CVE-2024-11235 - Dangerous PHP Use-After-Free Vulnerability (RCE Risk with __set, ??=, and Exceptions)
Recently, security researchers discovered a critical vulnerability affecting recent versions of PHP. Tracked as CVE-2024-11235, this bug exists in PHP 8.3.* before
CVE-2025-3250: Elunez Eladmin 2.7 Vulnerability - Deserialization Issue in Maintenance Management Module
A recent vulnerability, classified as problematic, has been discovered in the Elunez Eladmin 2.7 software. This post will explore the vulnerability in depth, providing
CVE-2025-31130 - Breaking Git Integrity in Rust — The gitoxide SHA-1 Collision Attack
On May 1, 2024, a new vulnerability (CVE-2025-31130) was disclosed affecting gitoxide, a popular Rust implementation of Git. This vulnerability exposes gitoxide users
CVE-2025-27520 - Critical RCE in BentoML (<1.4.3) — Unsafe Deserialization Leads to Remote Code Execution
BentoML is a popular open-source Python framework designed for serving ML/AI models at scale with minimal code. Organizations adopt it to deploy ML
CVE-2025-29815 - Exploiting Use-After-Free in Microsoft Edge (Chromium-Based) for Remote Code Execution
In early 2025, security researchers uncovered a critical vulnerability in Microsoft Edge (Chromium-based), tracked as CVE-2025-29815. This "use-after-free"
Episode
00:00:00
00:00:00