News

Proof-of-concept exploits have been released for a critical SQLi vulnerability in Fortinet FortiWeb that can be used to achieve pre-authenticated remote code execution on vulnerable servers.
On Thursday, Fortinet released an update for FortiWeb. Exploits have emerged that abuse the critical gap.
Fortinet fixes a critical SQL injection vulnerability in FortiWeb (CVE-2025-25257), posing risks to database security.
Patch Tuesday fixes 137 vulnerabilities, including critical flaws in SQL Server, Netlogon, Office, and the .NET Framework.
A fake extension for the Cursor AI IDE code editor infected devices with remote access tools and infostealers, which, in one ...