5.1
CVE-2025-41080 - Multiple vulnerabilities in Seafile
A stored Cross-Site Scripting (XSS) vulnerability has been found in Seafile v12.0.10. This vulnerability allows an attacker to execute arbitrary code in the victim's browser by storing malicious payloads with POST parΓ‘metro 'p' in '/api/v2.1/repos/{repo_id}/file/'.
5.1
CVE-2025-41079 - Multiple vulnerabilities in Seafile
A stored Cross-Site Scripting (XSS) vulnerability has been found in Seafile v12.0.10. This vulnerability allows an attacker to execute arbitrary code in the victim's browser by storing malicious payloads with PUT parΓ‘metro 'name' in '/api/v2.1/user/'.
8.5
CVE-2025-14025 - Ansible-automation-platform/aap-gateway: aap-gateway: read-only personal access token (pat) bypasseβ¦
A flaw was found in Ansible Automation Platform (AAP). Read-only scoped OAuth2 API Tokens in AAP, are enforced at the Gateway level for Gateway-specific operations. However, this vulnerability allows read-only tokens to perform write operations on backend services (e.g., Controller, Hub, EDA). If tβ¦
0.0
CVE-2025-66544 -
Not used
0.0
CVE-2025-66543 -
Not used
0.0
CVE-2025-66541 -
Not used
0.0
CVE-2025-66542 -
Not used
0.0
CVE-2025-66540 -
Not used
0.0
CVE-2025-66537 -
Not used
0.0
CVE-2025-66539 -
Not used