VARIoT news about IoT security

Trust: 4.5

Fetched: Jan. 13, 2026, 10:19 a.m., Published: Jan. 2, 2026, 9 a.m.
Vulnerabilities: sql injection, cross-site scripting
Affected productsExternal IDs
vendor: essential model: phone
db: NVD ids: CVE-2024-1234

Trust: 3.75

Fetched: Jan. 13, 2026, 10:18 a.m., Published: Jan. 1, 2026, midnight
Vulnerabilities: information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-11009

Trust: 4.5

Fetched: Jan. 13, 2026, 10:18 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: memory corruption, code execution
Affected productsExternal IDs
vendor: apple model: tvos
vendor: apple model: macos
db: NVD ids: CVE-2025-31200

Trust: 4.75

Fetched: Jan. 13, 2026, 10:17 a.m., Published: Dec. 30, 2025, 9:48 a.m.
Vulnerabilities: command execution, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-54322

Trust: 4.5

Fetched: Jan. 13, 2026, 10:17 a.m., Published: Jan. 5, 2026, 12:53 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: winscp model: winscp
vendor: putty model: putty
vendor: google model: chrome
vendor: google model: google chrome
vendor: eaton model: drive
db: NVD ids: CVE-2025-59888, CVE-2025-55182, CVE-2025-14346, CVE-2025-53597, CVE-2025-52691, CVE-2025-59887, CVE-2025-20700, CVE-2025-20702, CVE-2025-13915, CVE-2025-52871, CVE-2025-20701, CVE-2025-47411, CVE-2025-48769

Trust: 5.5

Fetched: Jan. 13, 2026, 10:13 a.m., Published: Dec. 30, 2025, 4:38 p.m.
Vulnerabilities: denial of service, service disruption, code execution
Affected productsExternal IDs
vendor: snort.org model: snort
vendor: snort model: snort

Trust: 3.0

Fetched: Jan. 13, 2026, 10:13 a.m., Published: -
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
db: NVD ids: CVE-2026-0854

Trust: 5.5

Fetched: Jan. 13, 2026, 10:12 a.m., Published: Jan. 6, 2026, 3:30 a.m.
Vulnerabilities: path traversal, code execution
Affected productsExternal IDs
vendor: node.js model: node.js
db: NVD ids: CVE-2026-21440, CVE-2025-68428

Trust: 3.75

Fetched: Jan. 13, 2026, 10:12 a.m., Published: Jan. 13, 7944, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: net-snmp model: net-snmp
vendor: canonical model: ubuntu

Trust: 3.75

Fetched: Jan. 13, 2026, 10:11 a.m., Published: Jan. 13, 7944, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: net-snmp model: net-snmp
vendor: canonical model: ubuntu

Trust: 3.75

Fetched: Jan. 13, 2026, 10:11 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: macbook
vendor: google model: chrome
db: NVD ids: CVE-2023-41064, CVE-2023-4863

Trust: 4.25

Fetched: Jan. 13, 2026, 10:11 a.m., Published: Jan. 13, 7945, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 3.25

Fetched: Jan. 13, 2026, 10:10 a.m., Published: Jan. 1, 2026, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-14748

Trust: 5.0

Fetched: Jan. 13, 2026, 10:09 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: information exposure
Affected productsExternal IDs
db: NVD ids: CVE-2025-3606

Trust: 5.0

Fetched: Jan. 13, 2026, 10:08 a.m., Published: -
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
db: NVD ids: CVE-2026-0855

Trust: 4.0

Fetched: Jan. 13, 2026, 10:08 a.m., Published: Jan. 9, 2026, 10:02 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: software update
db: NVD ids: CVE-2025-24132

Trust: 3.25

Fetched: Jan. 13, 2026, 10:08 a.m., Published: Jan. 13, 7943, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 5.75

Fetched: Jan. 13, 2026, 10:07 a.m., Published: Jan. 5, 2026, 7:15 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: samsung model: exynos
vendor: samsung model: mobile
vendor: samsung model: samsung mobile
vendor: samsung model: samsung
db: NVD ids: CVE-2025-52516

Trust: 4.75

Fetched: Jan. 13, 2026, 10:07 a.m., Published: Jan. 7, 2026, 4:31 a.m.
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
vendor: d-link model: router
vendor: d-link model: dsl-2740r
vendor: d-link model: dsl-2640b
db: NVD ids: CVE-2026-0625

Trust: 5.25

Fetched: Jan. 13, 2026, 10:06 a.m., Published: Jan. 7, 2026, midnight
Vulnerabilities: pointer dereference vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2025-14631