9.8

CVSS3.1

CVE-2025-2294 - Kubio AI Page Builder <= 2.5.1 - Unauthenticated Local File Inclusion

The Kubio AI Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.5.1 via thekubio_hybrid_theme_load_template function. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the …

📅 Published: March 28, 2025, 4:22 a.m. 🔄 Last Modified: April 8, 2026, 4:44 p.m.

6.6

CVSS3.1

CVE-2025-2894 - Unitree Go1 Robot Dog Backdoor Control Channel

The Go1 also known as "The World's First Intelligence Bionic Quadruped Robot Companion of Consumer Level," contains an undocumented backdoor that can enable the manufacturer, and anyone in possession of the correct API key, complete remote control over the affected robotic device using the CloudSai…

📅 Published: March 28, 2025, 2:51 a.m. 🔄 Last Modified: Jan. 12, 2026, 4:10 p.m.

8.8

CVSS3.1

CVE-2025-24381 -

Dell Unity, version(s) 5.4 and prior, contain(s) an URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vuln…

📅 Published: March 28, 2025, 2:23 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:08 p.m.

7.8

CVSS3.1

CVE-2025-24386 -

Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution and Elevation of privi…

📅 Published: March 28, 2025, 2:19 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:08 p.m.

7.8

CVSS3.1

CVE-2025-24377 -

Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and Elevation of privileg…

📅 Published: March 28, 2025, 2:16 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2025-24378 -

Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution and Elevation of privi…

📅 Published: March 28, 2025, 2:12 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2025-24379 -

Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution and Elevation of privi…

📅 Published: March 28, 2025, 2:09 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2025-24380 -

Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution and Elevation of privi…

📅 Published: March 28, 2025, 2:05 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

7.5

CVSS3.1

CVE-2024-13939 - String::Compare::ConstantTime for Perl through 0.321 is vulnerable to timing attacks that allow an …

String::Compare::ConstantTime for Perl through 0.321 is vulnerable to timing attacks that allow an attacker to guess the length of a secret string. As stated in the documentation: "If the lengths of the strings are different, because equals returns false right away the size of the secret string ma…

📅 Published: March 28, 2025, 2:05 a.m. 🔄 Last Modified: April 11, 2025, 6:10 p.m.

7.8

CVSS3.1

CVE-2025-23383 -

Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution and Elevation of privi…

📅 Published: March 28, 2025, 2:01 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.
Total resulsts: 343970
Page 5634 of 34,397
« previous page » next page
Filters