9.8

CVSS3.1

CVE-2025-45814 -

Missing authentication checks in the query.fcgi endpoint of NS3000 v8.1.1.125110 , v7.2.8.124852 , and v7.x and NS2000 v7.02.08 allows attackers to execute a session hijacking attack.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 7:45 p.m.

5

CVSS3.1

CVE-2025-52925 -

In One Identity OneLogin Active Directory Connector before 6.1.5, encryption of the DirectoryToken was mishandled, aka ST-812.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.7

CVSS3.1

CVE-2025-7039 - Glib: buffer under-read on glib through glib/gfileutils.c via get_tmp_file()

A flaw was found in glib. An integer overflow during temporary file creation leads to an out-of-bounds memory access, allowing an attacker to potentially perform path traversal or access private temporary file content by creating symbolic links. This vulnerability allows a local attacker to manipul…

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2025-45424 -

Incorrect access control in Xinference before v1.4.0 allows attackers to access the Web GUI without authentication.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Oct. 18, 2025, 1:40 a.m.

9.8

CVSS3.1

CVE-2025-45813 -

ENENSYS IPGuard v2 2.10.0 was discovered to contain hardcoded credentials.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 7:41 p.m.

6.5

CVSS3.1

CVE-2025-45029 -

WINSTAR WN572HP3 v230525 was discovered to contain a heap overflow via the CONTENT_LENGTH variable at /cgi-bin/upload.cgi.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS3.1

CVE-2025-36630 - Local Privilege Escalation

In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.

πŸ“… Published: July 1, 2025, 11:11 p.m. πŸ”„ Last Modified: Oct. 15, 2025, 7:52 p.m.

7.4

CVSS3.1

CVE-2025-49741 - Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

πŸ“… Published: July 1, 2025, 10:22 p.m. πŸ”„ Last Modified: Feb. 13, 2026, 7:07 p.m.

0.0

CVE-2025-6992 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: July 1, 2025, 9:30 p.m. πŸ”„ Last Modified: Aug. 30, 2025, 10:19 p.m.

5.4

CVSS3.1

CVE-2025-46259 - WordPress The Plus Addons for Elementor - Pro Plugin < 6.3.7 - Broken Access Control vulnerability

Missing Authorization vulnerability in POSIMYTH Innovation The Plus Addons for Elementor Pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The Plus Addons for Elementor Pro: from n/a before 6.3.7.

πŸ“… Published: July 1, 2025, 7:10 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 345256
Page 4430 of 34,526
Β« previous page Β» next page
Filters