2.9

CVSS4.0

CVE-2025-62366 - Mailgen vulnerable to HTML injection and cross-site scripting via plaintext email generation

mailgen is a Node.js package that generates responsive HTML e-mails for sending transactional mail. Mailgen versions through 2.0.30 contain an HTML injection vulnerability in plaintext emails produced by the generatePlaintext method when user‑generated content is supplied. The function attempts to …

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-31365 -

An Improper Control of Generation of Code ('Code Injection') vulnerability [CWE-94] in FortiClientMac 7.4.0 through 7.4.3, 7.2.1 through 7.2.8 may allow an unauthenticated attacker to execute arbitrary code on the victim's host via tricking the user into visiting a malicious website.

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:47 p.m.

6.2

CVSS3.1

CVE-2025-53845 -

An improper authentication vulnerability [CWE-287] in Fortinet FortiAnalyzer version 7.6.0 through 7.6.3 and before 7.4.6 allows an unauthenticated attacker to obtain information pertaining to the device's health and status, or cause a denial of service via crafted OFTP requests.

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 9:19 a.m.

6.2

CVSS3.1

CVE-2025-59921 -

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet FortiADC version 7.4.0, version 7.2.3 and below, version 7.1.4 and below, 7.0 all versions, 6.2 all versions may allow an authenticated attacker to obtain sensitive data via crafted HTTP or HTTPs reque…

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 9:17 a.m.

7

CVSS3.1

CVE-2024-33507 -

An insufficient session expiration vulnerability [CWE-613] and an incorrect authorization vulnerability [CWE-863] in FortiIsolator 2.4.0 through 2.4.4, 2.3 all versions, 2.2.0, 2.1 all versions, 2.0 all versions authentication mechanism may allow remote unauthenticated attacker to deauthenticate lo…

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 9:16 a.m.

6

CVSS3.1

CVE-2025-57716 -

An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may allow a local low privileged user to perform a DLL hijacking attack via placing a malicious DLL to the FortiClient Online Installer installation folder.

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:47 p.m.

4.8

CVSS3.1

CVE-2025-25255 -

An Improperly Implemented Security Check for Standard vulnerability [CWE-358] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiProxy 7.6.0 through 7.6.3, FortiProxy 7.4.0 through 7.4.11, FortiProxy 7.2 all versions, FortiProxy 7.0.1 through 7.0.22 may allow an unauthenticated proxy user …

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 10:16 a.m.

4.3

CVSS3.1

CVE-2025-25252 -

An Insufficient Session Expiration vulnerability [CWE-613] in FortiOS SSL VPN 7.6.0 through 7.6.2, 7.4.0 through 7.4.6, 7.2.0 through 7.2.10, 7.0.0 through 7.0.16, 6.4 all versions may allow a remote attacker (e.g. a former admin whose account was removed and whose session was terminated) in posses…

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 9:17 a.m.

5

CVSS3.1

CVE-2024-26008 -

An improper check or handling of exceptional conditions vulnerability [CWE-703] in FortiOS version 7.4.0 through 7.4.3 and before 7.2.7, FortiProxy version 7.4.0 through 7.4.3 and before 7.2.9, FortiPAM before 1.2.0 and FortiSwitchManager version 7.2.0 through 7.2.3 and version 7.0.0 through 7.0.3 …

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 9:19 a.m.

4.2

CVSS3.1

CVE-2024-47569 -

A insertion of sensitive information into sent data vulnerability in Fortinet FortiMail 7.4.0 through 7.4.2, FortiMail 7.2.0 through 7.2.6, FortiMail 7.0 all versions, FortiManager 7.6.0 through 7.6.1, FortiManager 7.4.1 through 7.4.3, FortiManager Cloud 7.4.1 through 7.4.3, FortiNDR 7.6.0 through …

πŸ“… Published: Oct. 14, 2025, 3:23 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 7:22 a.m.
Total resulsts: 349182
Page 3441 of 34,919
Β« previous page Β» next page
Filters