5.3

CVSS3.1

CVE-2025-54425 - Umbraco's Delivery API allows for cached requests to be returned with an invalid API key

Umbraco is an ASP.NET CMS. In versions 13.0.0 through 13.9.2, 15.0.0 through 15.4.1 and 16.0.0 through 16.1.0, the content delivery API can be restricted from public access where an API key must be provided in a header to authorize the request. It's also possible to configure output caching, such t…

πŸ“… Published: July 30, 2025, 1:41 p.m. πŸ”„ Last Modified: Sept. 22, 2025, 1:53 p.m.

3.3

CVSS3.1

CVE-2025-54410 - Moby's Firewalld reload removes bridge network isolation

Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various other downstream projects/products. A firewalld vulnerability affects Moby releases before 28.0.0. When firewalld reloads, Docker fails to re-create ipta…

πŸ“… Published: July 30, 2025, 1:24 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 5:27 p.m.

5.1

CVSS4.0

CVE-2025-54388 - Moby's Firewalld reload makes published container ports accessible from remote hosts

Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Container Runtime, and various other downstream projects/products. In versions 28.2.0 through 28.3.2, when the firewalld service is reloaded it removes all iptables rules including tho…

πŸ“… Published: July 30, 2025, 1:24 p.m. πŸ”„ Last Modified: Sept. 8, 2025, 4:34 p.m.

6.9

CVSS4.0

CVE-2025-8326 - code-projects Exam Form Submission delete_s7.php sql injection

A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/delete_s7.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed…

πŸ“… Published: July 30, 2025, 1:02 p.m. πŸ”„ Last Modified: Aug. 5, 2025, 8:47 p.m.

5.4

CVSS3.1

CVE-2025-47001 - Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they brow…

πŸ“… Published: July 30, 2025, 1 p.m. πŸ”„ Last Modified: Aug. 4, 2025, 1:12 p.m.

0.0

CVE-2025-54829 -

Not used

πŸ“… Published: July 30, 2025, 8:31 a.m. πŸ”„ Last Modified: July 31, 2025, 3:15 a.m.

0.0

CVE-2025-54823 -

Not used

πŸ“… Published: July 30, 2025, 8:31 a.m. πŸ”„ Last Modified: July 31, 2025, 3:15 a.m.

0.0

CVE-2025-54825 -

Not used

πŸ“… Published: July 30, 2025, 8:31 a.m. πŸ”„ Last Modified: July 31, 2025, 3:15 a.m.

0.0

CVE-2025-54826 -

Not used

πŸ“… Published: July 30, 2025, 8:31 a.m. πŸ”„ Last Modified: July 31, 2025, 3:15 a.m.

0.0

CVE-2025-54827 -

Not used

πŸ“… Published: July 30, 2025, 8:31 a.m. πŸ”„ Last Modified: July 31, 2025, 3:15 a.m.
Total resulsts: 347632
Page 4306 of 34,764
Β« previous page Β» next page
Filters