7

CVSS4.0

CVE-2025-5279 - Issue with Amazon Redshift Python Connector and the BrowserAzureOAuth2CredentialsProvider plugin

When the Amazon Redshift Python Connector is configured with the BrowserAzureOAuth2CredentialsProvider plugin, the driver skips the SSL certificate validation step for the Identity Provider. An insecure connection could allow an actor to intercept the token exchange process and retrieve an access t…

πŸ“… Published: May 27, 2025, 8:17 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-48876 -

This CVE is a duplicate of another CVE.

πŸ“… Published: May 27, 2025, 8:14 p.m. πŸ”„ Last Modified: Sept. 3, 2025, 4:04 p.m.

0.0

CVE-2025-48870 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-47057. Reason: This candidate is a duplicate of CVE-2024-47057. Notes: All CVE users should reference CVE-2024-47057 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accident…

πŸ“… Published: May 27, 2025, 8:14 p.m. πŸ”„ Last Modified: May 30, 2025, 8:15 p.m.

0.0

CVE-2025-48871 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-47056. Reason: This candidate is a duplicate of CVE-2024-47056. Notes: All CVE users should reference CVE-2024-47056 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accident…

πŸ“… Published: May 27, 2025, 8:14 p.m. πŸ”„ Last Modified: May 30, 2025, 8:15 p.m.

0.0

CVE-2025-48872 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-47055. Reason: This candidate is a duplicate of CVE-2024-47055. Notes: All CVE users should reference CVE-2024-47055 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accident…

πŸ“… Published: May 27, 2025, 8:14 p.m. πŸ”„ Last Modified: May 30, 2025, 8:15 p.m.

0.0

CVE-2025-48873 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-5256. Reason: This candidate is a duplicate of CVE-2025-5256. Notes: All CVE users should reference CVE-2025-5256 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental …

πŸ“… Published: May 27, 2025, 8:14 p.m. πŸ”„ Last Modified: May 30, 2025, 8:15 p.m.

0.0

CVE-2025-48874 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-5257. Reason: This candidate is a duplicate of CVE-2025-5257. Notes: All CVE users should reference CVE-2025-5257 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental …

πŸ“… Published: May 27, 2025, 8:14 p.m. πŸ”„ Last Modified: May 30, 2025, 8:15 p.m.

5.4

CVSS3.1

CVE-2025-5283 - libvpx: Double-free in libvpx encoder

Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

πŸ“… Published: May 27, 2025, 6:56 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:19 p.m.

6.9

CVSS4.0

CVE-2024-13966 - ZKTeco BioTime default password

ZKTeco BioTime allows unauthenticated attackers to enumerate usernames and log in as any user with a password unchanged from the default value '123456'. Users should change their passwords (located under the Attendance Settings tab as "Self-Password").

πŸ“… Published: May 27, 2025, 6:35 p.m. πŸ”„ Last Modified: Sept. 26, 2025, 2:01 p.m.

6.9

CVSS4.0

CVE-2025-5252 - PHPGurukul News Portal Project edit-subadmin.php sql injection

A vulnerability was found in PHPGurukul News Portal Project 4.1. It has been declared as critical. This vulnerability affects unknown code of the file /admin/edit-subadmin.php. The manipulation of the argument emailid leads to sql injection. The attack can be initiated remotely. The exploit has bee…

πŸ“… Published: May 27, 2025, 5:31 p.m. πŸ”„ Last Modified: June 9, 2025, 6:51 p.m.
Total resulsts: 348200
Page 5143 of 34,820
Β« previous page Β» next page
Filters