CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-22224

Description: VMware ESXi and Workstation contain a time-of-check time-of-use (TOCTOU) race condition vulnerability that leads to an out-of-bounds write. Successful exploitation enables an attacker with local administrative privileges on a virtual machine to execute code as the virtual machine's VMX process running on the host.

CVSS: CRITICAL (9.3)

EPSS Score: 24.22%

Source: CISA KEV
March 4th, 2025 (4 months ago)

CVE-2025-22225

Description: VMware ESXi contains an arbitrary write vulnerability. Successful exploitation allows an attacker with privileges within the VMX process to trigger an arbitrary kernel write leading to an escape of the sandbox.

CVSS: HIGH (8.2)

EPSS Score: 8.45%

Source: CISA KEV
March 4th, 2025 (4 months ago)

CVE-2025-22226

Description: VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. Successful exploitation allows an attacker with administrative privileges to a virtual machine to leak memory from the vmx process.

CVSS: HIGH (7.1)

EPSS Score: 8.35%

Source: CISA KEV
March 4th, 2025 (4 months ago)
Description: The cybersecurity job market nowadays is facing an unusual paradox: Many roles seem open, but competition and hiring practices can make securing a position a real challenge.
Source: Dark Reading
March 4th, 2025 (4 months ago)
Description: ZAIDDOS Targeted the Website of ZeroStresser
Source: DarkWebInformer
March 4th, 2025 (4 months ago)

CVE-2025-27426

Description: Malicious websites utilizing a server-side redirect to an internal error page could result in a spoofed website URL This vulnerability affects Firefox for iOS < 136.

EPSS Score: 0.03%

Source: CVE
March 4th, 2025 (4 months ago)

CVE-2025-27425

Description: Scanning certain QR codes that included text with a website URL could allow the URL to be opened without presenting the user with a confirmation alert first This vulnerability affects Firefox for iOS < 136.

EPSS Score: 0.03%

Source: CVE
March 4th, 2025 (4 months ago)

CVE-2025-27424

Description: Websites redirecting to a non-HTTP scheme URL could allow a website address to be spoofed for a malicious page This vulnerability affects Firefox for iOS < 136.

EPSS Score: 0.03%

Source: CVE
March 4th, 2025 (4 months ago)

CVE-2025-1943

Description: Memory safety bugs present in Firefox 135 and Thunderbird 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 136.

EPSS Score: 0.07%

Source: CVE
March 4th, 2025 (4 months ago)

CVE-2025-1942

Description: When String.toUpperCase() caused a string to get longer it was possible for uninitialized memory to be incorporated into the result string This vulnerability affects Firefox < 136.

EPSS Score: 0.09%

Source: CVE
March 4th, 2025 (4 months ago)