7.3

CVSS4.0

CVE-2025-11565 -

CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause elevated system access when a Web Admin user on the local network tampers with the POST /REST/UpdateJRE request payload.

πŸ“… Published: Nov. 12, 2025, 1:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-62876 -

A Execution with Unnecessary Privileges vulnerability in lightdm-kde-greeter allows escalation from the service user to root.This issue affects lightdm-kde-greeter.Β before 6.0.4.

πŸ“… Published: Nov. 12, 2025, 12:57 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.2

CVSS4.0

CVE-2025-12998 - Broken Authentication in extension β€œModules” (modules)

Improper Authentication vulnerability in TYPO3 Extension "Modules" codingms/modules.This issue affects Extension "Modules": before 4.3.11, from 5.0.0 before 5.7.4, from 6.0.0 before 6.4.2, from 7.0.0 before 7.5.5.

πŸ“… Published: Nov. 12, 2025, 11:16 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.2

CVSS3.1

CVE-2025-11994 - Easy Email Subscription <= 1.3 - Unauthenticated Stored Cross-Site Scripting

The Easy Email Subscription plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'name' parameter in all versions up to, and including, 1.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web s…

πŸ“… Published: Nov. 12, 2025, 11:05 a.m. πŸ”„ Last Modified: April 21, 2026, 1:45 a.m.

6.5

CVSS3.1

CVE-2025-11454 - Specific Content For Mobile – Customize the mobile version without redirections <= 0.5.5 - Authenti…

The Specific Content For Mobile – Customize the mobile version without redirections plugin for WordPress is vulnerable to SQL Injection via the eos_scfm_duplicate_post_as_draft() function in all versions up to, and including, 0.5.5 due to insufficient escaping on the user supplied parameter and lac…

πŸ“… Published: Nov. 12, 2025, 11:05 a.m. πŸ”„ Last Modified: April 22, 2026, 12:30 p.m.

0.0

CVE-2025-40128 - btrfs: fix symbolic link reading when bs > ps

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix symbolic link reading when bs > ps [BUG DURING BS > PS TEST] When running the following script on a btrfs whose block size is larger than page size, e.g. 8K block size and 4K page size, it will trigger a kernel BUG: …

πŸ“… Published: Nov. 12, 2025, 10:23 a.m. πŸ”„ Last Modified: Nov. 12, 2025, 10:23 a.m.

0.0

CVE-2025-40112 - sparc: fix accurate exception reporting in copy_{from_to}_user for Niagara

In the Linux kernel, the following vulnerability has been resolved: sparc: fix accurate exception reporting in copy_{from_to}_user for Niagara The referenced commit introduced exception handlers on user-space memory references in copy_from_user and copy_to_user. These handlers return from the res…

πŸ“… Published: Nov. 12, 2025, 10:23 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.3

CVSS3.1

CVE-2025-37734 - Kibana Origin Validation Error

Origin Validation Error in Kibana can lead to Server-Side Request Forgery via a forged Origin HTTP header processed by the Observability AI Assistant.

πŸ“… Published: Nov. 12, 2025, 9:57 a.m. πŸ”„ Last Modified: Dec. 11, 2025, 9:09 p.m.

7.3

CVSS4.0

CVE-2025-12382 - Path Traversal Allows Remote Code Execution in AlgoSec Firewall Analyzer

Improper Limitation of a Pathname 'Path Traversal') vulnerability in Algosec Firewall Analyzer on Linux, 64 bit allows an authenticated user to upload files to a restricted directory leading to code injection. This issue affects Algosec Firewall Analyzer: A33.0 (up to build 320), A33.10 (up to buil…

πŸ“… Published: Nov. 12, 2025, 9:37 a.m. πŸ”„ Last Modified: Dec. 11, 2025, 6:37 p.m.

6.5

CVSS3.1

CVE-2025-61623 - Apache OFBiz: Reflected Cross-site Scripting

Reflected cross-site scripting vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 24.09.03. Users are recommended to upgrade to version 24.09.03, which fixes the issue.

πŸ“… Published: Nov. 12, 2025, 9:16 a.m. πŸ”„ Last Modified: Nov. 13, 2025, 3:04 p.m.
Total resulsts: 349182
Page 3037 of 34,919
Β« previous page Β» next page
Filters