0.0

CVE-2025-48422 -

Not used

πŸ“… Published: May 20, 2025, 11:27 a.m. πŸ”„ Last Modified: May 21, 2025, 6:16 a.m.

0.0

CVE-2025-48425 -

Not used

πŸ“… Published: May 20, 2025, 11:27 a.m. πŸ”„ Last Modified: May 21, 2025, 6:16 a.m.

0.0

CVE-2025-48420 -

Not used

πŸ“… Published: May 20, 2025, 11:27 a.m. πŸ”„ Last Modified: May 21, 2025, 6:16 a.m.

0.0

CVE-2025-48419 -

Not used

πŸ“… Published: May 20, 2025, 11:27 a.m. πŸ”„ Last Modified: May 21, 2025, 6:16 a.m.

0.0

CVE-2025-48421 -

Not used

πŸ“… Published: May 20, 2025, 11:27 a.m. πŸ”„ Last Modified: May 21, 2025, 6:16 a.m.

7.5

CVSS3.1

CVE-2025-30193 - Denial of service via crafted TCP exchange

In some circumstances, when DNSdist is configured to allow an unlimited number of queries on a single, incoming TCP connection from a client, an attacker can cause a denial of service by crafting a TCP exchange that triggers an exhaustion of the stack and a crash of DNSdist, causing a denial of ser…

πŸ“… Published: May 20, 2025, 11:17 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS4.0

CVE-2025-40633 - Stored Cross-Site Scripting (XSS) in Koibox

A Stored Cross-Site Scripting (XSS) vulnerability has been found in Koibox for versions prior to e8cbce2. This vulnerability allows an authenticated attacker to upload an image containing malicious JavaScript code as profile picture in the '/es/dashboard/clientes/ficha/' endpoint

πŸ“… Published: May 20, 2025, 10:17 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.2

CVSS4.0

CVE-2025-40634 - Stack-based buffer overflow in TP-Link Archer AX50

Stack-based buffer overflow vulnerability in the 'conn-indicator' binary running as root on the TP-Link Archer AX50 router, in firmware versions prior to 1.0.15 build 241203 rel61480. This vulnerability allows an attacker to execute arbitrary code on the device over LAN and WAN networks.

πŸ“… Published: May 20, 2025, 10:12 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.6

CVSS3.1

CVE-2025-4951 -

Editions of Rapid7 AppSpider Pro before versionΒ 7.5.018 is vulnerable to a stored cross-site scripting vulnerability in the "ScanName" field. Despite the application preventing the inclusion of special characters within the "ScanName" field, this could be bypassed by modifying the configuration fil…

πŸ“… Published: May 20, 2025, 8:39 a.m. πŸ”„ Last Modified: Dec. 11, 2025, 6:21 p.m.

6.4

CVSS3.1

CVE-2024-5878 - Multiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site S…

Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled SimpleLightbox JavaScript library (version 2.1.5) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticate…

πŸ“… Published: May 20, 2025, 7:22 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 5312 of 34,919
Β« previous page Β» next page
Filters