CVEnew Profile Banner
CVE Profile
CVE

@CVEnew

Followers
55K
Following
5
Media
0
Statuses
207K

Official account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom

Joined January 2017
Don't wanna be here? Send us removal request.
@CVEnew
CVE
15 minutes
CVE-2025-53508 Multiple products provided by iND Co.,Ltd contain an OS command injection vulnerability. If exploited, an arbitrary OS command may be executed and sensitive informati…
0
0
0
@CVEnew
CVE
15 minutes
CVE-2025-8147 The LWSCache plugin for WordPress is vulnerable to unauthorized modification of data due to improper authorization on the lwscache_activatePlugin() function in all vers…
0
0
0
@CVEnew
CVE
15 minutes
CVE-2025-9374 The Ultimate Tag Warrior Importer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.2. This is due to missing or …
0
0
0
@CVEnew
CVE
15 minutes
CVE-2025-8619 The OSM Map Widget for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Map Block URL in all versions up to, and including, …
0
0
0
@CVEnew
CVE
15 minutes
CVE-2025-8290 The List Subpages plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘title’ parameter in all versions up to, and including, 1.0.6 due to insuffi…
0
0
0
@BTCCexchange
BTCC
4 days
Bitcoin’s on fire at $112K! Time to flip the charts on BTCC!.Exploring Cryptocurrency with Jaren Jackson Jr.🏀.
0
5
12
@CVEnew
CVE
15 minutes
CVE-2025-9441 The iATS Online Forms plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order' parameter in all versions up to, and including, 1.2 due to insuffic…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-9590 A vulnerability was identified in Weaver E-Mobile Mobile Management Platform up to 20250813. Affected by this vulnerability is an unknown functionality. The manipulatio…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-58058 xz is a pure golang package for reading and writing xz-compressed files. Prior to version 0.5.14, it is possible to put data in front of an LZMA-encoded byte stream w…
0
1
0
@CVEnew
CVE
1 hour
CVE-2025-9591 A security vulnerability has been detected in ZrLog up to 3.1.5. This vulnerability affects unknown code of the file /api/admin/template/config of the component Theme C…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-9592 A vulnerability was detected in itsourcecode Apartment Management System 1.0. This issue affects some unknown processing of the file /report/bill_info.php. Performing m…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-58061 OpenEBS Local PV RawFile allows dynamic deployment of Stateful Persistent Node-Local Volumes & Filesystems for Kubernetes. Prior to version 0.10.0, persistent volume …
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-58062 LSTM-Kirigaya's openmcp-client is a vscode plugin for mcp developer. Prior to version 0.1.12, when users on a Windows platform connect to an attacker controlled MCP s…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-9593 A flaw has been found in itsourcecode Apartment Management System 1.0. Impacted is an unknown function of the file /report/unit_status_info.php. Executing manipulation …
0
0
0
@CPAC
CPAC
16 days
Zohran Mamdani: He votes for activists, not you
30
31
99
@CVEnew
CVE
1 hour
CVE-2025-9594 A vulnerability has been found in itsourcecode Apartment Management System 1.0. The affected element is an unknown function of the file /report/complain_info.php. The m…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-48979 An Improper Input Validation in UISP Application could allow a Command Injection by a malicious actor with High Privileges and local access.
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-9595 A vulnerability was found in code-projects Student Information Management System 1.0. The impacted element is an unknown function of the file /login.php. The manipulati…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-9596 A vulnerability was determined in itsourcecode Sports Management System 1.0. This affects an unknown function of the file /login.php. This manipulation of the argument …
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-54142 Akamai Ghost before 2025-07-21 allows HTTP Request Smuggling via an OPTIONS request that has an entity body, because there can be a subsequent request within the pers…
0
0
0
@CVEnew
CVE
1 hour
CVE-2025-9597 A vulnerability was identified in itsourcecode Apartment Management System 1.0. This impacts an unknown function of the file /o_dashboard/rented_all_info.php. Such mani…
0
0
0
@America1stLegal
America First Legal
1 month
WRECKED. Hirono: Has any court said that DEI is unconstitutional? Yes or no?. Hamilton: Yes. Hirono: Which court?. Hamilton: The United States Supreme Court. Hirono: I disagree with you…. Hamilton: You can go read it yourself. 🔥🔥🔥
2K
11K
52K
@CVEnew
CVE
1 hour
CVE-2025-9598 A security flaw has been discovered in itsourcecode Apartment Management System 1.0. Affected is an unknown function of the file /setting/year_setup.php. Performing man…
0
0
0