5.5

CVSS3.1

CVE-2024-54175 - IBM MQ denial of service

IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD could allow a local user to cause a denial of service due to an improper check for unusual or exceptional conditions.

📅 Published: Feb. 28, 2025, 4:19 p.m. 🔄 Last Modified: Sept. 26, 2025, 4:30 p.m.

2.9

CVSS3.1

CVE-2025-27400 - Magento vulnerable to stored XSS in theme config fields

Magento Long Term Support (LTS) is an unofficial, community-driven project provides an alternative to the Magento Community Edition e-commerce platform with a high level of backward compatibility. Versions prior to 20.12.3 and 20.13.0 contain a vulnerability that allows script execution in the admi…

📅 Published: Feb. 28, 2025, 3:26 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2025-1776 - Cross-Site Scripting (XSS) vulnerability in Soteshop

Cross-Site Scripting (XSS) vulnerability in Soteshop, versions prior to 8.3.4, which could allow remote attackers to execute arbitrary code via the ‘query’ parameter in /app-google-custom-search/searchResults. This vulnerability can be exploited to steal sensitive user data, such as session cookies…

📅 Published: Feb. 28, 2025, 1:46 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

4.7

CVSS3.1

CVE-2025-1749 - HTML injection vulnerability in OpenCart

HTML injection vulnerabilities in OpenCart versions prior to 4.1.0. These vulnerabilities could allow an attacker to modify the HTML of the victim's browser by sending a malicious URL and modifying the parameter name in /account/voucher.

📅 Published: Feb. 28, 2025, 1:43 p.m. 🔄 Last Modified: May 7, 2025, 7:49 p.m.

4.7

CVSS3.1

CVE-2025-1748 - HTML injection vulnerability in OpenCart

HTML injection vulnerabilities in OpenCart versions prior to 4.1.0. These vulnerabilities could allow an attacker to modify the HTML of the victim's browser by sending a malicious URL and modifying the parameter name in /account/register.

📅 Published: Feb. 28, 2025, 1:43 p.m. 🔄 Last Modified: May 7, 2025, 7:47 p.m.

4.7

CVSS3.1

CVE-2025-1747 - HTML injection vulnerability in OpenCart

HTML injection vulnerabilities in OpenCart versions prior to 4.1.0. These vulnerabilities could allow an attacker to modify the HTML of the victim's browser by sending a malicious URL and modifying the parameter name in /account/login.

📅 Published: Feb. 28, 2025, 1:42 p.m. 🔄 Last Modified: May 7, 2025, 7:47 p.m.

6.1

CVSS3.1

CVE-2025-1746 - Cross-Site Scripting vulnerability in OpenCart

Cross-Site Scripting vulnerability in OpenCart versions prior to 4.1.0. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending the victim a malicious URL using the search in the /product/search endpoint. This vulnerability could be exploited to steal sen…

📅 Published: Feb. 28, 2025, 1:38 p.m. 🔄 Last Modified: May 7, 2025, 7:47 p.m.

6.1

CVSS3.1

CVE-2025-1300 - Open redirect in CodeChecker web server

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. The CodeChecker web server contains an open redirect vulnerability due to missing protections against multiple slashes after the product name in the URL. This results in bypassin…

📅 Published: Feb. 28, 2025, 12:47 p.m. 🔄 Last Modified: Nov. 14, 2025, 3:29 p.m.

7.2

CVSS3.1

CVE-2025-1319 - Site Mailer <= 1.2.3 - Unauthenticated Stored Cross-Site Scripting

The Site Mailer – SMTP Replacement, Email API Deliverability & Email Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to …

📅 Published: Feb. 28, 2025, 12:44 p.m. 🔄 Last Modified: April 20, 2026, 11:45 p.m.

2

CVSS4.0

CVE-2025-22274 - HTML injection in CyberArk Endpoint Privilege Manager

It is possible to inject HTML code into the page content using the "content" field in the "Application definition" page. This issue affects CyberArk Endpoint Privilege Manager in SaaS version 24.7.1. The status of other versions is unknown. After multiple attempts to contact the vendor we did not…

📅 Published: Feb. 28, 2025, 12:34 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 6513 of 34,919
« previous page » next page
Filters