5.3

CVSS4.0

CVE-2025-8343 - openviglet shio ShStaticFileAPI.java shStaticFilePreUpload path traversal

A vulnerability was found in openviglet shio up to 0.3.8. It has been rated as critical. This issue affects the function shStaticFilePreUpload of the file shio-app/src/main/java/com/viglet/shio/api/staticfile/ShStaticFileAPI.java. The manipulation of the argument fileName leads to path traversal. T…

πŸ“… Published: July 31, 2025, 1:02 a.m. πŸ”„ Last Modified: Sept. 3, 2025, 2:31 p.m.

5.3

CVSS4.0

CVE-2025-8340 - code-projects Intern Membership Management System Error Message fill_details.php cross site scripti…

A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file fill_details.php of the component Error Message Handler. The manipulation of the argument email leads to cross site scripting.…

πŸ“… Published: July 31, 2025, 12:32 a.m. πŸ”„ Last Modified: Aug. 5, 2025, 8:36 p.m.

6.9

CVSS4.0

CVE-2025-8339 - code-projects Intern Membership Management System student_login.php sql injection

A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been classified as critical. This affects an unknown part of the file /student_login.php. The manipulation of the argument user_name/password leads to sql injection. It is possible to initiate the attack remo…

πŸ“… Published: July 31, 2025, 12:02 a.m. πŸ”„ Last Modified: Aug. 5, 2025, 7:32 p.m.

7.6

CVSS3.1

CVE-2025-52203 -

A stored cross-site scripting (XSS) vulnerability exists in DevaslanPHP project-management v1.2.4. The vulnerability resides in the Ticket Name field, which fails to properly sanitize user-supplied input. An authenticated attacker can inject malicious JavaScript payloads into this field, which are …

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:18 p.m.

9.8

CVSS3.1

CVE-2025-26063 -

An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted payload into the ESSID name when creating a network.

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

3.5

CVSS3.1

CVE-2025-51384 -

D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter.

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Aug. 4, 2025, 9 a.m.

8

CVSS3.1

CVE-2025-52289 -

A Broken Access Control vulnerability in MagnusBilling v7.8.5.3 allows newly registered users to gain escalated privileges by sending a crafted request to /mbilling/index.php/user/save to set their account status fom "pending" to "active" without requiring administrator approval.

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:37 p.m.

6.5

CVSS3.1

CVE-2025-45769 -

php-jwt v6.11.0 was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key lengths are expected to be set by an application, not by this library. This dispute is subject to review under CNA rules 4.1.4, 4.1.14, and other rules; the dispute tagging is not mea…

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Feb. 18, 2026, 10:16 p.m.

9.8

CVSS3.1

CVE-2025-26062 -

An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file and obtain potentially sensitive information from the current settings.

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

7

CVSS3.1

CVE-2025-45768 - pyjwt: pyjwt Weak Encryption Vulnerability

pyjwt v2.10.1 was discovered to contain weak encryption. NOTE: this is disputed by the Supplier because the key length is chosen by the application that uses the library (admittedly, library users may benefit from a minimum value and a mechanism for opting in to strict enforcement).

πŸ“… Published: July 31, 2025, midnight πŸ”„ Last Modified: Sept. 12, 2025, 4:45 p.m.
Total resulsts: 346880
Page 4223 of 34,688
Β« previous page Β» next page
Filters