7.2

CVSS3.1

CVE-2025-14097 - Remote Code Execution Vulnerability in Radiometer Products

A vulnerability in the application software of multiple Radiometer products may allow remote code execution and unauthorized device management when specific internal conditions are met. Exploitation requires that a remote connection is established with additional information obtained through other …

πŸ“… Published: Dec. 17, 2025, 12:36 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS3.1

CVE-2025-14096 - Credential Disclosure vulnerability in Radiometer Products

A vulnerability exists in multiple Radiometer products that allow an attacker with physical access to the analyzer possibility to extract credential information. The vulnerability is due to a weakness in the design and insufficient credential protection in operating system. Other related CVE's are…

πŸ“… Published: Dec. 17, 2025, 12:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.1

CVSS3.1

CVE-2025-62690 - Open redirect in error page when link opened in new tab

Mattermost versions 10.11.x <= 10.11.4 fail to validate redirect URLs on the /error page, which allows an attacker to redirect a victim to a malicious site via a crafted link opened in a new tab.

πŸ“… Published: Dec. 17, 2025, 12:19 p.m. πŸ”„ Last Modified: Dec. 29, 2025, 6:55 p.m.

3

CVSS3.1

CVE-2025-13352 - Mattermost GitHub Plugin allows unauthorized GitHub reactions via reaction forwarding hijacking

Mattermost versions 10.11.x <= 10.11.6 and Mattermost GitHub plugin versions <=2.4.0 fail to validate plugin bot identity in reaction forwarding which allows attackers to hijack the GitHub reaction feature to make users add reactions to arbitrary GitHub objects via crafted notification posts.

πŸ“… Published: Dec. 17, 2025, 12:11 p.m. πŸ”„ Last Modified: Dec. 29, 2025, 6:50 p.m.

4.3

CVSS3.1

CVE-2025-62190 - CSRF Allows Call Initiation and Message Delivery

Mattermost versions 11.0.x <= 11.0.4, 10.12.x <= 10.12.2, 10.11.x <= 10.11.6 and Mattermost Calls versions <=1.10.0 fail to implement CSRF protection on the Calls widget page which allows an authenticated attacker to initiate calls and inject messages into channels or direct messages via a maliciou…

πŸ“… Published: Dec. 17, 2025, 12:07 p.m. πŸ”„ Last Modified: Dec. 29, 2025, 6:51 p.m.

9.8

CVSS3.1

CVE-2025-67895 - Apache Airflow Providers Edge3: Edge3 Worker RPC RCE on Airflow 2

Edge3 Worker RPC RCE on Airflow 2. This issue affects Apache Airflow Providers Edge3: before 2.0.0 - and only if you installed and configured it on Airflow 2. The Edge3 provider support in Airflow 2 has been always development-only and not officially released, however if you installed and confi…

πŸ“… Published: Dec. 17, 2025, 11:47 a.m. πŸ”„ Last Modified: Dec. 22, 2025, 6:15 p.m.

5.7

CVSS3.1

CVE-2025-14095 - Privilege boundary violation in Radiometer Products

A "Privilege boundary violation" vulnerability is identified affecting multiple Radiometer Products. Exploitation of this vulnerability gives a user with physical access to the analyzer, the possibility to gain unauthorized access to functionalities outside the restricted environment. The vulnerabi…

πŸ“… Published: Dec. 17, 2025, 11:45 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-14820 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Dec. 17, 2025, 10:33 a.m. πŸ”„ Last Modified: Dec. 25, 2025, 10:19 p.m.

7.1

CVSS3.1

CVE-2025-14101 - IDOR in GG Soft's PaperWork

Authorization Bypass Through User-Controlled Key vulnerability in GG Soft Software Services Inc. PaperWork allows Exploitation of Trusted Identifiers.This issue affects PaperWork: from 5.2.0.9427 before 6.0.

πŸ“… Published: Dec. 17, 2025, 9:11 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS3.1

CVE-2025-14347 - Reflected XSS in Proliz's OBS

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Proliz Software Ltd. OBS (Student Affairs Information System)0 allows Reflected XSS.This issue affects OBS (Student Affairs Information System)0: before 26.5009.

πŸ“… Published: Dec. 17, 2025, 8:12 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 345143
Page 2152 of 34,515
Β« previous page Β» next page
Filters