A vulnerability classified as critical has been found in DevVN Image Hotspot Plugin up to 1.2.5 on WordPress. Affected is an unknown function. The manipulation leads to code injection.
This vulnerability is traded as CVE-2024-7656. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in Microsoft Edge. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2024-38207. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has placed a security flaw impacting Versa Director to its Known Exploited Vulnerabilities (KEV) catalog based on evidence of active exploitation.
The medium-severity vulnerability, tracked as CVE-2024-39717 (CVSS score: 6.6), is case of file upload bug impacting the "Change Favicon" feature that could allow a threat actor to
Meta Platforms on Friday became the latest company after Microsoft, Google, and OpenAI to expose the activities of an Iranian state-sponsored threat actor, who it said used a set of WhatsApp accounts that attempted to target individuals in Israel, Palestine, Iran, the U.K., and the U.S.
The activity cluster, which originated from Iran, "appeared to have focused on political and diplomatic