6.6

CVSS3.1

CVE-2025-23040 - Maliciously crafted remote URLs could lead to credential leak in GitHub Desktop

GitHub Desktop is an open-source Electron-based GitHub app designed for git development. An attacker convincing a user to clone a repository directly or through a submodule can allow the attacker access to the user's credentials through the use of maliciously crafted remote URL. GitHub Desktop reliโ€ฆ

๐Ÿ“… Published: Jan. 15, 2025, 5:25 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-0499 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

๐Ÿ“… Published: Jan. 15, 2025, 5:02 p.m. ๐Ÿ”„ Last Modified: Feb. 11, 2025, 2:15 a.m.

6.5

CVSS3.1

CVE-2025-20088 - Insufficient Input Validation on Post Props

Mattermost versions 10.2.x <= 10.2.0, 9.11.x <= 9.11.5, 10.0.x <= 10.0.3, 10.1.x <= 10.1.3 fail to properly validate post props which allows a malicious authenticated user to cause a crash via a malicious post.

๐Ÿ“… Published: Jan. 15, 2025, 4:49 p.m. ๐Ÿ”„ Last Modified: Oct. 1, 2025, 6:20 p.m.

6.5

CVSS3.1

CVE-2025-20086 - Insufficient Input Validation on Post Props

Mattermost versions 10.2.x <= 10.2.0, 9.11.x <= 9.11.5, 10.0.x <= 10.0.3, 10.1.x <= 10.1.3 fail to properly validate post props which allows a malicious authenticated user to cause a crash via a malicious post.

๐Ÿ“… Published: Jan. 15, 2025, 4:49 p.m. ๐Ÿ”„ Last Modified: Sept. 30, 2025, 3:51 p.m.

8.2

CVSS4.0

CVE-2024-7085 - Exposure of private information vulnerability has been discovered in OpenTextโ„ข Solutions Business Mโ€ฆ

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenTextโ„ข Solutions Business Manager (SBM) allows Stored XSS.ย  The vulnerability could result in the exposure of private information to an unauthorized actor. This issue affects Solutionsโ€ฆ

๐Ÿ“… Published: Jan. 15, 2025, 4:38 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS4.0

CVE-2020-8094 - Untrusted Search Path Vulnerability in Bitdefender Antivirus Free 2020 (VA-8422)

An untrusted search path vulnerability in testinitsigs.exe as used in Bitdefender Antivirus Free 2020 allows a low-privilege attacker to execute code as SYSTEM via a specially crafted DLL file.

๐Ÿ“… Published: Jan. 15, 2025, 4:12 p.m. ๐Ÿ”„ Last Modified: Feb. 7, 2025, 9:07 p.m.

6.5

CVSS3.1

CVE-2025-21083 - Insufficient Input Validation on Post Props

Mattermost Mobile Apps versions <=2.22.0 fail to properly validate post props which allows a malicious authenticated user to cause a crash via a malicious post.

๐Ÿ“… Published: Jan. 15, 2025, 4:10 p.m. ๐Ÿ”„ Last Modified: Sept. 25, 2025, 7:14 p.m.

6.5

CVSS3.1

CVE-2025-20036 - Insufficient Input Validation on Post Props

Mattermost Mobile Apps versions <=2.22.0 fail to properly validate post props which allows a malicious authenticated user to cause a crash via a malicious post.

๐Ÿ“… Published: Jan. 15, 2025, 4:10 p.m. ๐Ÿ”„ Last Modified: Sept. 25, 2025, 7:14 p.m.

6.5

CVSS3.1

CVE-2025-21088 - WebApp crash via improper validation of proto style in attachments

Mattermost versions 10.2.x <= 10.2.0, 9.11.x <= 9.11.5, 10.0.x <= 10.0.3, 10.1.x <= 10.1.3 fail to properly validate the style of proto supplied to an action's style in post.props.attachments, which allows an attacker to crash the frontend via crafted malicious input.

๐Ÿ“… Published: Jan. 15, 2025, 3:51 p.m. ๐Ÿ”„ Last Modified: Sept. 30, 2025, 3:52 p.m.

8.2

CVSS4.0

CVE-2024-8603 -

A โ€œUse of a Broken or Risky Cryptographic Algorithmโ€ vulnerability in the SSL/TLS component used in B&R Automation Runtime versions before 6.1 and B&R mapp View versions before 6.1 may be abused by unauthenticated network-based attackers to masquerade as services on impacted devices.

๐Ÿ“… Published: Jan. 15, 2025, 3:31 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346534
Page 6833 of 34,654
ยซ previous page ยป next page
Filters