9.8

CVSS3.1

CVE-2025-7852 - WPBookit <= 1.0.6 - Unauthenticated Arbitrary File Upload via image_upload_handle Function

The WPBookit plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the image_upload_handle() function hooked via the 'add_new_customer' route in all versions up to, and including, 1.0.6. The plugin’s image‐upload handler calls move_uploaded_file() on cl…

πŸ“… Published: July 24, 2025, 4:24 a.m. πŸ”„ Last Modified: April 22, 2026, 5:15 p.m.

6.4

CVSS3.1

CVE-2025-4968 - WPBakery Page Builder <= 8.4.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multi…

The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple Page Builder elements (Copyright Element, Hover Box, Separator With Text, FAQ, Single Image, Custom Header, Button, Call To Action, Progress Bar, Pie Chart, Round Chart, and Line …

πŸ“… Published: July 24, 2025, 3:39 a.m. πŸ”„ Last Modified: April 22, 2026, 5:15 p.m.

6.8

CVSS3.1

CVE-2025-4395 - Medtronic MyCareLink Patient Monitor Empty Password Vulnerability

Medtronic MyCareLink Patient Monitor has a built-in user account with an empty password, which allows an attacker with physical access to log in with no password and access modify system functionality. This issue affects MyCareLink Patient Monitor models 24950 and 24952: before June 25, 2025

πŸ“… Published: July 24, 2025, 3:30 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.8

CVSS3.1

CVE-2025-4394 - Medtronic MyCareLink Patient Monitor Unencrypted Filesystem Vulnerability

Medtronic MyCareLink Patient Monitor uses an unencrypted filesystem on internal storage, which allows an attacker with physical access to read and modify files. This issue affects MyCareLink Patient Monitor models 24950 and 24952: before June 25, 2025

πŸ“… Published: July 24, 2025, 3:26 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-4393 - Medtronic MyCareLink Patient Monitor Deserialization Vulnerability

Medtronic MyCareLink Patient Monitor has an internal service that deserializes data, which allows a local attacker to interact with the service by crafting a binary payload to crash the service or elevate privileges. This issue affects MyCareLink Patient Monitor models 24950 and 24952: before Jun…

πŸ“… Published: July 24, 2025, 3:22 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2025-51085 -

Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/SetSysTimeCfg. The manipulation of the argument `timeZone` and `timeType` leads to stack-based buffer overflow.

πŸ“… Published: July 24, 2025, midnight πŸ”„ Last Modified: July 28, 2025, 5:01 p.m.

5.3

CVSS3.1

CVE-2025-51088 -

Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/WifiGuestSet. The manipulation of the argument `shareSpeed` leads to stack-based buffer overflow.

πŸ“… Published: July 24, 2025, midnight πŸ”„ Last Modified: July 28, 2025, 5:04 p.m.

4.7

CVSS3.1

CVE-2025-8114 - Libssh: null pointer dereference in libssh kex session id calculation

A flaw was found in libssh, a library that implements the SSH protocol. When calculating the session ID during the key exchange (KEX) process, an allocation failure in cryptographic functions may lead to a NULL pointer dereference. This issue can cause the client or server to crash.

πŸ“… Published: July 24, 2025, midnight πŸ”„ Last Modified: Jan. 22, 2026, 12:07 a.m.

5.3

CVSS3.1

CVE-2025-51082 -

Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/fast_setting_wifi_set. The manipulation of the argument `timeZone` leads to stack-based buffer overflow.

πŸ“… Published: July 24, 2025, midnight πŸ”„ Last Modified: July 28, 2025, 5 p.m.

6.5

CVSS3.1

CVE-2025-45731 -

A group deletion race condition in 2FAuth v5.5.0 causes data inconsistencies and orphaned accounts when a group is deleted while other operations are pending.

πŸ“… Published: July 24, 2025, midnight πŸ”„ Last Modified: Jan. 20, 2026, 7:15 p.m.
Total resulsts: 349182
Page 4534 of 34,919
Β« previous page Β» next page
Filters