CVE-2025-1028
Mié, 05/02/2025 – 04:15
CVE-2025-1028
CVE-2025-1028
Mié, 05/02/2025 – 04:15
CVE-2025-1028
CVE-2025-1026
Mié, 05/02/2025 – 05:15
CVE-2025-1026
**Note:**
This is a bypass of the fix for [CVE-2024-21549](https://security.snyk.io/vuln/SNYK-PHP-SPATIEBROWSERSHOT-8533023).
CVE-2025-1025
Mié, 05/02/2025 – 05:15
CVE-2025-1025
CVE-2025-1022
Mié, 05/02/2025 – 05:15
CVE-2025-1022
CVE-2025-25246
Mié, 05/02/2025 – 05:15
CVE-2025-25246
CVE-2024-53965
Mié, 05/02/2025 – 00:15
CVE-2024-53965
CVE-2024-53964
Mié, 05/02/2025 – 00:15
CVE-2024-53964
CVE-2024-53963
Mié, 05/02/2025 – 00:15
CVE-2024-53963
CVE-2024-53962
Mié, 05/02/2025 – 00:15
CVE-2024-53962
CVE-2025-0413
Mié, 05/02/2025 – 00:15
CVE-2025-0413
The specific flaw exists within the Technical Data Reporter component. By creating a symbolic link, an attacker can abuse the service to change the permissions of arbitrary files. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root. Was ZDI-CAN-25014.