0.0

CVE-2025-54828 -

Not used

📅 Published: July 30, 2025, 8:31 a.m. 🔄 Last Modified: July 31, 2025, 3:15 a.m.

0.0

CVE-2025-54824 -

Not used

📅 Published: July 30, 2025, 8:31 a.m. 🔄 Last Modified: July 31, 2025, 3:15 a.m.

4.9

CVSS3.1

CVE-2025-6348 - Smart Slider 3 <= 3.5.1.28 - Authenticated (Administrator+) SQL Injection via `sliderid` Parameter

The Smart Slider 3 plugin for WordPress is vulnerable to time-based SQL Injection via the ‘sliderid’ parameter in all versions up to, and including, 3.5.1.28 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it poss…

📅 Published: July 30, 2025, 8:23 a.m. 🔄 Last Modified: April 22, 2026, 2:45 p.m.

5.9

CVSS4.0

CVE-2025-1394 - Denial of Service (DoS) vulnerabilitiey in Zigbee library

The Ember ZNet stack’s packet buffer manager may read out of bound memory leading to an assert, causing a Denial of Service (DoS).

📅 Published: July 30, 2025, 8:11 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS4.0

CVE-2025-1221 - DoS in Zigbee device due to heavy traffic

A Zigbee Radio Co-Processor (RCP), which is using SiLabs EmberZNet Zigbee stack, was unable to send messages to the host system (CPCd) due to heavy Zigbee traffic, resulting in a Denial of Service (DoS) attack, Only hard reset will bring the device to normal operation

📅 Published: July 30, 2025, 8:09 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-8323 - Ventem|e-School - Arbitrary File Upload

The e-School from Ventem has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

📅 Published: July 30, 2025, 2:54 a.m. 🔄 Last Modified: July 31, 2025, 6:42 p.m.

8.7

CVSS4.0

CVE-2025-8322 - Ventem|e-School - Missing Authorization

The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to access administrator functions, including creating, modifying, and deleting accounts. They can even escalate any account to system administrator privilege.

📅 Published: July 30, 2025, 2:49 a.m. 🔄 Last Modified: July 31, 2025, 6:42 p.m.

8.8

CVSS3.1

CVE-2025-8292 -

Use after free in Media Stream in Google Chrome prior to 138.0.7204.183 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

📅 Published: July 30, 2025, 1:18 a.m. 🔄 Last Modified: Feb. 26, 2026, 5:50 p.m.

8.8

CVSS3.0

CVE-2025-8320 - Tesla Wall Connector Content-Length Header Improper Input Validation Remote Code Execution Vulnerab…

Tesla Wall Connector Content-Length Header Improper Input Validation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Tesla Wall Connector devices. Authentication is not required to exploit this vulnerab…

📅 Published: July 30, 2025, 12:50 a.m. 🔄 Last Modified: Aug. 12, 2025, 3:18 p.m.

6.8

CVSS3.0

CVE-2025-8321 - Tesla Wall Connector Firmware Downgrade Vulnerability

Tesla Wall Connector Firmware Downgrade Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Tesla Wall Connector devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the firmw…

📅 Published: July 30, 2025, 12:50 a.m. 🔄 Last Modified: Aug. 12, 2025, 3:17 p.m.
Total resulsts: 347632
Page 4307 of 34,764
« previous page » next page
Filters