6.4
CVE-2025-3781 - Raisely Donation Form <= 1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via raiselyβ¦
The Raisely Donation Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's raisely_donation_form shortcode in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aβ¦
8.7
CVE-2025-1712 - Arbitrary file write with vcrtrace
Argument injection in special agent configuration in Checkmk <2.4.0p1, <2.3.0p32, <2.2.0p42 and 2.1.0 allows authenticated attackers to write arbitrary files
8.2
CVE-2019-16536 - Stack overflow leading to DoS can be triggered by a malicious authenticated client.
Stack overflow leading to DoS can be triggered by a malicious authenticated client in Clickhouse before 19.14.3.3.
6.9
CVE-2021-25262 - Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homographβ¦
Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homograph attack.
8.3
CVE-2021-25255 - Yandex Browser Lite for Android prior to version 21.1.0 allows remote attackers to cause a denial oβ¦
Yandex Browser Lite for Android prior to version 21.1.0 allows remote attackers to cause a denial of service.
0.0
CVE-2025-5026 -
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
8.2
CVE-2021-25254 - Yandex Browser Lite for Android before 21.1.0 allows remote attackers to spoof the address bar.
Yandex Browser Lite for Android before 21.1.0 allows remote attackers to spoof the address bar.
6.8
CVE-2025-4949 - XXE vulnerability in Eclipse JGit
In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) aβ¦
9.8
CVE-2025-4524 - Madara β Responsive and modern WordPress theme for manga sites <= 2.2.2 - Unauthenticated Local Filβ¦
The Madara β Responsive and modern WordPress theme for manga sites theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.2.2 via the 'template' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the sβ¦
7.4
CVE-2025-5024 - Gnome-remote-desktop: uncontrolled resource consumption due to malformed rdp pdus
A flaw was found in gnome-remote-desktop. Once gnome-remote-desktop listens for RDP connections, an unauthenticated attacker can exhaust system resources and repeatedly crash the process. There may be a resource leak after many attacks, which will also result in gnome-remote-desktop no longer beingβ¦