CVE-2025-4609 - Exploiting Mojo Handle Confusion in Chrome for Sandbox Escape (with Code Example)
A serious vulnerability, now tracked as CVE-2025-4609, hit Google Chrome on Windows recently. Before version 136..7103.113, Chrome had a bug in the Mojo
CVE-2025-21479 - Memory Corruption via Unauthorized GPU Micronode Command Execution — Details and Exploit Walkthrough
Published: June 2024
Severity: Critical
CVE ID: CVE-2025-21479
Vulnerable Component: GPU Driver Micronode Command Handler
Reported By: GPUsec Team
Overview
In April 2024, security researchers
CVE-2025-20298 - How Weak Directory Permissions in Splunk Universal Forwarder for Windows Expose Your Data
CVE-2025-20298 is a security vulnerability discovered in Splunk Universal Forwarder for Windows. Versions *below* 9.4.2, 9.3.4, 9.2.6, and 9.
CVE-2025-47181 - How Misplaced Link-Following in Microsoft Edge Lets Attackers Sneak In
A new security weakness surfaced in Microsoft Edge (Chromium-based) earlier this year, tracked as CVE-2025-47181. In simple terms, Edge fails to properly check shortcut links
CVE-2025-37899 - Deep Dive Into A "ksmbd" Use-After-Free Vulnerability (With Exploit Details & Patches)
The Linux kernel, powering much of the modern internet and many mission-critical systems, is no stranger to security threats. Today, we’ll break down CVE-2025-37899—
Episode
00:00:00
00:00:00