5.1

CVSS4.0

CVE-2025-11958 -

An improper input validation in the Security Dashboard ignored-tasks API of Devolutions Server 2025.2.15.0 and earlier allows an authenticated user to cause a denial of service to the Security Dashboard via a craftedΒ request.

πŸ“… Published: Oct. 22, 2025, 5:08 p.m. πŸ”„ Last Modified: Nov. 27, 2025, 3:41 p.m.

5.3

CVSS4.0

CVE-2025-22178 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to view items on the "Why" page.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:20 p.m.

5.3

CVSS4.0

CVE-2025-22169 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to subscribe to an item/object without having the expected permission level.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:24 p.m.

5.3

CVSS4.0

CVE-2025-22173 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to view certain sprint data without the required permission.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:23 p.m.

5.3

CVSS4.0

CVE-2025-22170 -

Jira Align is vulnerable to an authorization issue. A low-privilege user without sufficient privileges to perform an action could if they included a particular state-related parameter of a user with sufficient privileges to perform the action.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:24 p.m.

5.3

CVSS4.0

CVE-2025-22174 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to view portfolio rooms without the required permission.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:23 p.m.

5.3

CVSS4.0

CVE-2025-22172 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to read external reports without the required permission.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:24 p.m.

5.3

CVSS4.0

CVE-2025-22176 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to view audit log items.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:20 p.m.

5.3

CVSS4.0

CVE-2025-22171 -

Jira Align is vulnerable to an authorization issue. A low-privilege user is able to alter the private checklists of other users.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 2:24 p.m.

5.3

CVSS4.0

CVE-2025-22168 -

Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a small amount of sensitive information. For example, a low-level user was able to read the steps of another user's private checklist.

πŸ“… Published: Oct. 22, 2025, 4:30 p.m. πŸ”„ Last Modified: Oct. 24, 2025, 3:15 p.m.
Total resulsts: 349182
Page 3310 of 34,919
Β« previous page Β» next page
Filters