9.8

CVSS3.1

CVE-2025-65125 -

SQL injection in gosaliajainam/online-movie-booking 5.5 in movie_details.php allows attackers to gain sensitive information.

πŸ“… Published: Jan. 2, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

7.5

CVSS3.1

CVE-2025-67159 -

Vatilon v1.12.37-20240124 was discovered to transmit user credentials in plaintext.

πŸ“… Published: Jan. 2, 2026, midnight πŸ”„ Last Modified: Jan. 30, 2026, 1:44 a.m.

4.8

CVSS4.0

CVE-2025-15418 - Open5GS Bearer QoS IE Length types.c ogs_gtp2_parse_bearer_qos denial of service

A security flaw has been discovered in Open5GS up to 2.7.6. Affected by this vulnerability is the function ogs_gtp2_parse_bearer_qos in the library lib/gtp/v2/types.c of the component Bearer QoS IE Length Handler. Performing a manipulation results in denial of service. The attack must be initiated …

πŸ“… Published: Jan. 1, 2026, 11:32 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 9:16 a.m.

4.8

CVSS4.0

CVE-2025-15417 - Open5GS GTPv2-C F-TEID s11-handler.c sgwc_s11_handle_create_session_request denial of service

A vulnerability was identified in Open5GS up to 2.7.6. Affected is the function sgwc_s11_handle_create_session_request of the file src/sgwc/s11-handler.c of the component GTPv2-C F-TEID Handler. Such manipulation leads to denial of service. The attack must be carried out locally. The exploit is pub…

πŸ“… Published: Jan. 1, 2026, 11:02 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 9:16 a.m.

4.8

CVSS4.0

CVE-2025-15416 - xnx3 wangmarket Add Global Variable save.do cross site scripting

A vulnerability was found in xnx3 wangmarket up to 6.4. This affects an unknown function of the file /siteVar/save.do of the component Add Global Variable Handler. The manipulation of the argument Remark/Variable Value results in cross site scripting. The attack can be executed remotely. The exploi…

πŸ“… Published: Jan. 1, 2026, 10:32 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 8:04 a.m.

5.1

CVSS4.0

CVE-2025-15415 - xnx3 wangmarket XML File uploadImage.do uploadImage unrestricted upload

A vulnerability has been found in xnx3 wangmarket up to 6.4. The impacted element is the function uploadImage of the file /sits/uploadImage.do of the component XML File Handler. The manipulation of the argument image leads to unrestricted upload. Remote exploitation of the attack is possible. The e…

πŸ“… Published: Jan. 1, 2026, 10:02 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 8:04 a.m.

5.1

CVSS4.0

CVE-2025-15414 - go-sonic Theme Fetching API git_fetcher.go FetchTheme server-side request forgery

A flaw has been found in go-sonic sonic up to 1.1.4. The affected element is the function FetchTheme of the file service/theme/git_fetcher.go of the component Theme Fetching API. Executing a manipulation of the argument uri can lead to server-side request forgery. The attack may be launched remotel…

πŸ“… Published: Jan. 1, 2026, 9:32 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 9:16 a.m.

4.8

CVSS4.0

CVE-2025-15413 - wasm3 m3_exec.h op_CallIndirect memory corruption

A vulnerability was detected in wasm3 up to 0.5.0. Impacted is the function op_SetSlot_i32/op_CallIndirect of the file m3_exec.h. Performing a manipulation results in memory corruption. The attack needs to be approached locally. The exploit is now public and may be used. Unfortunately, the project …

πŸ“… Published: Jan. 1, 2026, 9:02 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 9:16 a.m.

4.8

CVSS4.0

CVE-2025-15412 - WebAssembly wabt wasm-decompile VarName out-of-bounds

A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. Such manipulation leads to out-of-bounds read. Local access is required to approach …

πŸ“… Published: Jan. 1, 2026, 8:32 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 9:16 a.m.

4.8

CVSS4.0

CVE-2025-15411 - WebAssembly wabt wasm-decompile InsertNode memory corruption

A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::InsertNode of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. This manipulation causes memory corruption. It is possible to launch the attack on the local…

πŸ“… Published: Jan. 1, 2026, 7:32 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 9:16 a.m.
Total resulsts: 343975
Page 1792 of 34,398
Β« previous page Β» next page
Filters