8.2
CVE-2025-59023 - Crafted delegations or IP fragments can poison cached delegations in Recursor
Crafted delegations or IP fragments can poison cached delegations in Recursor.
5.3
CVE-2025-14831 - Gnutls: gnutls: denial of service via excessive resource consumption during certificate verification
A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints and subject alternative names (SANs).
5.3
CVE-2026-24027 - Crafted zones can lead to increased incoming network traffic
Crafted zones can lead to increased incoming network traffic.
5.3
CVE-2026-0398 - Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoβ¦
Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.
8.8
CVE-2025-10465 - Unrestricted File Upload in Birtech Information Technologies' Sensaway
Unrestricted Upload of File with Dangerous Type vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Sensaway allows Upload a Web Shell to a Web Server.This issue affects Sensaway: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not resβ¦
6.5
CVE-2025-10464 - Cleartext password storage in Birtech Information Technologies' Sensaway
Insecure Storage of Sensitive Information vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Senseway allows Retrieve Embedded Sensitive Data.This issue affects Senseway: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not respond in β¦
7.3
CVE-2025-10463 - Improper Authentication in Birtech Information Technologies' Sensaway
Improper Authentication vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Senseway allows Authentication Abuse.This issue affects Senseway: through 09022026.Β NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
6.8
CVE-2025-7708 - Sensitive Data Exposure in Atlas Software's k12net
Insertion of Sensitive Information Into Sent Data vulnerability in Atlas Educational Software Industry Ltd. Co. K12net allows Communication Channel Manipulation.This issue affects k12net: through 09022026.Β NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
5.1
CVE-2026-1960 - Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes
Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes, via theΒ 'Facebook' parameter in '/loggrodemo/jbrain/ConsultaTerceros' endpoint.
5.1
CVE-2026-1959 - Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes
Stored Cross-Site Scripting (XSS) vulnerability in Loggro Pymes, via the 'descripciΓ³n' parameter in the '/loggrodemo/jbrain/MaestraCuentasBancarias' endpoint.