Quotidien Shaarli

Tous les liens d'un jour sur une page.

March 24, 2025

Urgent: Patch Your Next.js for Authorization Bypass (CVE-2025-29927)

Learn about CVE-2025-29927, a critical vulnerability in Next.js that impacts authorization checks in middleware.

ZDI-CAN-25373 Windows Shortcut Exploit Abused as Zero-Day in Widespread APT Campaigns

Trend Zero Day Initiative™ (ZDI) uncovered both state-sponsored and cybercriminal groups extensively exploiting ZDI-CAN-25373, a Windows .lnk file vulnerability that enables hidden command execution.