7.8

CVSS3.1

CVE-2025-30449 -

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to gain root privileges.

πŸ“… Published: March 31, 2025, 10:22 p.m. πŸ”„ Last Modified: April 2, 2026, 7:19 p.m.

6.6

CVSS3.1

CVE-2025-3061 - Material Admin - Critical - Unsupported - SA-CONTRIB-2025-006

Vulnerability in Drupal Material Admin.This issue affects Material Admin: *.*.

πŸ“… Published: March 31, 2025, 10:22 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:34 p.m.

6.6

CVSS3.1

CVE-2025-3060 - Flattern – Multipurpose Bootstrap Business Profile - Critical - Unsupported - SA-CONTRIB-2025-005

Vulnerability in Drupal Flattern – Multipurpose Bootstrap Business Profile.This issue affects Flattern – Multipurpose Bootstrap Business Profile: *.*.

πŸ“… Published: March 31, 2025, 10:21 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:34 p.m.

5.3

CVSS3.1

CVE-2025-3059 - Profile Private - Critical - Unsupported - SA-CONTRIB-2025-002

Vulnerability in Drupal Profile Private.This issue affects Profile Private: *.*.

πŸ“… Published: March 31, 2025, 10:21 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:34 p.m.

4.8

CVSS4.0

CVE-2025-3036 - yzk2356911358 StudentServlet-JSP Student Management cross site scripting

A vulnerability, which was classified as problematic, was found in yzk2356911358 StudentServlet-JSP cc0cdce25fbe43b6c58b60a77a2c85f52d2102f5/d4d7a0643f1dae908a4831206f2714b21820f991. This affects an unknown part of the component Student Management Handler. The manipulation of the argument Name lead…

πŸ“… Published: March 31, 2025, 10 p.m. πŸ”„ Last Modified: April 15, 2025, 2:44 p.m.

5.3

CVSS4.0

CVE-2025-3018 - SourceCodester Online Eyewear Shop Users.php sql injection

A vulnerability, which was classified as critical, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /classes/Users.php?f=delete. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has …

πŸ“… Published: March 31, 2025, 10 p.m. πŸ”„ Last Modified: April 7, 2025, 2:35 p.m.

6.1

CVSS3.1

CVE-2025-31697 - Formatter Suite - Moderately critical - Cross site scripting - SA-CONTRIB-2025-026

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Formatter Suite allows Cross-Site Scripting (XSS).This issue affects Formatter Suite: from 0.0.0 before 2.1.0.

πŸ“… Published: March 31, 2025, 9:55 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:34 p.m.

6.1

CVSS3.1

CVE-2025-31696 - RapiDoc OAS Field Formatter - Moderately critical - Cross site scripting - SA-CONTRIB-2025-025

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal RapiDoc OAS Field Formatter allows Cross-Site Scripting (XSS).This issue affects RapiDoc OAS Field Formatter: from 0.0.0 before 1.0.1.

πŸ“… Published: March 31, 2025, 9:55 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:34 p.m.

6.1

CVSS3.1

CVE-2025-31695 - Link field display mode formatter - Moderately critical - Cross site scripting - SA-CONTRIB-2025-024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Link field display mode formatter allows Cross-Site Scripting (XSS).This issue affects Link field display mode formatter: from 0.0.0 before 1.6.0.

πŸ“… Published: March 31, 2025, 9:52 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:34 p.m.

8.1

CVSS3.1

CVE-2025-31694 - Two-factor Authentication (TFA) - Moderately critical - Access bypass - SA-CONTRIB-2025-023

Incorrect Authorization vulnerability in Drupal Two-factor Authentication (TFA) allows Forceful Browsing.This issue affects Two-factor Authentication (TFA): from 0.0.0 before 1.10.0.

πŸ“… Published: March 31, 2025, 9:51 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:35 p.m.
Total resulsts: 349182
Page 6114 of 34,919
Β« previous page Β» next page
Filters