CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2025-15033

    Last Modified: 15 Apr 2026

    A vulnerability in WooCommerce 8.1 to 10.4.2 can allow logged-in customers to access order data of guest customers on sites with a certain configuration. This has been fixed in WooCommerce 10.4.3, as well as all the previously affected versions through point releases, starting from 8.1, where it has been fixed in 8.1.3. It does not affect WooCommerce 8.0 or earlier.

    Published: 22 Dec 2025
    7
    High

    CVE-2025-10021

    Last Modified: 15 Apr 2026

    A Use of Uninitialized Variable vulnerability exists in Open Design Alliance Drawings SDK static versions (mt) before 2026.12. Static object `COdaMfcAppApp theApp` may access `OdString::kEmpty` before its initialization. Due to undefined initialization order of static objects across translation units (Static Initialization Order Fiasco), the application accesses uninitialized memory. This results in application crash on startup, causing denial of service. Due to undefined behavior,  memory corruption and potential arbitrary code execution cannot be ruled out in specific exploitation scenarios.

    Published: 22 Dec 2025
    7.2
    High

    CVE-2025-61740

    Last Modified: 15 Apr 2026

    Authentication issue that does not verify the source of a packet which could allow an attacker to create a denial-of-service condition or modify the configuration of the device.

    Published: 22 Dec 2025
    7.2
    High

    CVE-2025-26379

    Last Modified: 15 Apr 2026

    Use of a weak pseudo-random number generator, which may allow an attacker to read or inject encrypted PowerG packets.

    Published: 22 Dec 2025
    7.3
    High

    CVE-2025-14018

    Last Modified: 4 Jun 2026

    Unquoted Search Path or Element vulnerability in NetBT Consulting Services Inc. E-Fatura allows Leveraging/Manipulating Configuration File Search Paths, Redirect Access to Libraries. This issue affects e-Fatura: before 1.2.15.

    Published: 22 Dec 2025
    7.2
    High

    CVE-2025-14273

    Last Modified: 29 Dec 2025

    Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 with the Jira plugin enabled and Mattermost Jira plugin versions <=4.4.0 fail to enforce authentication and issue-key path restrictions in the Jira plugin, which allows an unauthenticated attacker who knows a valid user ID to issue authenticated GET and POST requests to the Jira server via crafted plugin payloads that spoof the user ID and inject arbitrary issue key paths. Mattermost Advisory ID: MMSA-2025-00555

    Published: 22 Dec 2025
    6.8
    Medium

    CVE-2025-54890

    Last Modified: 26 Jan 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (Hostgroup configuration page) allows Stored XSS by users with elevated privileges.This issue affects Infra Monitoring: from 24.10.0 before 24.10.15, from 24.04.0 before 24.04.19, from 23.10.0 before 23.10.29.

    Published: 22 Dec 2025
    7.2
    High

    CVE-2025-12514

    Last Modified: 26 Jan 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Monitoring - Open-tickets (Notification rules configuration parameters, Open tickets modules) allows SQL Injection to user with elevated privileges.This issue affects Infra Monitoring - Open-tickets: from 24.10.0 before 24.10.5, from 24.04.0 before 24.04.5, from 23.10.0 before 23.10.4.

    Published: 22 Dec 2025
    6.8
    Medium

    CVE-2025-8460

    Last Modified: 26 Jan 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (Notification rules, Open tickets module) allows Stored XSS by users with elevated privileges.This issue affects Infra Monitoring: from 24.10.0 before 24.10.5, from 24.04.0 before 24.04.5, from 23.10.0 before 23.10.4.

    Published: 22 Dec 2025
    7.2
    High

    CVE-2025-61739

    Last Modified: 15 Apr 2026

    Due to Nonce reuse, attackers can perform reply attack or decrypt captured packets.

    Published: 22 Dec 2025
    2.3
    Low

    CVE-2025-61738

    Last Modified: 15 Apr 2026

    Under certain circumstances, attacker can capture the network key, read or write encrypted packets on the PowerG network.

    Published: 22 Dec 2025
    6.5
    Medium

    CVE-2025-62094

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in voidthemes Void Elementor WHMCS Elements For Elementor Page Builder void-elementor-whmcs-elements.This issue affects Void Elementor WHMCS Elements For Elementor Page Builder: from n/a through <= 2.0.1.2.

    Published: 22 Dec 2025
    4.3
    Medium

    CVE-2025-62107

    Last Modified: 23 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in PluginOps Feather Login Page feather-login-page allows Cross Site Request Forgery.This issue affects Feather Login Page: from n/a through <= 1.1.7.

