Microsoft Sharepoint Server Security Update Advisory (CVE-2025-53770)

Microsoft Sharepoint Server Security Update Advisory (CVE-2025-53770)

Overview   We have released a security update to address a vulnerability in Microsoft Sharepoint Server. Affected product users are advised to update to the latest version.    Affected Products   CVE-2025-53770   Microsoft SharePoint Server Subscription Edition: All EditionsMicrosoft SharePoint Server 2019 Editions: All EditionsMicrosoft SharePoint Enterprise Server 2016

Node.js Security Update Advisory

Node.js Security Update Advisory

Overview   We have released a security update to address a vulnerability in Node.js. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-27209   Node.js Version: 24.0 and above but below 24.4.1   CVE-2025-27210   Node.js Version: 24.0 or later but less

SQLite Security Update Advisory (CVE-2025-6965)

SQLite Security Update Advisory (CVE-2025-6965)

Overview   We have released a security update to address a vulnerability in SQLite. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-6965   SQLite Version: Less than 3.50.2     Resolved Vulnerabilities   Memory corruption vulnerability in SQLite (CVE-2025-6965)    

Malicious LNK Disguised as Credit Card Security Email Authentication Pop-up

Malicious LNK Disguised as Credit Card Security Email Authentication Pop-up

AhnLab SEcurity intelligence Center (ASEC) has recently identified a case where a malicious LNK file is disguised as the credit card security email authentication pop-up to steal user information. The identified malicious LNK file has the following file name, disguising itself as the credit card company.   **card_detail_20250610.html.lnk   The threat actor has been

July 22, 2025

July 22, 2025 Hash 146d2b3460b4c55edf51c4aa4425ebf09 22ac4b12cc7d8198d029c26e6ab35b4a8 3c4b0c8baa1e7dcfbbdfbf79a6e09c701 URL 1http[:]//sakyapalat[.]com/ 2http[:]//arch[.]fast673bot[.]cyou/ 3https[:]//360roomview[.]com/wp-admin/server/interface[.]root/mail[.]authn/login/-INBOX[.]html IP 18[.]217[.]78[.]80 2196[.]0[.]120[.]211 385[.]9[.]99[.]155...

HPE Product Security Update Advisory

HPE Product Security Update Advisory

Overview   We have released security updates to fix vulnerabilities in HPE products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-37102, CVE-2025-37103   HPE Networking Instant On: 3.2.0.1 and earlier     Resolved Vulnerabilities   Command injection vulnerability in HPE Networking

CrushFTP Security Update Advisory (CVE-2025-54309)

CrushFTP Security Update Advisory (CVE-2025-54309)

Overview   We have released a security update to address a vulnerability in CrushFTP. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-54309   CrushFTP Version: 10.0 and above but below 10.8.5CrushFTP Version: 11.0 and above but below 11.3.4_23     Resolved