Posted by Seralys Research Team via Fulldisclosure on Oct 08
Seralys Security Advisory | https://www.seralys.com/researchPosted by josephgoyd via Fulldisclosure on Oct 07
The GitHub link has a write up on the attack-chain. Along with the CNVD certs that were issued for validation.Posted by full on Oct 07
Substack is down. If there is a replacement, it is appreciated.Posted by Stefan Kanthak via Fulldisclosure on Oct 07
On a fresh installation of the just released Windows 11 25H2 the former filePosted by josephgoyd via Fulldisclosure on Oct 02
Updated repo location: https://github.com/JGoyd/Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201Posted by josephgoyd via Fulldisclosure on Oct 02
Updated repo location: https://github.com/JGoyd/iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201Posted by Ron E on Sep 30
A denial-of-service vulnerability exists in Samtools and the underlyingPosted by Ron E on Sep 30
In the samtools coverage subcommand, the -w / --n-bins option allows thePosted by Ron E on Sep 30
A heap buffer overflow vulnerability exists in the geotifcp utility,Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-6 visionOS 26.0.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-5 macOS Sonoma 14.8.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-4 macOS Sequoia 15.7.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-3 macOS Tahoe 26.0.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-2 iOS 18.7.1 and iPadOS 18.7.1Posted by Apple Product Security via Fulldisclosure on Sep 30
APPLE-SA-09-29-2025-1 iOS 26.0.1 and iPadOS 26.0.1Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Sep 25
SEC Consult Vulnerability Lab Security Advisory < 20250925-0 >Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Sep 25
SEC Consult Vulnerability Lab Security Advisory < 20250923-0 >Posted by Thomas Weber | CyberDanube via Fulldisclosure on Sep 25
CyberDanube Security Research 20250919-0Posted by Thomas Weber | CyberDanube via Fulldisclosure on Sep 25
CyberDanube Security Research 20250909-0Posted by Antoine Martin via Fulldisclosure on Sep 25
1) About XpraPosted by Stefan Kanthak via Fulldisclosure on Sep 22
Hi @ll,Posted by Stefan Kanthak via Fulldisclosure on Sep 22
Hi @ll,Posted by Stefan Kanthak via Fulldisclosure on Sep 22
Hi @ll,Posted by Ron E on Sep 22
gmo2msg in libelf contains a stack-based buffer overflow in po/gmo2msg.cPosted by Andrey Stoykov on Sep 22
# Exploit Title: Stored HTML Injection - flatpressv1.4.1Posted by Andrey Stoykov on Sep 22
# Exploit Title: Current Password not Required When Changing Password -Posted by Burning River Cyber Con via Fulldisclosure on Sep 22
Burning River CyberCon is seeking submissions for our 2025 conference. We're looking for presentations on all thingsPosted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-12 Xcode 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-11 Safari 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-10 visionOS 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-9 watchOS 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-8 tvOS 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-7 macOS Sonoma 14.8Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-6 macOS Sequoia 15.7Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-5 macOS Tahoe 26Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-4 iOS 15.8.5 and iPadOS 15.8.5Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-3 iOS 16.7.12 and iPadOS 16.7.12Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-2 iOS 18.7 and iPadOS 18.7Posted by Apple Product Security via Fulldisclosure on Sep 15
APPLE-SA-09-15-2025-1 iOS 26 and iPadOS 26Posted by Ron E on Sep 15
libwmf is vulnerable to an integer overflow / undefined behavior conditionPosted by Ron E on Sep 15
A vulnerability exists in CHMLib (latest release 0.40) when parsingPosted by Ron E on Sep 15
An integer overflow vulnerability exists in the LZX decompression routinesPosted by Ron E on Sep 15
Multiple functions in libvips invoke callbacks through incorrectly castPosted by Ron E on Sep 15
A heap buffer overflow vulnerability exists in gbsplay 0.0.100-18-g50352f3Posted by Ron E on Sep 15
libicns fails to validate element size fields in .icns files properly. APosted by Ron E on Sep 15
libicns incorrectly handles certain byte values when parsing .icns files.Posted by Ron E on Sep 15
libicns, a library used for parsing Apple ICNS image files, contains a