5

CVSS3.1

CVE-2026-30853 - calibre has a Path Traversal Leading to Arbitrary File Write

calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Prior to 9.5.0, a path traversal vulnerability in the RocketBook (.rb) input plugin (src/calibre/ebooks/rb/reader.py) allows an attacker to write arbitrary files to any path writable by the calibre …

📅 Published: March 13, 2026, 7 p.m. 🔄 Last Modified: March 13, 2026, 7:54 p.m.

5.4

CVSS3.1

CVE-2026-0835 -

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6.2.1.0 through 6.2.1.1_1, and 6.2.2.0 are vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus alteri…

📅 Published: March 13, 2026, 6:57 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

7.4

CVSS3.1

CVE-2025-71263 -

In UNIX Fourth Research Edition (v4), the su command is vulnerable to a buffer overflow due to the 'password' variable having a fixed size of 100 bytes. A local user can exploit this to gain root privileges. It is unlikely that UNIX v4 is running anywhere outside of a very small number of lab envir…

📅 Published: March 13, 2026, 6:38 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

6.1

CVSS3.1

CVE-2025-13702 - IBM Sterling Partner Engagement Manager Cross-Site Scripting

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credent…

📅 Published: March 13, 2026, 6:33 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

3.7

CVSS3.1

CVE-2025-13718 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow a remote attacker to obtain sensitive information in cleartext in a communication channel that can be sniffed by unauthorized actors.

📅 Published: March 13, 2026, 6:33 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

5.3

CVSS3.1

CVE-2025-13723 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive user information using an expired access token

📅 Published: March 13, 2026, 6:32 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-12453 - Improper neutralization of input during web page generation vulnerability has been discovered in Op…

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText™ Vertica allows Reflected XSS.  The vulnerability could lead to Reflected XSS attack of cross-site scripting in Vertica management console application.This issue affects Vertica: from 10.0…

📅 Published: March 13, 2026, 6:30 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-12454 - Improper neutralization of input during web page generation vulnerability has been discovered in Op…

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText™ Vertica allows Reflected XSS.  The vulnerability could lead to Reflected XSS attack of cross-site scripting in Vertica management console application.This issue affects Vertica: from 10.0…

📅 Published: March 13, 2026, 6:30 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-12455 - Username Enumeration Observable Response Discrepancy vulnerability has been discovered in OpenText™…

Observable response discrepancy vulnerability in OpenText™ Vertica allows Password Brute Forcing.   The vulnerability could lead to Password Brute Forcing in Vertica management console application.This issue affects Vertica: from 10.0 through 10.X, from 11.0 through 11.X, from 12.0 through 12.X.

📅 Published: March 13, 2026, 6:30 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.

5.3

CVSS3.1

CVE-2025-13726 - IBM Sterling Partner Engagement Manager Information Disclosure

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow a remote attacker to obtain sensitive information when detailed technical error messages are returned. This information could be used in further attacks against the system.

📅 Published: March 13, 2026, 6:26 p.m. 🔄 Last Modified: March 13, 2026, 7:53 p.m.
Total resulsts: 337984
Page 9 of 33,799
« previous page » next page
Filters