8.9

CVSS4.0

CVE-2025-49833 - GHSL-2025-045: GPT-SoVITS Command Injection vulnerability

GPT-SoVITS-WebUI is a voice conversion and text-to-speech webUI. In versions 20250228v3 and prior, there is a command injection vulnerability in the webui.py open_slice function. slice_opt_root and slice-inp-path takes user input, which is passed to the open_slice function, which concatenates the u…

📅 Published: July 15, 2025, 8:22 p.m. 🔄 Last Modified: July 30, 2025, 8:11 p.m.

9.1

CVSS4.0

CVE-2025-49831 - Conjur OSS and Secrets Manager, Self-Hosted (formerly Conjur Enterprise) vulnerable to IAM Authenti…

An attacker of Secrets Manager, Self-Hosted installations that route traffic from Secrets Manager to AWS through a misconfigured network device can reroute authentication requests to a malicious server under the attacker’s control. CyberArk believes there to be very few installations where this iss…

📅 Published: July 15, 2025, 8:10 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

7.1

CVSS4.0

CVE-2025-49830 - Conjur OSS and Secrets Manager, Self-Hosted (formerly Conjur Enterprise) vulnerable to path travers…

Conjur provides secrets management and application identity for infrastructure. An authenticated attacker who is able to load policy can use the policy yaml parser to reference files on the Secrets Manager, Self-Hosted server. These references may be used as reconnaissance to better understand the …

📅 Published: July 15, 2025, 8:04 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

5.9

CVSS3.1

CVE-2025-30761 - openjdk: Improve scripting supports (Oracle CPU 2025-07)

Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting). Supported versions that are affected are Oracle Java SE: 8u451, 8u451-perf and 11.0.27; Oracle GraalVM Enterprise Edition: 21.3.14. Difficult to exploit vulnerability allows un…

📅 Published: July 15, 2025, 8 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

6

CVSS4.0

CVE-2025-49829 - Conjur OSS and Secrets Manager, Self-Hosted (formerly Conjur Enterprise) missing validations

Conjur provides secrets management and application identity for infrastructure. Missing validations in Secrets Manager, Self-Hosted allows authenticated attackers to inject resources into the database and to bypass permission checks. This issue affects Secrets Manager, Self-Hosted (formerly Conjur …

📅 Published: July 15, 2025, 7:47 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

8.6

CVSS4.0

CVE-2025-49828 - Conjur OSS and Secrets Manager, Self-Hosted (formerly Conjur Enterprise) Vulnerable to Remote Code …

Conjur provides secrets management and application identity for infrastructure. Conjur OSS versions 1.19.5 through 1.21.1 and Secrets Manager, Self-Hosted (formerly known as Conjur Enterprise) 13.1 through 13.4.1 are vulnerable to remote code execution An authenticated attacker who can inject secre…

📅 Published: July 15, 2025, 7:35 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

4.9

CVSS3.1

CVE-2025-53032 - mysql: Optimizer unspecified vulnerability (CPU Jul 2025)

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 9.0.0-9.1.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attack…

📅 Published: July 15, 2025, 7:27 p.m. 🔄 Last Modified: July 24, 2025, 8:35 p.m.

5.3

CVSS3.1

CVE-2025-53031 -

Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Platform). Supported versions that are affected are 8.0.7.8, 8.0.8.5, 8.0.8.6, 8.1.1.4 and 8.1.2.5. Easily exploitable vulnerability allows unauthent…

📅 Published: July 15, 2025, 7:27 p.m. 🔄 Last Modified: July 24, 2025, 8:34 p.m.

6

CVSS3.1

CVE-2025-53030 -

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracl…

📅 Published: July 15, 2025, 7:27 p.m. 🔄 Last Modified: Feb. 26, 2026, 5:50 p.m.

2.3

CVSS3.1

CVE-2025-53029 -

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracl…

📅 Published: July 15, 2025, 7:27 p.m. 🔄 Last Modified: July 16, 2025, 9:35 p.m.
Total resulsts: 349182
Page 4632 of 34,919
« previous page » next page
Filters