8.2

CVSS3.1

CVE-2025-52187 -

GetProjectsIdea Create School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in my_profile_update_form1.php.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:19 p.m.

6.1

CVSS3.1

CVE-2025-51954 -

playground.electronhub.ai v1.1.9 was discovered to contain a cross-site scripting (XSS) vulnerability.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:17 p.m.

9.8

CVSS3.1

CVE-2025-50578 -

LinuxServer.io heimdall 2.6.3-ls307 contains a vulnerability in how it handles user-supplied HTTP headers, specifically `X-Forwarded-Host` and `Referer`. An unauthenticated remote attacker can manipulate these headers to perform Host Header Injection and Open Redirect attacks. This allows the loadi…

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 25, 2025, 2:20 a.m.

6.5

CVSS3.1

CVE-2025-45619 -

An issue in Aver PTC310UV2 firmware v.0.1.0000.59 allows a remote attacker to execute arbitrary code via the SendAction function

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:22 p.m.

6.1

CVSS3.1

CVE-2025-51951 -

andisearch v0.5.249 was discovered to contain a cross-site scripting (XSS) vulnerability.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:22 p.m.

6.5

CVSS3.1

CVE-2025-25692 -

A PHAR deserialization vulnerability in the _getHeaders function of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a crafted POST request.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:21 p.m.

8.1

CVSS3.1

CVE-2025-45620 -

An issue in Aver PTC310UV2 v.0.1.0000.59 allows a remote attacker to obtain sensitive information via a crafted request

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:22 p.m.

7.3

CVSS3.1

CVE-2024-45955 -

Rocket Software Rocket Zena 4.4.1.26 is vulnerable to SQL Injection via the filter parameter.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:25 p.m.

6.5

CVSS3.1

CVE-2025-50464 -

A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without…

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 6, 2025, 4:22 p.m.

8.6

CVSS3.1

CVE-2025-53022 -

TrustedFirmware-M (aka Trusted Firmware for M profile Arm CPUs) before 2.1.3 and 2.2.x before 2.2.1 lacks length validation during a firmware upgrade. While processing a new image, the Firmware Upgrade (FWU) module does not validate the length field of the Type-Length-Value (TLV) structure for depe…

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4464 of 34,919
Β« previous page Β» next page
Filters