5.4

CVSS3.1

CVE-2025-53034 -

Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Platform). Supported versions that are affected are 8.0.7.9, 8.0.8.7 and 8.1.2.5. Easily exploitable vulnerability allows unauthenticated attacker wi…

πŸ“… Published: Oct. 21, 2025, 8:02 p.m. πŸ”„ Last Modified: Oct. 22, 2025, 9:13 p.m.

6.5

CVSS3.1

CVE-2025-50075 -

Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: Security Management System). Supported versions that are affected are 2.9.0.0.0-7.2.0.0.0. Easily exploitable vulnerability allows low privileged attacker wit…

πŸ“… Published: Oct. 21, 2025, 8:02 p.m. πŸ”„ Last Modified: Oct. 22, 2025, 9:13 p.m.

4.9

CVSS3.1

CVE-2025-50074 -

Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: Security Management System). Supported versions that are affected are 2.9.0.0.0-7.2.0.0.0. Easily exploitable vulnerability allows high privileged attacker wi…

πŸ“… Published: Oct. 21, 2025, 8:02 p.m. πŸ”„ Last Modified: Oct. 22, 2025, 9:13 p.m.

6.9

CVSS4.0

CVE-2025-62661 - Do permission checking when getting counts of global and local edits, new articles and thanks

Incorrect Default Permissions vulnerability in The Wikimedia Foundation Mediawiki - Thanks Extension, Mediawiki - Growth Experiments Extension allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Mediawiki - Thanks Extension, Mediawiki - Growth Experiments Extension: f…

πŸ“… Published: Oct. 21, 2025, 7:33 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:12 a.m.

6.9

CVSS4.0

CVE-2025-62249 -

A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q3.0 through 2025.Q3.2, 2025.Q2.0 through 2025.Q2.12, 2025.Q1.0 through 2025.Q1.17, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.…

πŸ“… Published: Oct. 21, 2025, 6:12 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:12 a.m.

8.7

CVSS4.0

CVE-2025-11757 - Improper Neutralization of Wildcards or Matching Symbols in CloudEdge Online Cameras and App

The CloudEdge Cloud does not sanitize the MQTT topic input, which could allow an attacker to leverage the MQTT wildcard to receive all the messages that should be delivered to other users by subscribing to the a MQTT topic. In these messages, the attacker can obtain the credentials and key informat…

πŸ“… Published: Oct. 21, 2025, 5:24 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:12 a.m.

5.3

CVSS4.0

CVE-2025-12031 - HTTP Security Misconfiguration - Lacking Secure and HTTPOnly Attribute

HTTP Security Misconfiguration - Lacking Secure and HTTPOnly Attribute may allow readingΒ the sensitive cookies from the javascript contextThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.

πŸ“… Published: Oct. 21, 2025, 5:22 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:12 a.m.

5.3

CVSS4.0

CVE-2025-8050 - External Control of File vulnerability has been discovered in opentext Flipper.

External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal.Β  The vulnerability could allow a user to access files hosted on the server. This issue affects Flipper: 3.1.2.

πŸ“… Published: Oct. 21, 2025, 5:21 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:12 a.m.

9.3

CVSS4.0

CVE-2025-11534 - Authentication Bypass Using an Alternate Path or Channel in Raisecomm RAX701-GC Series

The affected Raisecom devices allow SSH sessions to be established without completing user authentication. This could allow attackers to gain shell access without valid credentials.

πŸ“… Published: Oct. 21, 2025, 4:59 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:13 a.m.

4.3

CVSS3.1

CVE-2025-62605 - Mastodon quotes control can be bypassed

Mastodon is a free, open-source social network server based on ActivityPub. In Mastodon version 4.4, support for verifiable quote posts with quote controls was added, but it is possible for an attacker to bypass these controls in Mastodon versions prior to 4.4.8 and 4.5.0-beta.2. Mastodon internall…

πŸ“… Published: Oct. 21, 2025, 4:46 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 10:12 a.m.
Total resulsts: 315585
Page 72 of 31,559
Β« previous page Β» next page
Filters