    Published: 22 Dec 2025
    4.3
    Medium

    CVE-2025-62880

    Last Modified: 23 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Kunal Custom 404 Pro custom-404-pro allows Cross Site Request Forgery.This issue affects Custom 404 Pro: from n/a through <= 3.12.0.

    Published: 22 Dec 2025
    6.5
    Medium

    CVE-2025-8305

    Last Modified: 15 Apr 2026

    An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being printed in plaintext in Identity Agent for Terminal Services debug files.

    Published: 22 Dec 2025
    6.5
    Medium

    CVE-2025-8304

    Last Modified: 15 Apr 2026

    An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being accessible in the Windows Registry keys for Check Point Identity Agent running on a Terminal Server.

    Published: 22 Dec 2025
    Unknown

    CVE-2025-68654

    Last Modified: 23 Dec 2025

    Not used

    Published: 22 Dec 2025
    Unknown

    CVE-2025-68655

    Last Modified: 23 Dec 2025

    Not used

    Published: 22 Dec 2025
    Unknown

    CVE-2025-68650

    Last Modified: 23 Dec 2025

    Not used

    Published: 22 Dec 2025
    Unknown

    CVE-2025-68651

    Last Modified: 23 Dec 2025

    Not used

    Published: 22 Dec 2025
    Unknown

    CVE-2025-68652

    Last Modified: 23 Dec 2025

    Not used

    Published: 22 Dec 2025
    Unknown

    CVE-2025-68653

    Last Modified: 23 Dec 2025

    Not used

    Published: 22 Dec 2025
    9.5
    Critical

    CVE-2025-11545

    Last Modified: 15 Apr 2026

    Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sharp Display Solutions projectors allows a attacker may improperly access the HTTP server and execute arbitrary actions.

    Published: 22 Dec 2025
    9.5
    Critical

    CVE-2025-11544

    Last Modified: 15 Apr 2026

    Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors allows a attacker may create and run unauthorized firmware.

    Published: 22 Dec 2025
    9.5
    Critical

    CVE-2025-11543

    Last Modified: 15 Jan 2026

    Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors allows a attacker may create and run unauthorized firmware.

    Published: 22 Dec 2025
    8.4
    High

    CVE-2025-11542

    Last Modified: 15 Jan 2026

    Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary commands and programs.

    Published: 22 Dec 2025
    9.2
    Critical

    CVE-2025-11541

    Last Modified: 15 Jan 2026

    Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary commands and programs.

    Published: 22 Dec 2025
    9.1
    Critical

    CVE-2025-11540

    Last Modified: 15 Jan 2026

    Path Traversal vulnerability in Sharp Display Solutions projectors allows a attacker may access and read any files within the projector.

    Published: 22 Dec 2025
    9.2
    Critical

    CVE-2025-12049

    Last Modified: 15 Jan 2026

    Missing Authentication for Critical Function vulnerability in Sharp Display Solutions Media Player MP-01 All Verisons allows a attacker may access to the web interface of the affected product without authentication and change settings or perform other operations, and deliver content from the authoring software to the affected product without authentication.

    Published: 22 Dec 2025
    5.3
    Medium

    CVE-2025-15014

    Last Modified: 15 Apr 2026

    A security flaw has been discovered in loganhong php loganSite up to c035fb5c3edd0b2a5e32fd4051cbbc9e61a31426. This affects an unknown function of the file /includes/article_detail.php of the component Article Handler. Performing manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.

    Published: 22 Dec 2025
    1.9
    Low

    CVE-2025-15013

    Last Modified: 15 Apr 2026

    A vulnerability was identified in floooh sokol up to 5d11344150973f15e16d3ec4ee7550a73fb995e0. The impacted element is the function _sg_validate_pipeline_desc in the library sokol_gfx.h. Such manipulation leads to stack-based buffer overflow. The attack must be carried out locally. The exploit is publicly available and might be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. The name of the patch is b95c5245ba357967220c9a860c7578a7487937b0. It is best practice to apply a patch to resolve this issue.

    Published: 22 Dec 2025
    5.5
    Medium

    CVE-2025-15012

    Last Modified: 24 Dec 2025

    A vulnerability was determined in code-projects Refugee Food Management System 1.0. The affected element is an unknown function of the file /home/home.php. This manipulation of the argument a causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 22 Dec 2025
    5.5
    Medium

    CVE-2025-15011

    Last Modified: 24 Feb 2026

    A vulnerability was found in code-projects Simple Stock System 1.0. Impacted is an unknown function of the file /logout.php. The manipulation of the argument uname results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.

    Published: 22 Dec 2025
    9.3
    Critical

    CVE-2025-15016

    Last Modified: 5 Mar 2026

    Enterprise Cloud Database developed by Ragic has a Hard-coded Cryptographic Key vulnerability, allowing unauthenticated remote attackers to exploit the fixed key to generate verification information and log into the system as any user.

