Wednesday , June 24 2026

Recent Posts

CVE-2025-8069
High-severity flaw in AWS Client VPN Allows Privilege Escalation

Client VPN

AWS has issued a security patch for a severe local privilege escalation vulnerability (CVE-2025-8069) in its Windows Client VPN software. Rated at CVSS 7.8, this flaw allows non-admin users to run code with higher privileges during installation, posing risks for shared or enterprise devices. The issue lies in the way …

Read More »

GitLab Patched Six Multiple Vulnerabilities in C& E Edition

GitLab patches six vulnerabilities in Community Edition (CE) and Enterprise Edition (EE), with versions 18.2.1, 18.1.3, and 18.0.5 now ready for deployment. The release addresses six security vulnerabilities, including two serious cross-site scripting (XSS) issues that threaten Kubernetes proxy functionality. These patches address vulnerabilities found in GitLab’s HackerOne bug bounty …

Read More »

CVE-2025-7723 and CVE-2025-7724
TP-Link Flaws Expose Devices to Remote Code Execution

TP-Link has warned users about two serious command injection vulnerabilities in its VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2 devices. Identified as CVE-2025-7723 and CVE-2025-7724, these flaws have CVSS scores of 8.5 and 8.7 and could let attackers run arbitrary commands on the system. “Attackers may execute arbitrary commands on …

Read More »