4.4
CVE-2025-46588 -
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
6.2
CVE-2024-58252 -
Vulnerability of insufficient information protection in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
6.2
CVE-2025-46587 -
Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
5.1
CVE-2025-46586 -
Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect availability.
7.5
CVE-2025-46585 -
Out-of-bounds array read/write vulnerability in the kernel module Impact: Successful exploitation of this vulnerability may affect availability.
7.8
CVE-2025-46584 -
Vulnerability of improper authentication logic implementation in the file system module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
5.3
CVE-2025-4329 - 74CMS index path traversal
A vulnerability was found in 74CMS up to 3.33.0. It has been rated as problematic. Affected by this issue is the function index of the file /index.php/index/download/index. The manipulation of the argument url leads to path traversal. The attack may be launched remotely. The exploit has been discloβ¦
5.1
CVE-2025-4328 - fp2952 spring-cloud-base HTTP Header MvcController.java sendBack redirect
A vulnerability was found in fp2952 spring-cloud-base up to 7f050dc6db9afab82c5ce1d41cd74ed255ec9bfa. It has been declared as problematic. Affected by this vulnerability is the function sendBack of the file /spring-cloud-base-master/auth-center/auth-center-provider/src/main/java/com/peng/auth/proviβ¦
5.3
CVE-2025-4327 - MRCMS cross-site request forgery
A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Multiple endpoints mighβ¦
8
CVE-2025-30165 - Remote Code Execution Vulnerability in vLLM Multi-Node Cluster Configuration
vLLM is an inference and serving engine for large language models. In a multi-node vLLM deployment using the V0 engine, vLLM uses ZeroMQ for some multi-node communication purposes. The secondary vLLM hosts open a `SUB` ZeroMQ socket and connect to an `XPUB` socket on the primary vLLM host. When datβ¦