Current Conditions
São Paulo
céu limpo

19 ℃
78%
Temperatura
Umidade
Fonte: OpenWeatherMap. - 01:00:01
  1. [USD] USD 74,651.53
  1. [BRL] BRL 372,638.03 [USD] USD 74,651.53 [GBP] GBP 55,196.22 [EUR] EUR 63,351.23
    Price index provided by blockchain.info.
  2. Bitcoin Core version 28.4 is now available for download. See the release notes for more information about the bug fixes in this release.
    If you have any questions, please stop by the #bitcoin IRC chatroom (IRC, web) and we’ll do our best to help you.

[CVE-2025-68460] [Modified: 02-01-2026] [Analyzed] [V3.1 S7.2:HIGH] Roundcube Webmail before 1.5.12 and 1.6 before 1.6.12 is prone to a information disclosure vulnerability in the HTML style sanitizer.

[CVE-2025-68461] [Modified: 23-02-2026] [Analyzed] [V3.1 S7.2:HIGH] Roundcube Webmail before 1.5.12 and 1.6 before 1.6.12 is prone to a Cross-Site-Scripting (XSS) vulnerability via the animate tag in an SVG document.

[CVE-2025-27063] [Modified: 28-01-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption during video playback when video session open fails with time out error.

[CVE-2025-47319] [Modified: 28-01-2026] [Analyzed] [V3.1 S6.7:MEDIUM] Information disclosure while exposing internal TA-to-TA communication APIs to HLOS

[CVE-2025-47320] [Modified: 10-02-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption while processing MFC channel configuration during music playback.

[CVE-2025-47321] [Modified: 27-01-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption while copying packets received from unix clients.

[CVE-2025-47322] [Modified: 28-01-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption while handling IOCTL calls to set mode.

[CVE-2025-47323] [Modified: 28-01-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption while routing GPR packets between user and root when handling large data packet.

[CVE-2025-47325] [Modified: 23-12-2025] [Analyzed] [V3.1 S6.5:MEDIUM] Information disclosure while processing system calls with invalid parameters.

[CVE-2025-47350] [Modified: 23-12-2025] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption while handling concurrent memory mapping and unmapping requests from a user-space application.

[CVE-2025-47372] [Modified: 23-12-2025] [Analyzed] [V3.1 S9.0:CRITICAL] Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.

[CVE-2025-47382] [Modified: 28-01-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory corruption while loading an invalid firmware in boot loader.

[CVE-2025-47387] [Modified: 28-01-2026] [Analyzed] [V3.1 S7.8:HIGH] Memory Corruption when processing IOCTLs for JPEG data without verification.

[CVE-2025-60069] [Modified: 29-01-2026] [Analyzed] [V3.1 S8.1:HIGH] Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MinimogWP minimog allows PHP Local File Inclusion.This issue affects MinimogWP: from n/a through <= 3.9.6.

[CVE-2025-64217] [Modified: 22-01-2026] [Analyzed] [V3.1 S7.1:HIGH] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods Photography photography allows Reflected XSS.This issue affects Photography: from n/a through <= 7.7.2.

[CVE-2025-64258] [Modified: 29-01-2026] [Analyzed] [V3.1 S7.5:HIGH] Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in wpweb Follow My Blog Post follow-my-blog-post allows Retrieve Embedded Sensitive Data.This issue affects Follow My Blog Post: from n/a through <= 2.3.9.

[CVE-2025-64997] [Modified: 23-12-2025] [Analyzed] [V3.1 S6.5:MEDIUM] Insufficient permission validation in Checkmk versions prior to 2.4.0p17 and 2.3.0p42 allow low-privileged users to view agent information via the REST API, which could lead to information disclosure.

[CVE-2025-40602] [Modified: 19-12-2025] [Analyzed] [V3.1 S6.6:MEDIUM] A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance management console (AMC).

[CVE-2025-65000] [Modified: 23-12-2025] [Analyzed] [V3.1 S5.3:MEDIUM] SSH private keys of the "Remote alert handlers (Linux)" rule were exposed in the rule page's HTML source in Checkmk <= 2.4.0p18 and all versions of Checkmk 2.3.0. This potentially allowed unauthorized triggering of predefined alert handlers on hosts where the handler was deployed.

[CVE-2025-1029] [Modified: 16-01-2026] [Analyzed] [V3.1 S7.5:HIGH] Use of Hard-coded Credentials vulnerability in Utarit Information Services Inc. SoliClub allows Read Sensitive Constants Within an Executable.This issue affects SoliClub: from 5.2.4 before 5.3.7.