4.4

CVSS3.1

CVE-2025-33116 - IBM Watson Studio on Cloud Pak for Data cross-site scripting

IBM Watson Studio 4.0 through 5.2.0 on Cloud Pak for Data is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted s…

πŸ“… Published: Sept. 25, 2025, 3:10 p.m. πŸ”„ Last Modified: Dec. 22, 2025, 1:55 p.m.

7.5

CVSS3.1

CVE-2024-48014 -

Dell BSAFE Micro Edition Suite, versions prior to 5.0.2.3 contain an Out-of-bounds Write vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.

πŸ“… Published: Sept. 25, 2025, 3:08 p.m. πŸ”„ Last Modified: Jan. 16, 2026, 5:08 p.m.

6.9

CVSS4.0

CVE-2025-10951 - geyang ml-logger server.py log_handler path traversal

A vulnerability was identified in geyang ml-logger up to acf255bade5be6ad88d90735c8367b28cbe3a743. Affected by this vulnerability is the function log_handler of the file ml_logger/server.py. Such manipulation of the argument File leads to path traversal. It is possible to launch the attack remotely…

πŸ“… Published: Sept. 25, 2025, 3:02 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4

CVSS3.1

CVE-2025-36601 -

Dell PowerScale OneFS, versions 9.5.0.0 through 9.11.0.0, contains an exposure of sensitive information to an unauthorized actor vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to Information disclosure.

πŸ“… Published: Sept. 25, 2025, 2:54 p.m. πŸ”„ Last Modified: Feb. 20, 2026, 6:38 p.m.

5.1

CVSS4.0

CVE-2025-40838 - Ericsson Indoor Connect 8855 - Insufficiently Protected Credentials Vulnerability

Ericsson Indoor Connect 8855 contains a vulnerability where server-side security can be bypassed in the client which if exploited can lead to unauthorized disclosure of certain information.

πŸ“… Published: Sept. 25, 2025, 2:54 p.m. πŸ”„ Last Modified: Oct. 2, 2025, 5:58 p.m.

8.7

CVSS4.0

CVE-2025-40837 - Ericsson Indoor Connect 8855 - Missing Authorization Vulnerability

Ericsson Indoor Connect 8855 contains a missing authorization vulnerability which if exploited can allow access to the system as a user with higher privileges than intended.

πŸ“… Published: Sept. 25, 2025, 2:52 p.m. πŸ”„ Last Modified: Oct. 2, 2025, 5:59 p.m.

2.4

CVSS4.0

CVE-2025-59838 - Monkeytype Vulnerable to Self-XSS on loading saved custom text

Monkeytype is a minimalistic and customizable typing test. In versions 25.36.0 and prior, improper handling of user input when loading a saved custom text results in XSS. This issue has been fixed in version 25.44.0.

πŸ“… Published: Sept. 25, 2025, 2:52 p.m. πŸ”„ Last Modified: Oct. 28, 2025, 4:15 p.m.

8.7

CVSS4.0

CVE-2025-40836 - Ericsson Indoor Connect 8855 - Improper Input Validation Vulnerability

Ericsson Indoor Connect 8855 contains an improper input validation vulnerability which if exploited can allow an attacker to execute commands with escalated privileges.

πŸ“… Published: Sept. 25, 2025, 2:49 p.m. πŸ”„ Last Modified: Oct. 2, 2025, 5:59 p.m.

9.5

CVSS4.0

CVE-2020-36851 - Rob--W / cors-anywhere Misconfigured CORS Proxy Allows SSRF

Rob -- W / cors-anywhere instances configured as an open proxy allow unauthenticated external users to induce the server to make HTTP requests to arbitrary targets (SSRF). Because the proxy forwards requests and headers, an attacker can reach internal-only endpoints and link-local metadata services…

πŸ“… Published: Sept. 25, 2025, 2:45 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.9

CVSS3.1

CVE-2025-59832 - Horrila Stored XSS Vulnerability via Ticket Comment section

Horilla is a free and open source Human Resource Management System (HRMS). Prior to version 1.4.0, there is a stored XSS vulnerability in the ticket comment editor. A low-privilege authenticated user could run arbitrary JavaScript in an admin’s browser, exfiltrate the admin’s cookies/CSRF token, an…

πŸ“… Published: Sept. 25, 2025, 2:45 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 2:03 p.m.
Total resulsts: 349182
Page 3683 of 34,919
Β« previous page Β» next page
Filters