.
CVE-2025-1080 – Exploit in LibreOffice URI Scheme to Hijack MS SharePoint Server Integration
LibreOffice, the popular open-source office application suite, is affected by a critical security vulnerability that allows an attacker to execute arbitrary code on the victim’
CVE-2025-27507 - Critical IDOR in ZITADEL Allows Account Takeover via LDAP Config Manipulation
ZITADEL is a widely used open-source identity and access management (IAM) solution, helping organizations manage authentication, user registration, and authorization. Designed to be flexible, secure,
CVE-2024-11957 - Breaking Down an Unpatched Digital Signature Bug in Kingsoft WPS Office (ksojscore.dll) Enabling Arbitrary DLL Loading
Kingsoft WPS Office is a widely-used productivity suite that's especially popular in China and among users who want a free alternative to Microsoft
Episode
00:00:00
00:00:00