Robuta

Sponsor of the Day: Jerkmate
https://www.fujifilm.com/fb/en/news/11919e Notification about the vulnerability (CVE-2025-8355/8356) in Xerox FreeFlow Core | FUJIFILM... vulnerability cve 2025freeflow corenotification83558356 https://unit42.paloaltonetworks.com/mongobleed-cve-2025-14847/ Threat Brief: MongoDB Vulnerability (CVE-2025-14847) Database platform MongoDB disclosed CVE-2025-14847, called MongoBleed. This is an unauthenticated memory disclosure vulnerability with a CVSS score of 8.7. vulnerability cve 2025threat briefmongodb14847 https://www.aikido.dev/blog/react-next-js-dos-vulnerability-cve-2025-55184 React & Next.js DoS Vulnerability (CVE-2025-55184) Explained Dec 12, 2025 - CVE-2025-55184 is a React Server Components DoS flaw related to React2Shell. Learn who’s affected, how it works, and how to fully patch it. react next jsdos vulnerability cve2025explained https://modsecurity.org/20250521/possible-dos-vulnerability-cve-2025-47947-2025-may/ Possible DoS vulnerability: CVE-2025-47947 - 2025 May | Modsecurity Project We would like to share our take on CVE-2025-47947, which was published on May 21, 2025. possible dos vulnerabilitycve 2025modsecurity projectmay https://modsecurity.org/20250701/dos-vulnerability-cve-2025-52891-2025-july/ DoS vulnerability: CVE-2025-52891 - 2025 July | Modsecurity Project We would like to share our take on CVE-2025-52891, which was published on July 1, 2025. dos vulnerability cvemodsecurity project2025july https://www.windriver.com/security/vulnerability-responses/http2-madeyoureset-vulnerability SECURITY ALERT HTTP/2 MadeYouReset Vulnerability, CVE-2025-8671, CVE-2025-55163, CVE-2025-54500,... vulnerability cve 2025security alerthttp8671 https://www.picussecurity.com/resource/blog/react-flight-protocol-rce-vulnerability-cve-2025-55182-and-cve-2025-66478-explained React2Shell RCE Vulnerability: CVE-2025-55182 and CVE-2025-66478 Explained Dec 7, 2025 - Learn how the React CVE-2025-55182 and Next.js CVE-2025-66478 vulnerabilities work. Picus explains in detail how attackers exploit deserialization to achieve... vulnerability cve 2025react2shellrce55182explained https://www.haproxy.com/blog/protecting-against-sap-netweaver-vulnerability-cve-2025-31324 Protecting against SAP NetWeaver vulnerability (CVE-2025-31324) with HAProxy Jan 20, 2026 - Mitigate SAP NetWeaver CVE-2025-31324 with HAProxy. Learn how to block unauthenticated file uploads and protect your systems from severe risk. vulnerability cve 2025sap netweaverprotecting31324haproxy https://www.aikido.dev/blog/mongobleed-mongodb-zlib-vulnerability-cve-2025-14847 MongoBleed: MongoDB Zlib Vulnerability (CVE-2025-14847) Mar 17, 2026 - MongoBleed, tracked as CVE-2025-14847, allows unauthenticated memory disclosure in MongoDB via zlib compression. See impact and remediation. vulnerability cve 2025mongobleedmongodbzlib14847 https://www.haproxy.com/blog/protecting-against-nextjs-middleware-vulnerability-cve-2025-29927-with-haproxy Protecting against Next.js middleware vulnerability CVE-2025-29927 with HAProxy Jan 20, 2026 - A recently discovered security vulnerability requires attention from development teams using Next.js in production environments. vulnerability cve 2025next jsprotectingmiddlewarehaproxy https://modsecurity.org/20250602/dos-vulnerability-cve-2025-48866-2025-june/ DoS vulnerability: CVE-2025-48866 - 2025 June | Modsecurity Project We would like to share our take on CVE-2025-48866, which was published on June 2, 2025. dos vulnerability cvemodsecurity project2025june https://www.ruby-lang.org/en/news/2025/09/18/dos-rexml-cve-2025-58767/ CVE-2025-58767: DoS vulnerability in REXML | Ruby There is a DoS vulnerability in REXML gem. This vulnerability has been assigned the CVE identifier CVE-2025-58767. We strongly recommend upgrading the REXML ... cve 2025dos vulnerabilityruby https://www.haproxy.com/blog/october-2025-cve-2025-11230-haproxy-mjson-library-denial-of-service-vulnerability CVE-2025-11230: Denial of service vulnerability in HAProxy mjson library Oct 6, 2025 - The latest versions of HAProxy Community and HAProxy Enterprise have patches for a high severity denial of service vulnerability in the mjson library. cve 2025service vulnerabilitydenialhaproxylibrary https://www.herodevs.com/vulnerability-directory/cve-2025-22232 Vulnerability Directory | CVE-2025-22232 | Spring | HeroDevs Patch CVE-2025-22232 immediately to secure your systems from critical vulnerabilities. Protect your applications and prevent exploits with the latest updates... vulnerability directory cvespring herodevs2025 https://www.herodevs.com/vulnerability-directory/cve-2025-12848 Vulnerability Directory | CVE-2025-12848 | Drupal 7 | HeroDevs A medium-severity XSS flaw affects Drupal’s Webform Multiple File Upload module (≤7.1.6), allowing malicious filenames to trigger injected scripts. Learn... vulnerability directory cvedrupal 7 herodevs2025