4.3

CVSS3.1

CVE-2025-46266 - Unauthenticated Transmission of Data in NomadBranch.exe

A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to coerce the service into transmitting data to an arbitrary internal IP address, potentially leaking sensitive information.

πŸ“… Published: Dec. 11, 2025, 11:25 a.m. πŸ”„ Last Modified: Jan. 14, 2026, 7:57 p.m.

8.8

CVSS3.1

CVE-2025-44016 - File Hash Validation Bypass in NomadBranch.exe

A vulnerability in TeamViewer DEX Client (former 1E client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to bypass file integrity validation via a crafted request. By providing a valid hash for a malicious file, an attacker can cause the s…

πŸ“… Published: Dec. 11, 2025, 11:24 a.m. πŸ”„ Last Modified: Jan. 14, 2026, 7:57 p.m.

6.5

CVSS3.1

CVE-2025-12687 - Denial-of-Service Vulnerability in NomadBranch.exe

A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to cause a denial of service (application crash) via a crafted command, resulting in service termination.

πŸ“… Published: Dec. 11, 2025, 11:24 a.m. πŸ”„ Last Modified: Jan. 14, 2026, 7:56 p.m.

8.5

CVSS4.0

CVE-2025-64701 -

QND Premium/Advance/Standard Ver.11.0.9i and prior contains a privilege escalation vulnerability, which may allow a user who can log in to a Windows system with the affected product to gain administrator privileges. As a result, sensitive information may be accessed or altered, and arbitrary action…

πŸ“… Published: Dec. 11, 2025, 8:13 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8

CVSS3.1

CVE-2025-12029 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.11 before 18.4.6, 18.5 before 18.5.4, and 18.6 before 18.6.2 that could have, under certain circumstances, allowed an unauthenticated user to perform unauthorized actions on behalf of another user by injecting malicious e…

πŸ“… Published: Dec. 11, 2025, 7:32 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:21 p.m.

3.5

CVSS3.1

CVE-2025-12734 - Improper Encoding or Escaping of Output in GitLab

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.6 before 18.4.6, 18.5 before 18.5.4, and 18.6 before 18.6.2 that could have allowed an authenticated user to, under certain conditions, render content in dialogs to other users by injecting malicious HTML content into mer…

πŸ“… Published: Dec. 11, 2025, 7:32 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 9:02 p.m.

8.5

CVSS3.1

CVE-2025-67738 -

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

πŸ“… Published: Dec. 11, 2025, 6:34 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-4097 - Allocation of Resources Without Limits or Throttling in GitLab

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.10 before 18.4.6, 18.5 before 18.5.4, and 18.6 before 18.6.2 that could have allowed an authenticated user to cause a denial of service condition by uploading specially crafted images.

πŸ“… Published: Dec. 11, 2025, 4:05 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 9:01 p.m.

7.7

CVSS3.1

CVE-2025-8405 - Improper Encoding or Escaping of Output in GitLab

GitLab has remediated a security issue in GitLab CE/EE affecting all versions from 17.1 before 18.4.6, 18.5 before 18.5.4, and 18.6 before 18.6.2 that could have allowed an authenticated user to perform unauthorized actions on behalf of other users by injecting malicious HTML into vulnerability cod…

πŸ“… Published: Dec. 11, 2025, 4:05 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:21 p.m.

4.3

CVSS3.1

CVE-2025-11247 - Authorization Bypass Through User-Controlled Key in GitLab

GitLab has remediated an issue in GitLab EE affecting all versions from 13.2 before 18.4.6, 18.5 before 18.5.4, and 18.6 before 18.6.2 that could have allowed an authenticated user to disclose sensitive information from private projects by executing specifically crafted GraphQL queries.

πŸ“… Published: Dec. 11, 2025, 4:04 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 9:05 p.m.
Total resulsts: 346618
Page 2407 of 34,662
Β« previous page Β» next page
Filters