7.2

CVSS3.1

CVE-2025-62369 - Xibo CMS: Remote Code Execution through module templates

Xibo is an open source digital signage platform with a web content management system (CMS). Versions 4.3.0 and below contain a Remote Code Execution vulnerability in the CMS Developer menu's Module Templating functionality, allowing authenticated users with "System -> Add/Edit custom modules and te…

πŸ“… Published: Nov. 4, 2025, 9:18 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 9:18 p.m.

5.4

CVSS3.1

CVE-2025-55155 - MantisBT: Authentication bypass for some passwords due to PHP type juggling

Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.27.1 and below, when a user edits their profile to change their e-mail address, the system saves it without validating that it actually belongs to the user. This could result in storing an invalid email address, preventing…

πŸ“… Published: Nov. 4, 2025, 8:48 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 8:48 p.m.

5.3

CVSS4.0

CVE-2025-48884 - Galette is vulnerable to XSS through Document Type

Galette is a membership management web application for non profit organizations. In versions 1.1.5.2 and below, Galette's Document Type is vulnerable to Cross-site Scripting. This issue is fixed in version 1.2.0.

πŸ“… Published: Nov. 4, 2025, 8:44 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 8:44 p.m.

5.3

CVSS4.0

CVE-2025-48076 - Galette is vulnerable to Cross-site Scripting

Galette is a membership management web application for non profit organizations. Versions 1.1.5.2 and below allow a user to edit a group name and insert an XSS payload. This issue is fixed in version 1.2.0.

πŸ“… Published: Nov. 4, 2025, 8:40 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 8:40 p.m.

8.8

CVSS4.0

CVE-2025-47776 - MantisBT: Authentication bypass for some passwords due to PHP type juggling

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Due to incorrect use of loose (==) instead of strict (===) comparison in the authentication code in versions 2.27.1 and below.PHP type juggling will cause certain MD5 hashes matching scientific notation to be interpreted as numbers. Ins…

πŸ“… Published: Nov. 4, 2025, 8:31 p.m. πŸ”„ Last Modified: Nov. 5, 2025, 6:48 p.m.

7.5

CVSS3.1

CVE-2025-32786 - GLPI Inventory Plugin is Vulnerable to Unauthenticated SQL Injection

The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Versions 1.5.0 and below are vulnerable to SQL Injection. This issue is fixed in version 1.5.1.

πŸ“… Published: Nov. 4, 2025, 8:18 p.m. πŸ”„ Last Modified: Nov. 5, 2025, 6:48 p.m.

8.2

CVSS3.1

CVE-2025-23358 -

NVIDIA NVApp for Windows contains a vulnerability in the installer, where a local attacker can cause a search path element issue. A successful exploit of this vulnerability might lead to code execution and escalation of privileges.

πŸ“… Published: Nov. 4, 2025, 7:47 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 7:47 p.m.

6.2

CVSS3.1

CVE-2025-33176 -

NVIDIA RunAI for all platforms contains a vulnerability where a user could cause an improper restriction of communications channels on an adjacent network. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, and information disclosure.

πŸ“… Published: Nov. 4, 2025, 7:46 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 7:46 p.m.

9.3

CVSS4.0

CVE-2025-12108 - Missing Authentication for Critical Function Survision License Plate Recognition Camera

The Survision LPR Camera system does not enforce password protection by default. This allows access to the configuration wizard immediately without a login prompt or credentials check.

πŸ“… Published: Nov. 4, 2025, 6:43 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 6:43 p.m.

0.0

CVE-2025-64322 -

Incorrect Permission Assignment for Critical Resource vulnerability in Salesforce Agentforce Vibes Extension allows Manipulating Writeable Configuration Files.This issue affects Agentforce Vibes Extension: before 3.2.0.

πŸ“… Published: Nov. 4, 2025, 6:33 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 6:33 p.m.
Total resulsts: 317020
Page 13 of 31,702
Β« previous page Β» next page
Filters