0.0
CVE-2025-57748 -
Not used
0.0
CVE-2025-57747 -
Not used
0.0
CVE-2025-57746 -
Not used
0.0
CVE-2025-57745 -
Not used
0.0
CVE-2025-57743 -
Not used
5.1
CVE-2025-9137 - Scada-LTS scheduled_events.shtm cross site scripting
A vulnerability has been found in Scada-LTS 2.7.8.1. This impacts an unknown function of the file scheduled_events.shtm. Such manipulation of the argument alias leads to cross site scripting. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. The vendโฆ
4.8
CVE-2025-9136 - libretro RetroArch file_stream.c filestream_vscanf out-of-bounds
A flaw has been found in libretro RetroArch 1.18.0/1.19.0/1.20.0. This affects the function filestream_vscanf of the file libretro-common/streams/file_stream.c. This manipulation causes out-of-bounds read. The attack needs to be launched locally. Upgrading to version 1.21.0 mitigates this issue. Itโฆ
4.8
CVE-2025-9135 - Verkehrsauskunft รsterreich SmartRide/cleVVVer/BusBahnBim AndroidManifest.xml improper export of anโฆ
A vulnerability was detected in Verkehrsauskunft รsterreich SmartRide, cleVVVer and BusBahnBim up to 12.1.1(258). The impacted element is an unknown function of the file AndroidManifest.xml. The manipulation results in improper export of android application components. The attack must be initiated โฆ
4.4
CVE-2025-8783 - Contact Manager <= 8.6.5 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'title'
The Contact Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'titleโ parameter in all versions up to, and including, 8.6.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level accessโฆ
4.8
CVE-2025-9134 - AfterShip Package Tracker App com.aftership.AfterShip AndroidManifest.xml improper export of androiโฆ
A security vulnerability has been detected in AfterShip Package Tracker App up to 5.24.1 on Android. The affected element is an unknown function of the file AndroidManifest.xml of the component com.aftership.AfterShip. The manipulation leads to improper export of android application components. Theโฆ