    Published: 22 Dec 2025
    8.7
    High

    CVE-2025-15015

    Last Modified: 5 Mar 2026

    Enterprise Cloud Database developed by Ragic has a Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

    Published: 22 Dec 2025
    8.9
    High

    CVE-2025-15010

    Last Modified: 24 Feb 2026

    A vulnerability has been found in Tenda WH450 1.0.0.18. This issue affects some unknown processing of the file /goform/SafeUrlFilter. The manipulation of the argument page leads to stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

    Published: 22 Dec 2025
    4
    Medium

    CVE-2025-59301

    Last Modified: 8 Jan 2026

    Delta Electronics DVP15MC11T lacks proper validation of the modbus/tcp packets and can lead to denial of service.

    Published: 22 Dec 2025
    2.1
    Low

    CVE-2025-15009

    Last Modified: 31 Dec 2025

    A flaw has been found in liweiyi ChestnutCMS up to 1.5.8. This vulnerability affects the function FilenameUtils.getExtension of the file /dev-api/common/upload of the component Filename Handler. Executing manipulation of the argument File can lead to unrestricted upload. The attack may be launched remotely. The exploit has been published and may be used.

    Published: 22 Dec 2025
    5.5
    Medium

    CVE-2025-15008

    Last Modified: 24 Feb 2026

    A vulnerability was detected in Tenda WH450 1.0.0.18. This affects an unknown part of the file /goform/L7Port of the component HTTP Request Handler. Performing a manipulation of the argument page results in stack-based buffer overflow. The attack may be initiated remotely. The exploit is now public and may be used.

    Published: 22 Dec 2025
    8.9
    High

    CVE-2025-15007

    Last Modified: 24 Feb 2026

    A security vulnerability has been detected in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality of the file /goform/L7Im of the component HTTP Request Handler. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

    Published: 22 Dec 2025
    8.9
    High

    CVE-2025-15006

    Last Modified: 24 Feb 2026

    A weakness has been identified in Tenda WH450 1.0.0.18. Affected by this vulnerability is an unknown functionality of the file /goform/CheckTools of the component HTTP Request Handler. This manipulation of the argument ipaddress causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.

    Published: 22 Dec 2025
    2.9
    Low

    CVE-2025-15005

    Last Modified: 24 Feb 2026

    A security flaw has been discovered in CouchCMS up to 2.4. Affected is an unknown function of the file couch/config.example.php of the component reCAPTCHA Handler. The manipulation of the argument K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY results in use of hard-coded cryptographic key . It is possible to launch the attack remotely. This attack is characterized by high complexity. The exploitability is told to be difficult. The exploit has been released to the public and may be used for attacks.

    Published: 22 Dec 2025
    2.1
    Low

    CVE-2025-15004

    Last Modified: 24 Feb 2026

    A vulnerability was identified in DedeCMS up to 5.7.118. This impacts an unknown function of the file /freelist_main.php. The manipulation of the argument orderby leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

    Published: 22 Dec 2025
    10
    Critical

    CVE-2025-67288

    Last Modified: 8 Jul 2026

    An arbitrary file upload vulnerability in Umbraco CMS v16.3.3 allows attackers to execute arbitrary code by uploading a crafted PDF file. NOTE: this is disputed by the Supplier because the responsibility for file validation (as shown in the documentation) belongs to the system administrator who is implementing Umbraco CMS in their environment, not to Umbraco CMS itself. The Supplier also states that PDF JavaScript runs in a completely isolated sandbox, not the browser's DOM context, which means that privilege boundaries would not be crossed, a related issue to CVE-2023-49279.

