8.7

CVSS3.1

CVE-2025-29807 - Microsoft Dataverse Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Dataverse allows an authorized attacker to execute code over a network.

πŸ“… Published: March 21, 2025, 12:29 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

5.5

CVSS3.1

CVE-2023-28207 -

The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. A plug-in may be able to inherit app permissions and access user data.

πŸ“… Published: March 21, 2025, 12:19 a.m. πŸ”„ Last Modified: March 25, 2025, 1:15 p.m.

5.4

CVSS3.1

CVE-2025-29640 -

Phpgurukul Human Metapneumovirus (HMPV) – Testing Management System v1.0 is vulnerable to SQL Injection in /patient-report.php via the parameter searchdata..

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: April 1, 2025, 8:23 p.m.

4

CVSS3.1

CVE-2025-30347 -

Varnish Enterprise before 6.0.13r13 allows remote attackers to obtain sensitive information via an out-of-bounds read for range requests on ephemeral MSE4 stevedore objects.

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: March 24, 2025, 2:19 p.m.

6.3

CVSS3.1

CVE-2025-29226 -

In Linksys E5600 V1.1.0.26, the \usr\share\lua\runtime.lua file contains a command injection vulnerability in the runtime.pingTest function via the pt["count"] parameter.

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: April 1, 2025, 8:29 p.m.

7.4

CVSS3.1

CVE-2024-53348 -

LoxiLB v.0.9.7 and before is vulnerable to Incorrect Access Control which allows attackers to obtain sensitive information and escalate privileges.

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: April 1, 2025, 8:21 p.m.

5.8

CVSS3.1

CVE-2025-30348 -

encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: March 24, 2025, 2:08 p.m.

5.4

CVSS3.1

CVE-2025-30342 -

An XSS issue was discovered in OpenSlides before 4.2.5. When submitting descriptions such as Moderator Notes or Agenda Topics, an editor is shown that allows one to format the submitted text. This allows insertion of various HTML elements. When trying to insert a SCRIPT element, it is properly enco…

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: March 27, 2025, 1:35 p.m.

7.3

CVSS3.1

CVE-2025-29641 -

Phpgurukul Vehicle Record Management System v1.0 is vulnerable to SQL Injection in /index.php via the 'searchinputdata' parameter.

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: April 1, 2025, 8:23 p.m.

8.6

CVSS3.1

CVE-2025-29230 -

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.emailReg function. The vulnerability can be triggered via the `pt["email"]` parameter.

πŸ“… Published: March 21, 2025, midnight πŸ”„ Last Modified: April 1, 2025, 8:28 p.m.
Total resulsts: 349182
Page 6259 of 34,919
Β« previous page Β» next page
Filters