8.7
CVE-2025-21177 - Microsoft Dynamics 365 Sales Elevation of Privilege Vulnerability
Server-side request forgery (ssrf) in Microsoft Dynamics 365 Sales allows an authorized attacker to elevate privileges over a network.
6.5
CVE-2025-21279 - Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
4.4
CVE-2025-21267 - Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
4.3
CVE-2025-21404 - Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
5.1
CVE-2025-1082 - Mindskip xzs-mysql ε¦δΉζεΌζΊθθ―η³»η» Exam Edit edit cross site scripting
A vulnerability classified as problematic has been found in Mindskip xzs-mysql ε¦δΉζεΌζΊθθ―η³»η» 3.9.0. Affected is an unknown function of the file /api/admin/question/edit of the component Exam Edit Handler. The manipulation of the argument title/content leads to cross site scripting. It is possible to laβ¦
0.0
CVE-2025-1096 -
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.
6.9
CVE-2025-1004 - Certain HP LaserJet Pro Printers β Potential Denial of Service
Certain HP LaserJet Pro printers may potentially experience a denial of service when a user sends a raw JPEG file to the printer via IPP (Internet Printing Protocol).
5.5
CVE-2025-0158 - IBM EntireX denial of service
IBM EntireX 11.1 could allow a local user to cause a denial of service due to an unhandled error and fault isolation.
2.3
CVE-2025-1081 - Bharti Airtel Xstream Fiber WiFi Password weak credentials
A vulnerability was found in Bharti Airtel Xstream Fiber up to 20250123. It has been rated as problematic. This issue affects some unknown processing of the component WiFi Password Handler. The manipulation leads to use of weak credentials. The attack needs to be done within the local network. The β¦
3.3
CVE-2024-56467 - IBM EntireX information disclosure
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is returned. This information could be used in further attacks against the system.