Category: vulnerabilities

CVE-2025-57788 — Unauthenticated API access in Commvault

 vintage  September 24, 2025

CVE-2025-57788 is an authentication-bypass vulnerability affecting on-prem Commvault Web Server / Command Center components (Commvault versions prior to 11.36.60 and…

CVE-2023-50164 apache.struts Traversal/RCE

 vintage  December 9, 2023

org.apache.struts:struts2-core is a popular open-source framework for developing web applications in the Java programming language. Affected versions of this package are…

OWAS Top: SQL Attack

 vintage  September 2, 2023

SQL Injection is a type of attack that occurs when an attacker can manipulate an SQL query in a way…