Threats Tagged 'cve-2025-48866'
View all threats tagged with 'cve-2025-48866'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-48866'
Click on any threat for detailed analysis and mitigation recommendations
0 ModSecurity is an open source intrusion detection and prevention engine for web applications. Security Fix(es): * mod_security: ModSecurity Denial of Service Vulnerability (CVE-2025-48866) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 08/05/2025, 05:10:38 UTC Added: 06/28/2026, 22:14:15 UTC |
0 ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions prior to 2.9.10 contain a denial of service vulnerability similar to GHSA-859r-vvv8-rm8r/CVE-2025-47947. The `sanitiseArg` (and `sanitizeArg` - this is the same action but an alias) is vulnerable to adding an excessive number of arguments, thereby leading to denial of service. Version 2.9.10 fixes the issue. As a workaround, avoid using rules that contain the `sanitiseArg` (or `sanitizeArg`) action. Join the discussion | CVE Database V5 | 06/02/2025, 15:46:19 UTC Added: 06/02/2025, 15:58:36 UTC |
Showing 1 to 2 of 2 results