5.9

CVSS3.1

CVE-2025-8415 - Cryostat: authentication bypass if network policies are disabled

A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possible external visibility and access to the API port if Network Policies are disabled, allowing an unauthenticated, malicious attacker to jeopardize the environment.

πŸ“… Published: Aug. 20, 2025, midnight πŸ”„ Last Modified: Aug. 22, 2025, 6:09 p.m.

4.8

CVSS3.1

CVE-2025-51990 -

XWiki through version 17.3.0 is affected by multiple stored Cross-Site Scripting (XSS) vulnerabilities in the Administration interface, specifically under the Presentation section of the Global Preferences panel. An authenticated administrator can inject arbitrary JavaScript payloads into the HTTP …

πŸ“… Published: Aug. 20, 2025, midnight πŸ”„ Last Modified: Aug. 22, 2025, 6:09 p.m.

7.5

CVSS3.1

CVE-2024-53495 -

Incorrect access control in the preHandle function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authentication.

πŸ“… Published: Aug. 20, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:15 p.m.

7.3

CVSS3.1

CVE-2025-55503 -

Tenda AC6 V15.03.06.23_multi has a stack overflow vulnerability via the deviceName parameter in the saveParentControlInfo function.

πŸ“… Published: Aug. 20, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:30 p.m.

9.8

CVSS3.1

CVE-2025-50904 -

There is an authentication bypass vulnerability in WinterChenS my-site thru commit 6c79286 (2025-06-11). An attacker can exploit this vulnerability to access /admin/ API without any token.

πŸ“… Published: Aug. 20, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:15 p.m.

4.8

CVSS4.0

CVE-2025-9176 - neurobin shc Environment Variable shc.c make os command injection

A security flaw has been discovered in neurobin shc up to 4.0.3. Impacted is the function make of the file src/shc.c of the component Environment Variable Handler. The manipulation results in os command injection. The attack is only possible with local access. The exploit has been released to the p…

πŸ“… Published: Aug. 19, 2025, 11:32 p.m. πŸ”„ Last Modified: Aug. 20, 2025, 4:15 p.m.

4.8

CVSS4.0

CVE-2025-9175 - neurobin shc shc.c make stack-based overflow

A vulnerability was identified in neurobin shc up to 4.0.3. This issue affects the function make of the file src/shc.c. The manipulation leads to stack-based buffer overflow. The attack can only be performed from a local environment. The exploit is publicly available and might be used.

πŸ“… Published: Aug. 19, 2025, 11:02 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 11:02 p.m.

4.8

CVSS4.0

CVE-2025-9174 - neurobin shc Filename shc.c make os command injection

A vulnerability was determined in neurobin shc up to 4.0.3. This vulnerability affects the function make of the file src/shc.c of the component Filename Handler. Executing manipulation can lead to os command injection. The attack can only be executed locally. The exploit has been publicly disclosed…

πŸ“… Published: Aug. 19, 2025, 10:32 p.m. πŸ”„ Last Modified: Aug. 20, 2025, 4:15 p.m.

5.1

CVSS4.0

CVE-2025-9171 - SolidInvoice Clients clients cross site scripting

A security flaw has been discovered in SolidInvoice up to 2.4.0. The impacted element is an unknown function of the file /clients of the component Clients Module. Performing manipulation of the argument Name results in cross site scripting. The attack is possible to be carried out remotely. The exp…

πŸ“… Published: Aug. 19, 2025, 10:32 p.m. πŸ”„ Last Modified: Aug. 21, 2025, 6:27 p.m.

5.1

CVSS4.0

CVE-2025-9170 - SolidInvoice Tax Rates rates cross site scripting

A vulnerability was identified in SolidInvoice up to 2.4.0. The affected element is an unknown function of the file /tax/rates of the component Tax Rates Module. Such manipulation of the argument Name leads to cross site scripting. The attack can be executed remotely. The exploit is publicly availa…

πŸ“… Published: Aug. 19, 2025, 10:02 p.m. πŸ”„ Last Modified: Aug. 21, 2025, 6:28 p.m.
Total resulsts: 306759
Page 62 of 30,676
Β« previous page Β» next page
Filters