7

CVSS4.0

CVE-2025-62842 - HBS 3 Hybrid Backup Sync

An external control of file name or path vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If an attacker gains local network access, they can then exploit the vulnerability to read or modify files or directories. We have already fixed the vulnerability in the following version: …

πŸ“… Published: Jan. 2, 2026, 3:51 p.m. πŸ”„ Last Modified: Feb. 5, 2026, 7:03 p.m.

7

CVSS4.0

CVE-2025-62840 - HBS 3 Hybrid Backup Sync

A generation of error message containing sensitive information vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If an attacker gains local network access, they can then exploit the vulnerability to read application data. We have already fixed the vulnerability in the following v…

πŸ“… Published: Jan. 2, 2026, 3:51 p.m. πŸ”„ Last Modified: Feb. 5, 2026, 7:04 p.m.

8.1

CVSS4.0

CVE-2025-11837 - Malware Remover

An improper control of generation of code vulnerability has been reported to affect Malware Remover. The remote attackers can then exploit the vulnerability to bypass protection mechanism. We have already fixed the vulnerability in the following version: Malware Remover 6.6.8.20251023 and later

πŸ“… Published: Jan. 2, 2026, 3:51 p.m. πŸ”„ Last Modified: Jan. 22, 2026, 6:28 p.m.

4.3

CVSS3.1

CVE-2025-69284 - In plane.io, a Guest User to a Workspace can still be able to see list of members

Plane is an an open-source project management tool. In plane.io, a guest user doesn't have a permission to access https[:]//app[.]plane[.]so/[:]slug/settings. Prior to Plane version 1.2.0, a problem occurs when the `/api/workspaces/:slug/members/` is accessible by guest and able to list of users on…

πŸ“… Published: Jan. 2, 2026, 3:42 p.m. πŸ”„ Last Modified: Feb. 25, 2026, 2:58 p.m.

1.2

CVSS4.0

CVE-2025-62852 - QTS, QuTS hero

A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to modify memory or crash processes. We have already fixed the vulnerability in the following version: QT…

πŸ“… Published: Jan. 2, 2026, 3:19 p.m. πŸ”„ Last Modified: Jan. 6, 2026, 1:56 p.m.

8.1

CVSS4.0

CVE-2025-59387 - MARS (Multi-Application Recovery Service)

An SQL injection vulnerability has been reported to affect MARS (Multi-Application Recovery Service). The remote attackers can then exploit the vulnerability to execute unauthorized code or commands. We have already fixed the vulnerability in the following version: MARS (Multi-Application Recovery…

πŸ“… Published: Jan. 2, 2026, 3:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.1

CVSS4.0

CVE-2025-59384 - Qfiling

A path traversal vulnerability has been reported to affect Qfiling. The remote attackers can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following version: Qfiling 3.13.1 and later

πŸ“… Published: Jan. 2, 2026, 3:19 p.m. πŸ”„ Last Modified: Jan. 22, 2026, 6:23 p.m.

4.6

CVSS4.0

CVE-2025-59381 - QTS, QuTS hero

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the fo…

πŸ“… Published: Jan. 2, 2026, 3:19 p.m. πŸ”„ Last Modified: Jan. 6, 2026, 1:57 p.m.

4.6

CVSS4.0

CVE-2025-59380 - QTS, QuTS hero

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the fo…

πŸ“… Published: Jan. 2, 2026, 3:18 p.m. πŸ”„ Last Modified: Jan. 6, 2026, 1:58 p.m.

1.2

CVSS4.0

CVE-2025-53597 - License Center

A buffer overflow vulnerability has been reported to affect License Center. If a remote attacker gains an administrator account, they can then exploit the vulnerability to modify memory or crash processes. We have already fixed the vulnerability in the following version: License Center 2.0.36 and …

πŸ“… Published: Jan. 2, 2026, 3:18 p.m. πŸ”„ Last Modified: Jan. 5, 2026, 8:33 p.m.
Total resulsts: 349182
Page 2303 of 34,919
Β« previous page Β» next page
Filters