5.1

CVSS4.0

CVE-2025-1208 - code-projects Wazifa System Profile.php cross site scripting

A vulnerability was found in code-projects Wazifa System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /Profile.php. The manipulation of the argument postcontent leads to cross site scripting. The attack may be initiated remotely. The exploit has been…

📅 Published: Feb. 12, 2025, 4 p.m. 🔄 Last Modified: Feb. 21, 2025, 12:03 p.m.

8.3

CVSS3.1

CVE-2024-11343 - Telerik Document Processing Path Traversal

In Progress® Telerik® Document Processing Libraries, versions prior to 2025 Q1 (2025.1.205), unzipping an archive can lead to arbitrary file system access.

📅 Published: Feb. 12, 2025, 3:46 p.m. 🔄 Last Modified: Feb. 20, 2025, 8:39 p.m.

4.1

CVSS3.1

CVE-2024-12629 - Prototype Pollution in Progress® Telerik® KendoReact

In Progress® Telerik® KendoReact versions v3.5.0 through v9.4.0, an attacker can introduce or modify properties within the global prototype chain which can result in denial of service or command injection.

📅 Published: Feb. 12, 2025, 3:37 p.m. 🔄 Last Modified: June 27, 2025, 5:24 p.m.

2.3

CVSS4.0

CVE-2025-1207 - phjounin TFTPD64 DNS denial of service

A vulnerability was found in phjounin TFTPD64 4.64. It has been declared as problematic. This vulnerability affects unknown code of the component DNS Handler. The manipulation leads to denial of service. The attack needs to be done within the local network. The complexity of an attack is rather hig…

📅 Published: Feb. 12, 2025, 3:31 p.m. 🔄 Last Modified: Feb. 12, 2025, 4:15 p.m.

4.3

CVSS3.1

CVE-2024-9870 - Unintended Proxy or Intermediary ('Confused Deputy') in GitLab

An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.

📅 Published: Feb. 12, 2025, 3:31 p.m. 🔄 Last Modified: Aug. 6, 2025, 6:48 p.m.

4.3

CVSS3.1

CVE-2025-0516 - Incorrect Authorization in GitLab

Improper Authorization in GitLab CE/EE affecting all versions from 17.7 prior to 17.7.4, 17.8 prior to 17.8.2 allow users with limited permissions to perform unauthorized actions on critical project data.

📅 Published: Feb. 12, 2025, 3:30 p.m. 🔄 Last Modified: Aug. 6, 2025, 6:49 p.m.

7.8

CVSS3.1

CVE-2025-0332 - Progress UI for WinForms decompression path traversal vulnerability

In Progress® Telerik® UI for WinForms, versions prior to 2025 Q1 (2025.1.211), using the improper limitation of a target path can lead to decompressing an archive's content into a restricted directory.

📅 Published: Feb. 12, 2025, 3:15 p.m. 🔄 Last Modified: July 3, 2025, 6:30 p.m.

8.8

CVSS3.1

CVE-2025-0556 - Telerik Report Server Clear Text Transmission of Agent Commands

In Progress® Telerik® Report Server, versions prior to 2025 Q1 (11.0.25.211) when using the older .NET Framework implementation, communication of non-sensitive information between the service agent process and app host process occurs over an unencrypted tunnel, which can be subjected to local netwo…

📅 Published: Feb. 12, 2025, 3:11 p.m. 🔄 Last Modified: Feb. 20, 2025, 8:41 p.m.

7.8

CVSS3.1

CVE-2024-12251 - Improper neutralization special element in hyperlinks

In Progress® Telerik® UI for WinUI versions prior to 2025 Q1 (3.0.0), a command injection attack is possible through improper neutralization of hyperlink elements.

📅 Published: Feb. 12, 2025, 3:09 p.m. 🔄 Last Modified: March 28, 2025, 6:33 p.m.

6.5

CVSS3.1

CVE-2024-12379 - Allocation of Resources Without Limits or Throttling in GitLab

A denial of service vulnerability in GitLab CE/EE affecting all versions from 14.1 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to impact the availability of GitLab via unbounded symbol creation via the scopes parameter in a Personal Access Token.

📅 Published: Feb. 12, 2025, 3:02 p.m. 🔄 Last Modified: Aug. 6, 2025, 8:17 p.m.
Total resulsts: 343975
Page 6239 of 34,398
« previous page » next page
Filters