3.3

CVSS3.1

CVE-2025-13321 - Mattermost Desktop App logging sensitive information and fails to clear data on server deletion

Mattermost Desktop App versions <6.0.0 fail to sanitize sensitive information from Mattermost logs and clear data on server deletion which allows an attacker with access to the users system to gain access to potentially sensitive information via reading the application logs.

πŸ“… Published: Dec. 17, 2025, 6:14 p.m. πŸ”„ Last Modified: Dec. 18, 2025, 7:41 p.m.

6.5

CVSS3.1

CVE-2025-12689 - DoS in Calls plugin via malformed UTF-8 in WebSocket request

Mattermost versions 11.0.x <= 11.0.4, 10.12.x <= 10.12.2, 10.11.x <= 10.11.6 fail to check WebSocket request field for proper UTF-8 format, which allows attacker to crash Calls plug-in via sending malformed request.

πŸ“… Published: Dec. 17, 2025, 6:14 p.m. πŸ”„ Last Modified: Dec. 29, 2025, 6:44 p.m.

7.5

CVSS3.1

CVE-2025-14840 - HTTP Client Manager - Less critical - Information disclosure - SA-CONTRIB-2025-126

Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager allows Forceful Browsing.This issue affects HTTP Client Manager: from 0.0.0 before 9.3.13, from 10.0.0 before 10.0.2, from 11.0.0 before 11.0.1.

πŸ“… Published: Dec. 17, 2025, 5:47 p.m. πŸ”„ Last Modified: Feb. 6, 2026, 6:48 p.m.

10

CVSS3.1

CVE-2025-20393 - Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution Vulnerab…

A vulnerability in the Spam Quarantine feature of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Email and Web Manager could allow an unauthenticated, remote attacker to execute arbitrary system commands on an affected device with root privileges. This vulnerability is du…

πŸ“… Published: Dec. 17, 2025, 4:47 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:07 p.m.

6.5

CVSS4.0

CVE-2025-26381 - OpenBlue Mobile Web Application configuration issue for optional for OpenBlue Workplace (formerly F…

Successful exploitation of this vulnerability could allow an attacker to gain unauthorized access to sensitive information.

πŸ“… Published: Dec. 17, 2025, 4:13 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-43873 - iSTAR Ultra, Ultra SE, Ultra G2, Ultra G2 SE, iSTAR Edge G2 - Authenticated web application command…

Successful exploitation of these vulnerabilities could allow an attacker to modify firmware and gain full access to the device.

πŸ“… Published: Dec. 17, 2025, 3:53 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-14727 - NGINX Ingress Controller vulnerability

A vulnerability exists in NGINX Ingress Controller's nginx.org/rewrite-targetΒ annotation validation. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

πŸ“… Published: Dec. 17, 2025, 3:48 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:07 p.m.

10

CVSS3.1

CVE-2025-44005 - github.com/smallstep/certificates: github.com/smallstep/certificates: Authorization bypass allows u…

An attacker can bypass authorization checks and force a Step CA ACME or SCEP provisioner to create certificates without completing certain protocol authorization checks.

πŸ“… Published: Dec. 17, 2025, 3:16 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.6

CVSS4.0

CVE-2025-14266 - CSRF in Ercom Cryptobox administration console

CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administrator. The attack requires the administrator to browse a malicious web site or to click a link while he has an open session on the administration console.

πŸ“… Published: Dec. 17, 2025, 1:38 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-14828 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

πŸ“… Published: Dec. 17, 2025, 1:36 p.m. πŸ”„ Last Modified: Dec. 17, 2025, 6:14 p.m.
Total resulsts: 349182
Page 2553 of 34,919
Β« previous page Β» next page
Filters