5.3

CVSS4.0

CVE-2025-15009 - liweiyi ChestnutCMS Filename upload FilenameUtils.getExtension unrestricted upload

A flaw has been found in liweiyi ChestnutCMS up to 1.5.8. This vulnerability affects the function FilenameUtils.getExtension of the file /dev-api/common/upload of the component Filename Handler. Executing manipulation of the argument File can lead to unrestricted upload. The attack may be launched …

πŸ“… Published: Dec. 22, 2025, 2:32 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 10:40 p.m.

6.9

CVSS4.0

CVE-2025-15008 - Tenda WH450 HTTP Request L7Port stack-based overflow

A vulnerability was detected in Tenda WH450 1.0.0.18. This affects an unknown part of the file /goform/L7Port of the component HTTP Request Handler. Performing manipulation of the argument page results in stack-based buffer overflow. The attack may be initiated remotely. The exploit is now public a…

πŸ“… Published: Dec. 22, 2025, 2:02 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 2:51 p.m.

9.3

CVSS4.0

CVE-2025-15007 - Tenda WH450 HTTP Request L7Im stack-based overflow

A security vulnerability has been detected in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality of the file /goform/L7Im of the component HTTP Request Handler. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be launched remotely. …

πŸ“… Published: Dec. 22, 2025, 1:32 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 2:51 p.m.

9.3

CVSS4.0

CVE-2025-15006 - Tenda WH450 HTTP Request CheckTools stack-based overflow

A weakness has been identified in Tenda WH450 1.0.0.18. Affected by this vulnerability is an unknown functionality of the file /goform/CheckTools of the component HTTP Request Handler. This manipulation of the argument ipaddress causes stack-based buffer overflow. The attack can be initiated remote…

πŸ“… Published: Dec. 22, 2025, 1:02 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 2:51 p.m.

6.3

CVSS4.0

CVE-2025-15005 - CouchCMS reCAPTCHA config.example.php hard-coded key

A security flaw has been discovered in CouchCMS up to 2.4. Affected is an unknown function of the file couch/config.example.php of the component reCAPTCHA Handler. The manipulation of the argument K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY results in use of hard-coded cryptographic key . It is po…

πŸ“… Published: Dec. 22, 2025, 12:32 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 10:40 p.m.

5.3

CVSS4.0

CVE-2025-15004 - DedeCMS freelist_main.php sql injection

A vulnerability was identified in DedeCMS up to 5.7.118. This impacts an unknown function of the file /freelist_main.php. The manipulation of the argument orderby leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

πŸ“… Published: Dec. 22, 2025, 12:02 a.m. πŸ”„ Last Modified: Dec. 23, 2025, 2:51 p.m.

6.1

CVSS3.1

CVE-2024-25812 -

MyNET up to v26.05 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the src parameter.

πŸ“… Published: Dec. 22, 2025, midnight πŸ”„ Last Modified: Dec. 22, 2025, 8:15 p.m.

7.5

CVSS3.1

CVE-2025-63664 -

Incorrect access control in the /api/v1/conversations/*/messages API of GT Edge AI Platform before v2.0.10-dev allows unauthorized attackers to access other users' message history with AI agents.

πŸ“… Published: Dec. 22, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 10:40 p.m.

6.1

CVSS3.1

CVE-2025-67443 -

Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.

πŸ“… Published: Dec. 22, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 10:40 p.m.

0.0

CVE-2025-68330 - iio: accel: bmc150: Fix irq assumption regression

In the Linux kernel, the following vulnerability has been resolved: iio: accel: bmc150: Fix irq assumption regression The code in bmc150-accel-core.c unconditionally calls bmc150_accel_set_interrupt() in the iio_buffer_setup_ops, such as on the runtime PM resume path giving a kernel splat like th…

πŸ“… Published: Dec. 22, 2025, midnight πŸ”„ Last Modified: Dec. 22, 2025, 5:16 p.m.
Total resulsts: 324275
Page 68 of 32,428
Β« previous page Β» next page
Filters