1.7

CVSS4.0

CVE-2025-66646 - RIOT-OS has NULL pointer dereference in gnrc_ipv6_ext_frag_reass

RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) devices and other embedded devices. A vulnerability was discovered in the IPv6 fragmentation reassembly implementation of RIOT OS v2025.07. When receiving an fragmented IPv6 packeโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 7:18 p.m. ๐Ÿ”„ Last Modified: Jan. 22, 2026, 4:22 p.m.

8.3

CVSS3.1

CVE-2025-66397 - ChurchCRM's Kiosk Manager Functions are vulnerable to Broken Access Control

ChurchCRM is an open-source church management system. Prior to version 6.5.3, the allowRegistration, acceptKiosk, reloadKiosk, and identifyKiosk functions in the Kiosk Manager feature suffers from broken access control, allowing any authenticated user to allow and accept kiosk registrations, and peโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 7:12 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2025, 7:07 p.m.

7.2

CVSS3.1

CVE-2025-66396 - ChurchCRM has SQL Injection in User Editor via `type` Parameter Key

ChurchCRM is an open-source church management system. Prior to version 6.5.3, a SQL injection vulnerability exists in the `src/UserEditor.php` file. When an administrator saves a user's configuration settings, the keys of the `type` POST parameter array are not properly sanitized or type-casted befโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 7:10 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2025, 7:08 p.m.

8.8

CVSS3.1

CVE-2025-66395 - SQL Injection in Event List via `WhichType` Parameter

ChurchCRM is an open-source church management system. Prior to version 6.5.3, a SQL injection vulnerability exists in the `src/ListEvents.php` file. When filtering events by type, the `WhichType` POST parameter is not properly sanitized or type-casted before being used in multiple SQL queries. Thisโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 7:04 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2025, 7:08 p.m.

10

CVSS3.1

CVE-2025-62521 - ChurchCRM has unauthenticated RCE in its Install Wizard

ChurchCRM is an open-source church management system. Prior to version 5.21.0, a pre-authentication remote code execution vulnerability in ChurchCRM's setup wizard allows unauthenticated attackers to inject arbitrary PHP code during the initial installation process, leading to complete server comprโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 7:03 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2025, 7:10 p.m.

4.3

CVSS3.1

CVE-2025-14081 - Ultimate Member <= 2.11.0 - Authenticated (Subscriber+) Profile Privacy Setting Bypass

The Ultimate Member plugin for WordPress is vulnerable to Profile Privacy Setting Bypass in all versions up to, and including, 2.11.0. This is due to a flaw in the secure fields mechanism where field keys are stored in the allowed fields list before the `required_perm` check is applied during rendeโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 6:21 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.4

CVSS3.1

CVE-2025-13537 - Live Composer โ€“ Free WordPress Website Builder <= 2.0.2 - Authenticated (Contributor+) DOM-Based Stโ€ฆ

The Live Composer โ€“ Free WordPress Website Builder plugin for WordPress is vulnerable to multiple Stored Cross-Site Scripting vulnerabilities via DOM manipulation in all versions up to, and including, 2.0.2 due to insufficient input sanitization and output escaping on user-supplied attributes. Thisโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 6:21 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.4

CVSS3.1

CVE-2025-13217 - Ultimate Member <= 2.11.0 - Authenticated (Subscriber+) Stored Cross-Site Scripting via 'value'

The Ultimate Member โ€“ User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the YouTube Video 'value' field in all versions up to, and including, 2.11.0. This is due to insufficient input sanitizatโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 6:21 p.m. ๐Ÿ”„ Last Modified: April 21, 2026, 5:15 p.m.

3.9

CVSS3.1

CVE-2025-13326 - Mattermost Desktop App fails to enable Hardened Runtime when packaged for Mac App Store

Mattermost Desktop App versions <6.0.0 fail to enable the Hardened Runtime on the Mattermost Desktop App when packaged for Mac App Store which allows an attacker to inherit TCC permissions via copying the binary to a tmp folder.

๐Ÿ“… Published: Dec. 17, 2025, 6:14 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2025, 7:47 p.m.

3.7

CVSS3.1

CVE-2025-13324 - Lack of Invalidation of Legacy Remote Cluster Invite Tokens After Confirmation

Mattermost versions 10.11.x <= 10.11.5, 11.0.x <= 11.0.4, 10.12.x <= 10.12.2 fail to invalidate remote cluster invite tokens when using the legacy (version 1) protocol or when the confirming party does not provide a refreshed token, which allows an attacker who has obtained an invite token to autheโ€ฆ

๐Ÿ“… Published: Dec. 17, 2025, 6:14 p.m. ๐Ÿ”„ Last Modified: Dec. 29, 2025, 6:46 p.m.
Total resulsts: 349182
Page 2552 of 34,919
ยซ previous page ยป next page
Filters