6.5

CVSS3.1

CVE-2025-1677 - Allocation of Resources Without Limits or Throttling in GitLab

A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all up to 17.8.7, 17.9 prior to 17.9.6 and 17.10 prior to 17.10.4 A denial of service could occur upon injecting oversized payloads into CI pipeline exports.

πŸ“… Published: April 10, 2025, 12:30 p.m. πŸ”„ Last Modified: Aug. 7, 2025, 6:38 p.m.

5.3

CVSS3.1

CVE-2025-2408 - Insufficient Granularity of Access Control in GitLab

An issue has been discovered in GitLab CE/EE affecting all versions from 13.12 before 17.8.7, 17.9 before 17.9.6, and 17.10 before 17.10.4. Under certain conditions users could bypass IP access restrictions and view sensitive information.

πŸ“… Published: April 10, 2025, 12:30 p.m. πŸ”„ Last Modified: Aug. 7, 2025, 6:37 p.m.

9.1

CVSS3.1

CVE-2025-32755 -

In jenkins/ssh-slave Docker images based on Debian, SSH host keys are generated on image creation for images based on Debian, causing all containers based on images of the same version use the same SSH host keys, allowing attackers able to insert themselves into the network path between the SSH cli…

πŸ“… Published: April 10, 2025, 11:21 a.m. πŸ”„ Last Modified: May 2, 2025, 3:54 p.m.

9.1

CVSS3.1

CVE-2025-32754 -

In jenkins/ssh-agent Docker images 6.11.1 and earlier, SSH host keys are generated on image creation for images based on Debian, causing all containers based on images of the same version use the same SSH host keys, allowing attackers able to insert themselves into the network path between the SSH …

πŸ“… Published: April 10, 2025, 11:20 a.m. πŸ”„ Last Modified: May 2, 2025, 7:39 p.m.

7.5

CVSS3.1

CVE-2025-1073 -

Panasonic IR Control Hub (IR Blaster) versions 1.17 and earlier may allow an attacker with physical access to load unauthorized firmware onto the device.

πŸ“… Published: April 10, 2025, 11:16 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6

CVSS4.0

CVE-2025-22374 - SSRF in CyberAudit-Web videx-legacy-ssl

A Server-Side Request Forgery (SSRF) vulnerability was discovered in the videx-legacy-ssl web service of Videx’s CyberAudit-Web, affecting versions prior to 1.1.3. This vulnerability has been patched in versions after 1.1.3. Leaving this vulnerability unpatched could lead to unauthorized access to …

πŸ“… Published: April 10, 2025, 11:02 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2025-22375 - Authentication Bypass in CyberAudit-Web

An authentication bypass vulnerability was found in Videx's CyberAudit-Web. Through the exploitation of a logic flaw, an attacker could create a valid session without any credentials. This vulnerability has been patched in versions later than 9.5Β and a patch has been made available to all instances…

πŸ“… Published: April 10, 2025, 11:02 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS3.1

CVE-2025-27350 - WordPress Vice Versa plugin <= 2.2.3 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hugh Mungus Vice Versa vice-versa allows Reflected XSS.This issue affects Vice Versa: from n/a through <= 2.2.3.

πŸ“… Published: April 10, 2025, 10:21 a.m. πŸ”„ Last Modified: April 23, 2026, 3:26 p.m.

5.9

CVSS3.1

CVE-2025-31411 - WordPress Linet ERP-Woocommerce Integration plugin <= 3.5.12 - Arbitrary File Read/Deletion vulnera…

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in aribhour Linet ERP-Woocommerce Integration linet-erp-woocommerce-integration allows Path Traversal.This issue affects Linet ERP-Woocommerce Integration: from n/a through <= 3.5.12.

πŸ“… Published: April 10, 2025, 10:16 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

7.8

CVSS3.1

CVE-2025-23386 - gerbera: Privilege escalation from user gerbera to root because of insecure %post script

A Incorrect Default Permissions vulnerability in the openSUSE Tumbleweed package gerbera allows the service user gerbera to escalate to root.,This issue affects gerbera on openSUSE Tumbleweed before 2.5.0-1.1.

πŸ“… Published: April 10, 2025, 9:42 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346120
Page 5611 of 34,612
Β« previous page Β» next page
Filters