9.3

CVSS4.0

CVE-2025-15471 - TRENDnet TEW-713RE formFSrvX os command injection

A vulnerability was detected in TRENDnet TEW-713RE 1.02. The impacted element is an unknown function of the file /goformX/formFSrvX. The manipulation of the argument SZCMD results in os command injection. It is possible to launch the attack remotely. The exploit is now public and may be used. The vโ€ฆ

๐Ÿ“… Published: Jan. 6, 2026, 9:32 p.m. ๐Ÿ”„ Last Modified: March 18, 2026, 3:16 p.m.

5.4

CVSS4.0

CVE-2025-14599 - Quartusยฎ Prime Standard and Quartusยฎ Prime Lite Security Advisory

Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Standard Installer (SFX) on Windows, Altera Quartus Prime Liteย  Installer (SFX) on Windows allows Search Order Hijacking.This issue affects Quartus Prime Standard: from 23.1 through 24.1; Quartus Prime Lite: from 23.1 throโ€ฆ

๐Ÿ“… Published: Jan. 6, 2026, 9:30 p.m. ๐Ÿ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

5.4

CVSS4.0

CVE-2025-14612 - Quartus Prime Pro Edition Advisory

Insecure Temporary File vulnerability in Altera Quartus Prime Proย  Installer (SFX) on Windows allows : Use of Predictable File Names.This issue affects Quartus Prime Pro: from 24.1 through 25.1.1.

๐Ÿ“… Published: Jan. 6, 2026, 9:24 p.m. ๐Ÿ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

5.4

CVSS4.0

CVE-2025-14605 - Quartus Prime Pro Edition Advisory

Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro on Windows (System Console modules) allows Search Order Hijacking.This issue affects Quartus Prime Pro: from 17.0 through 25.1.1.

๐Ÿ“… Published: Jan. 6, 2026, 9:15 p.m. ๐Ÿ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

7.1

CVSS3.1

CVE-2025-31642 - WordPress WPCHURCH plugin <= 2.7.0 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dasinfomedia WPCHURCH allows Reflected XSS.This issue affects WPCHURCH: from n/a through 2.7.0.

๐Ÿ“… Published: Jan. 6, 2026, 9:14 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2025-31051 - WordPress Plant - Gardening & Houseplants WordPress Theme <= 1.0.0 - Sensitive Data Exposure Vulnerโ€ฆ

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in EngoTheme Plant - Gardening & Houseplants WordPress Theme allows Retrieve Embedded Sensitive Data.This issue affects Plant - Gardening & Houseplants WordPress Theme: from n/a through 1.0.0.

๐Ÿ“… Published: Jan. 6, 2026, 9:13 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS4.0

CVE-2025-14596 - Quartus Prime Pro Edition Installer Advisory

Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro Installer (SFX) on Windows allows Search Order Hijacking.This issue affects Quartus Prime Pro: from 24.1 through 24.3.1.

๐Ÿ“… Published: Jan. 6, 2026, 9:06 p.m. ๐Ÿ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

9.9

CVSS3.1

CVE-2025-30996 - Arbitrary File Upload Vulnerability in WordPress themes by Themify

Unrestricted Upload of File with Dangerous Type vulnerability in Themify Themify Sidepane WordPress Theme, Themify Themify Newsy, Themify Themify Folo, Themify Themify Edmin, Themify Bloggie, Themify Photobox, Themify Wigi, Themify Rezo, Themify Slide allows Upload a Web Shell to a Web Server.This โ€ฆ

๐Ÿ“… Published: Jan. 6, 2026, 8:56 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS4.0

CVE-2025-13744 - Improper Neutralization of Input During Web Page Generation vulnerability was identified in GitHub โ€ฆ

An Improper Neutralization of Input During Web Page Generation vulnerability was identified in GitHub Enterprise Server that allowed attacker controlled HTML to be rendered by the Filter component (search) across GitHub that could be used to exfiltrate sensitive information. An attacker would requiโ€ฆ

๐Ÿ“… Published: Jan. 6, 2026, 8:44 p.m. ๐Ÿ”„ Last Modified: Jan. 30, 2026, 4:51 p.m.

7.1

CVSS3.1

CVE-2025-30631 - Reflected Cross Site Scripting (XSS) vulnerability in AA-Team WordPress plugins

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AA-Team Woocommerce Sales Funnel Builder, AA-Team Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) allows Reflected XSS.This issue affects Woocommerce Sales Funnel Buildโ€ฆ

๐Ÿ“… Published: Jan. 6, 2026, 8:30 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346103
Page 1958 of 34,611
ยซ previous page ยป next page
Filters