0.0
CVE-2025-34144 -
This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.
0.0
CVE-2025-34137 -
This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.
0.0
CVE-2025-34131 -
This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.
0.0
CVE-2025-34122 -
This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.
0.0
CVE-2025-34094 -
This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.
9.8
CVE-2025-30206 - Dpanel's hard-coded JWT secret leads to remote code execution
Dpanel is a Docker visualization panel system which provides complete Docker management functions. The Dpanel service contains a hardcoded JWT secret in its default configuration, allowing attackers to generate valid JWT tokens and compromise the host machine. This security flaw allows attackers toβ¦
8.3
CVE-2025-27791 - Collabora Online Vulnerable to Arbitrary File Write
Collabora Online is a collaborative online office suite based on LibreOffice technology. In versions prior to 24.04.12.4, 23.05.19, and 22.05.25, there is a path traversal flaw in handling the CheckFileInfo BaseFileName field returned from WOPI servers. This allows for a file to be written anywhereβ¦
5.4
CVE-2025-24358 - gorilla/csrf CSRF vulnerability due to broken Referer validation
gorilla/csrf provides Cross Site Request Forgery (CSRF) prevention middleware for Go web applications & services. Prior to 1.7.2, gorilla/csrf does not validate the Origin header against an allowlist. Its executes its validation of the Referer header for cross-origin requests only when it believes β¦
4.9
CVE-2023-5616 - gnome-control-center: Remote login misconfiguration in GNOME Control Center
In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.
2.1
CVE-2024-42193 - HCL BigFix Web Reports is susceptible to a Man-In-The-Middle (MITM) attack
HCL BigFix Web Reports' service communicates over HTTPS but exhibits a weakness in its handling of SSL certificate validation. This scenario presents a possibility of man-in-the-middle (MITM) attacks and data exposure as, if exploited, this vulnerability could potentially lead to unauthorized accesβ¦