5.1

CVSS4.0

CVE-2025-14006 - dayrui XunRuiCMS Add Data Validation admind45f74adbd95.php cross site scripting

A security vulnerability has been detected in dayrui XunRuiCMS up to 4.7.1. Affected by this issue is some unknown functionality of the file /admind45f74adbd95.php?c=field&m=add&rname=site&rid=1&page=1 of the component Add Data Validation Page. The manipulation of the argument data[name] leads to c…

πŸ“… Published: Dec. 4, 2025, 2:32 p.m. πŸ”„ Last Modified: Feb. 24, 2026, 5:39 a.m.

4.3

CVSS3.1

CVE-2024-5401 -

Improper control of dynamically-managed code resources vulnerability in WebAPI component in Synology DiskStation Manager (DSM) before 7.1.1-42962-8 and 7.2.1-69057-2 and 7.2.2-72806 and Synology Unified Controller (DSMUC) before 3.1.4-23079 allows remote authenticated users to obtain privileges wit…

πŸ“… Published: Dec. 4, 2025, 2:20 p.m. πŸ”„ Last Modified: Dec. 5, 2025, 9:43 p.m.

7.5

CVSS3.1

CVE-2024-45539 -

Out-of-bounds write vulnerability in cgi components in Synology DiskStation Manager (DSM) before 7.2.1-69057-2 and 7.2.2-72806 and Synology Unified Controller (DSMUC) before 3.1.4-23079 allows remote attackers to conduct denial-of-service attacks via unspecified vectors.

πŸ“… Published: Dec. 4, 2025, 2:17 p.m. πŸ”„ Last Modified: Dec. 5, 2025, 9:44 p.m.

9.6

CVSS3.1

CVE-2024-45538 -

Cross-Site Request Forgery (CSRF) vulnerability in WebAPI Framework in Synology DiskStation Manager (DSM) before 7.2.1-69057-2 and 7.2.2-72806 and Synology Unified Controller (DSMUC) before 3.1.4-23079 allows remote attackers to execute arbitrary code via unspecified vectors.

πŸ“… Published: Dec. 4, 2025, 2:16 p.m. πŸ”„ Last Modified: Dec. 5, 2025, 9:44 p.m.

4.8

CVSS4.0

CVE-2025-14005 - dayrui XunRuiCMS Add Display Name Field admind45f74adbd95.php cross site scripting

A weakness has been identified in dayrui XunRuiCMS up to 4.7.1. Affected by this vulnerability is an unknown functionality of the file /admind45f74adbd95.php?c=field&m=add&rname=site&rid=1&page=0 of the component Add Display Name Field. Executing a manipulation of the argument data[name] can lead t…

πŸ“… Published: Dec. 4, 2025, 1:32 p.m. πŸ”„ Last Modified: Feb. 24, 2026, 6:16 a.m.

5.1

CVSS4.0

CVE-2025-14004 - dayrui XunRuiCMS Email Setting admind45f74adbd95.php server-side request forgery

A security flaw has been discovered in dayrui XunRuiCMS up to 4.7.1. Affected is an unknown function of the file /admind45f74adbd95.php?c=email&m=add of the component Email Setting Handler. Performing a manipulation results in server-side request forgery. Remote exploitation of the attack is possib…

πŸ“… Published: Dec. 4, 2025, 1:32 p.m. πŸ”„ Last Modified: Feb. 24, 2026, 6:16 a.m.

6.1

CVSS3.1

CVE-2025-11222 -

Central Dogma versions before 0.78.0 contain an Open Redirect vulnerability that allows attackers to redirect users to untrusted sites via specially crafted URLs, potentially facilitating phishing attacks and credential theft.

πŸ“… Published: Dec. 4, 2025, 12:18 p.m. πŸ”„ Last Modified: Dec. 19, 2025, 6:25 p.m.

0.0

CVE-2025-14024 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

πŸ“… Published: Dec. 4, 2025, 12:07 p.m. πŸ”„ Last Modified: Dec. 4, 2025, 3:37 p.m.

5.1

CVSS4.0

CVE-2025-41080 - Multiple vulnerabilities in Seafile

A stored Cross-Site Scripting (XSS) vulnerability has been found in Seafile v12.0.10. This vulnerability allows an attacker to execute arbitrary code in the victim's browser by storing malicious payloads with POST parΓ‘metro 'p' in '/api/v2.1/repos/{repo_id}/file/'.

πŸ“… Published: Dec. 4, 2025, 11:48 a.m. πŸ”„ Last Modified: Dec. 5, 2025, 11:47 p.m.

5.1

CVSS4.0

CVE-2025-41079 - Multiple vulnerabilities in Seafile

A stored Cross-Site Scripting (XSS) vulnerability has been found in Seafile v12.0.10. This vulnerability allows an attacker to execute arbitrary code in the victim's browser by storing malicious payloads with PUT parΓ‘metro 'name' in '/api/v2.1/user/'.

πŸ“… Published: Dec. 4, 2025, 11:48 a.m. πŸ”„ Last Modified: Dec. 5, 2025, 11:48 p.m.
Total resulsts: 343921
Page 2299 of 34,393
Β« previous page Β» next page
Filters