6.3

CVSS4.0

CVE-2025-26383 -

The iSTAR Configuration Utility (ICU) tool leaks memory, which could result in the unintended exposure of unauthorized data from the Windows PC that ICU is running on.

πŸ“… Published: June 11, 2025, 3:36 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2025-49148 - ClipShare Server Allows Local Privilege Escalation via DLL Hijacking

ClipShare is a lightweight and cross-platform tool for clipboard sharing. Prior to 3.8.5, ClipShare Server for Windows uses the default Windows DLL search order and loads system libraries like CRYPTBASE.dll and WindowsCodecs.dll from its own directory before the system path. A local, non-privileged…

πŸ“… Published: June 11, 2025, 2:53 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS3.1

CVE-2025-48447 - Lightgallery - Moderately critical - Cross Site Scripting - SA-CONTRIB-2025-069

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Lightgallery allows Cross-Site Scripting (XSS).This issue affects Lightgallery: from 0.0.0 before 1.6.0.

πŸ“… Published: June 11, 2025, 2:37 p.m. πŸ”„ Last Modified: June 20, 2025, 2:41 p.m.

6.5

CVSS3.1

CVE-2025-48448 - Admin Audit Trail - Less critical - Denial of Service - SA-CONTRIB-2025-068

Allocation of Resources Without Limits or Throttling vulnerability in Drupal Admin Audit Trail allows Excessive Allocation.This issue affects Admin Audit Trail: from 0.0.0 before 1.0.5.

πŸ“… Published: June 11, 2025, 2:36 p.m. πŸ”„ Last Modified: June 20, 2025, 1:06 p.m.

8.8

CVSS3.1

CVE-2025-48446 - Commerce Alphabank Redirect - Moderately critical - Access bypass - SA-CONTRIB-2025-067

Incorrect Authorization vulnerability in Drupal Commerce Alphabank Redirect allows Functionality Misuse.This issue affects Commerce Alphabank Redirect: from 0.0.0 before 1.0.3.

πŸ“… Published: June 11, 2025, 2:34 p.m. πŸ”„ Last Modified: June 16, 2025, 4:38 p.m.

8.2

CVSS3.1

CVE-2025-49146 - pgjdbc Client Allows Fallback to Insecure Authentication Despite channelBinding=require Configurati…

pgjdbc is an open source postgresql JDBC Driver. From 42.7.4 and until 42.7.7, when the PostgreSQL JDBC driver is configured with channel binding set to required (default value is prefer), the driver would incorrectly allow connections to proceed with authentication methods that do not support chan…

πŸ“… Published: June 11, 2025, 2:32 p.m. πŸ”„ Last Modified: Oct. 6, 2025, 7:29 p.m.

8.8

CVSS3.1

CVE-2025-48445 - Commerce Eurobank (Redirect) - Moderately critical - Access bypass - SA-CONTRIB-2025-066

Incorrect Authorization vulnerability in Drupal Commerce Eurobank (Redirect) allows Functionality Misuse.This issue affects Commerce Eurobank (Redirect): from 0.0.0 before 2.1.1.

πŸ“… Published: June 11, 2025, 2:31 p.m. πŸ”„ Last Modified: June 16, 2025, 4:39 p.m.

6.7

CVSS3.1

CVE-2025-3473 - IBM Security Guardium privilege escalation

IBM Security Guardium 12.1 could allow a local privileged user to escalate their privileges to root due to insecure inherited permissions created by the program.

πŸ“… Published: June 11, 2025, 2:24 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:50 p.m.

5.3

CVSS3.1

CVE-2025-0163 - IBM Security Verify Access information disclosure

IBM Security Verify Access Appliance and Docker 10.0 through 10.0.8 could allow a remote attacker to enumerate usernames due to an observable response discrepancy of disabled accounts.

πŸ“… Published: June 11, 2025, 2:20 p.m. πŸ”„ Last Modified: Aug. 24, 2025, 11:55 a.m.

5.3

CVSS3.1

CVE-2025-48013 - Quick Node Block - Moderately critical - Access bypass - SA-CONTRIB-2025-065

Missing Authorization vulnerability in Drupal Quick Node Block allows Forceful Browsing.This issue affects Quick Node Block: from 0.0.0 before 2.0.0.

πŸ“… Published: June 11, 2025, 2:20 p.m. πŸ”„ Last Modified: June 20, 2025, 2:46 p.m.
Total resulsts: 349182
Page 5050 of 34,919
Β« previous page Β» next page
Filters