0.0

CVE-2025-68486 -

Not used

πŸ“… Published: Dec. 19, 2025, 12:12 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 3:55 a.m.

0.0

CVE-2025-68487 -

Not used

πŸ“… Published: Dec. 19, 2025, 12:12 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 3:55 a.m.

0.0

CVE-2025-68490 -

Not used

πŸ“… Published: Dec. 19, 2025, 12:12 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 3:55 a.m.

0.0

CVE-2025-68483 -

Not used

πŸ“… Published: Dec. 19, 2025, 12:12 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 3:55 a.m.

5.1

CVSS4.0

CVE-2025-14900 - CodeAstro Real Estate Management System Administrator Endpoint userdelete.php sql injection

A security vulnerability has been detected in CodeAstro Real Estate Management System 1.0. Affected is an unknown function of the file /admin/userdelete.php of the component Administrator Endpoint. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The…

πŸ“… Published: Dec. 19, 2025, 12:02 a.m. πŸ”„ Last Modified: Feb. 24, 2026, 5:55 a.m.

5.1

CVSS4.0

CVE-2025-14899 - CodeAstro Real Estate Management System Administrator Endpoint stateadd.php sql injection

A weakness has been identified in CodeAstro Real Estate Management System 1.0. This impacts an unknown function of the file /admin/stateadd.php of the component Administrator Endpoint. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been made available …

πŸ“… Published: Dec. 19, 2025, 12:02 a.m. πŸ”„ Last Modified: Feb. 24, 2026, 6:16 a.m.

9.3

CVSS4.0

CVE-2025-14733 - WatchGuard Firebox iked Out of Bounds Write Vulnerability

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the Mobile User VPN with IKEv2 and the Branch Office VPN using IKEv2 when configured with a dynamic gateway peer.This vulnerability a…

πŸ“… Published: Dec. 19, 2025, 12:01 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:07 p.m.

7.6

CVSS3.1

CVE-2025-67442 -

EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export lab files. This interface lacks effective input validation and filtering when processing file path parameters submitted by users.

πŸ“… Published: Dec. 19, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 4:57 p.m.

6.4

CVSS3.1

CVE-2025-67845 -

A Directory Traversal vulnerability in the Static Asset Proxy Endpoint in Mintlify Platform before 2025-11-15 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing path traversal sequences.

πŸ“… Published: Dec. 19, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:52 p.m.

8.3

CVSS3.1

CVE-2025-67843 -

A Server-Side Template Injection (SSTI) vulnerability in the MDX Rendering Engine in Mintlify Platform before 2025-11-15 allows remote attackers to execute arbitrary code via inline JSX expressions in an MDX file.

πŸ“… Published: Dec. 19, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 4:07 p.m.
Total resulsts: 346142
Page 2197 of 34,615
Β« previous page Β» next page
Filters