    Published: 22 Dec 2025
    7.5
    High

    CVE-2025-68337

    Last Modified: 30 Jul 2026

    In the Linux kernel, the following vulnerability has been resolved: jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted There's issue when file system corrupted: ------------[ cut here ]------------ kernel BUG at fs/jbd2/transaction.c:1289! Oops: invalid opcode: 0000 [#1] SMP KASAN PTI CPU: 5 UID: 0 PID: 2031 Comm: mkdir Not tainted 6.18.0-rc1-next RIP: 0010:jbd2_journal_get_create_access+0x3b6/0x4d0 RSP: 0018:ffff888117aafa30 EFLAGS: 00010202 RAX: 0000000000000000 RBX: ffff88811a86b000 RCX: ffffffff89a63534 RDX: 1ffff110200ec602 RSI: 0000000000000004 RDI: ffff888100763010 RBP: ffff888100763000 R08: 0000000000000001 R09: ffff888100763028 R10: 0000000000000003 R11: 0000000000000000 R12: 0000000000000000 R13: ffff88812c432000 R14: ffff88812c608000 R15: ffff888120bfc000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00007f91d6970c99 CR3: 00000001159c4000 CR4: 00000000000006f0 Call Trace: <TASK> __ext4_journal_get_create_access+0x42/0x170 ext4_getblk+0x319/0x6f0 ext4_bread+0x11/0x100 ext4_append+0x1e6/0x4a0 ext4_init_new_dir+0x145/0x1d0 ext4_mkdir+0x326/0x920 vfs_mkdir+0x45c/0x740 do_mkdirat+0x234/0x2f0 __x64_sys_mkdir+0xd6/0x120 do_syscall_64+0x5f/0xfa0 entry_SYSCALL_64_after_hwframe+0x76/0x7e The above issue occurs with us in errors=continue mode when accompanied by storage failures. There have been many inconsistencies in the file system data. In the case of file system data inconsistency, for example, if the block bitmap of a referenced block is not set, it can lead to the situation where a block being committed is allocated and used again. As a result, the following condition will not be satisfied then trigger BUG_ON. Of course, it is entirely possible to construct a problematic image that can trigger this BUG_ON through specific operations. In fact, I have constructed such an image and easily reproduced this issue. Therefore, J_ASSERT() holds true only under ideal conditions, but it may not necessarily be satisfied in exceptional scenarios. Using J_ASSERT() directly in abnormal situations would cause the system to crash, which is clearly not what we want. So here we directly trigger a JBD abort instead of immediately invoking BUG_ON.

    Published: 22 Dec 2025
    7.5
    High

    CVE-2025-68336

    Last Modified: 30 Jul 2026

    In the Linux kernel, the following vulnerability has been resolved: locking/spinlock/debug: Fix data-race in do_raw_write_lock KCSAN reports: BUG: KCSAN: data-race in do_raw_write_lock / do_raw_write_lock write (marked) to 0xffff800009cf504c of 4 bytes by task 1102 on cpu 1: do_raw_write_lock+0x120/0x204 _raw_write_lock_irq do_exit call_usermodehelper_exec_async ret_from_fork read to 0xffff800009cf504c of 4 bytes by task 1103 on cpu 0: do_raw_write_lock+0x88/0x204 _raw_write_lock_irq do_exit call_usermodehelper_exec_async ret_from_fork value changed: 0xffffffff -> 0x00000001 Reported by Kernel Concurrency Sanitizer on: CPU: 0 PID: 1103 Comm: kworker/u4:1 6.1.111 Commit 1a365e822372 ("locking/spinlock/debug: Fix various data races") has adressed most of these races, but seems to be not consistent/not complete. >From do_raw_write_lock() only debug_write_lock_after() part has been converted to WRITE_ONCE(), but not debug_write_lock_before() part. Do it now.

    Published: 22 Dec 2025
    5.5
    Medium

    CVE-2025-68333

    Last Modified: 26 Feb 2026

    In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix possible deadlock in the deferred_irq_workfn() For PREEMPT_RT=y kernels, the deferred_irq_workfn() is executed in the per-cpu irq_work/* task context and not disable-irq, if the rq returned by container_of() is current CPU's rq, the following scenarios may occur: lock(&rq->__lock); <Interrupt> lock(&rq->__lock); This commit use IRQ_WORK_INIT_HARD() to replace init_irq_work() to initialize rq->scx.deferred_irq_work, make the deferred_irq_workfn() is always invoked in hard-irq context.

    Published: 22 Dec 2025
    7.1
    High

    CVE-2025-66736

    Last Modified: 6 Jan 2026

    youlai-boot V2.21.1 is vulnerable to Incorrect Access Control. The importUsers function in SysUserController.java does not perform a permission check on the current user's identity, which may allow regular users to import user data into the database, resulting in an authorization bypass vulnerability.

    Published: 22 Dec 2025
    7.5
    High

    CVE-2025-66735

    Last Modified: 6 Jan 2026

    youlai-boot V2.21.1 is vulnerable to Incorrect Access Control. The getRoleForm function in SysRoleController.java does not perform permission checks, which may allow non-root users to directly access root roles.

    Published: 22 Dec 2025
    6.1
    Medium

    CVE-2025-65790

    Last Modified: 5 Jan 2026

    A reflected cross-site scripting (XSS) vulnerability exists in FuguHub 8.1 when serving SVG files through the /fs/ file manager interface. FuguHub does not sanitize or restrict script execution inside SVG content. When a victim opens a crafted SVG containing an inline <script> element, the browser executes the attacker-controlled JavaScript.

    Published: 22 Dec 2025