CVE Feed

    Dashboard / CVE

    7.3
    High

    CVE-2025-58308

    Last Modified: 2 Dec 2025

    Vulnerability of improper criterion security check in the call module. Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.

    Published: 28 Nov 2025
    6.2
    Medium

    CVE-2025-58305

    Last Modified: 2 Dec 2025

    Identity authentication bypass vulnerability in the Gallery app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    4.9
    Medium

    CVE-2025-58304

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    8.4
    High

    CVE-2025-58302

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    6.2
    Medium

    CVE-2025-58294

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    5.3
    Medium

    CVE-2025-64313

    Last Modified: 2 Dec 2025

    Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 28 Nov 2025
    5.1
    Medium

    CVE-2025-64311

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    5.5
    Medium

    CVE-2025-58315

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the Wi-Fi module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    6.6
    Medium

    CVE-2025-58314

    Last Modified: 2 Dec 2025

    Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

    Published: 28 Nov 2025
    5.1
    Medium

    CVE-2025-58312

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the App Lock module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 28 Nov 2025
    8
    High

    CVE-2025-58310

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the distributed component. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

    Published: 28 Nov 2025
    6.8
    Medium

    CVE-2025-58309

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the startup recovery module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

    Published: 28 Nov 2025
    6.4
    Medium

    CVE-2025-58307

    Last Modified: 2 Dec 2025

    UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 28 Nov 2025
    7.3
    High

    CVE-2025-58316

    Last Modified: 2 Dec 2025

    DoS vulnerability in the video-related system service module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 28 Nov 2025
    8.4
    High

    CVE-2025-58303

    Last Modified: 2 Dec 2025

    UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.

    Published: 28 Nov 2025
    4.4
    Medium

    CVE-2025-64315

    Last Modified: 2 Dec 2025

    Configuration defect vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect app data confidentiality and integrity.

    Published: 28 Nov 2025
    9.3
    Critical

    CVE-2025-64314

    Last Modified: 2 Dec 2025

    Permission control vulnerability in the memory management module. Impact: Successful exploitation of this vulnerability may affect confidentiality.

    Published: 28 Nov 2025
    2.9
    Low

    CVE-2025-66382

    Last Modified: 2 Jun 2026

    In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.

    Published: 28 Nov 2025
    5
    Medium

    CVE-2025-66370

    Last Modified: 15 Apr 2026

    Kivitendo before 3.9.2 allows XXE injection. By uploading an electronic invoice in the ZUGFeRD format, it is possible to read and exfiltrate files from the server's filesystem.

    Published: 28 Nov 2025
    5.4
    Medium

    CVE-2025-51734

    Last Modified: 2 Dec 2025

    Cross-site scripting (XSS) vulnerability in HCL Technologies Ltd. Unica 12.0.0.

    Published: 28 Nov 2025
    5.5
    Medium

    CVE-2025-51733

    Last Modified: 2 Dec 2025

    Cross-Site Request Forgery (CSRF) vulnerability in HCL Technologies Ltd. Unica 12.0.0.

    Published: 28 Nov 2025
    6
    Medium

    CVE-2025-61915

    Last Modified: 4 Dec 2025

    OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a user in the lpadmin group can use the cups web ui to change the config and insert a malicious line. Then the cupsd process which runs as root will parse the new config and cause an out-of-bound write. This issue has been patched in version 2.4.15.

    Published: 28 Nov 2025
    7.5
    High

    CVE-2025-51735

    Last Modified: 2 Dec 2025

    CSV formula injection vulnerability in HCL Technologies Ltd. Unica 12.0.0.

    Published: 28 Nov 2025
    2.8
    Low

    CVE-2025-66372

    Last Modified: 15 Apr 2026

    Mustang before 2.16.3 allows exfiltrating files via XXE attacks.

    Published: 28 Nov 2025
    5
    Medium

    CVE-2025-66371

    Last Modified: 15 Apr 2026

    Peppol-py before 1.1.1 allows XXE attacks because of the Saxon configuration. When validating XML-based invoices, the XML parser could read files from the filesystem and expose their content to a remote host.

    Published: 28 Nov 2025
    6.3
    Medium

    CVE-2025-51736

    Last Modified: 2 Dec 2025

    File upload vulnerability in HCL Technologies Ltd. Unica 12.0.0.

    Published: 28 Nov 2025
    8.2
    High

    CVE-2025-66384

    Last Modified: 15 Apr 2026

    app/Controller/EventsController.php in MISP before 2.5.24 has invalid logic in checking for uploaded file validity, related to tmp_name.

    Published: 28 Nov 2025
    4.1
    Medium

    CVE-2025-66386

    Last Modified: 15 Apr 2026

    app/Model/EventReport.php in MISP before 2.5.27 allows path traversal in view picture for a site-admin.

    Published: 28 Nov 2025
    9.4
    Critical

    CVE-2025-66385

    Last Modified: 15 Apr 2026

    UsersController::edit in Cerebrate before 1.30 allows an authenticated non-privileged user to escalate their privileges (e.g., obtain a higher role such as admin) via the user-edit endpoint by supplying or modifying role_id or organisation_id fields in the edit request.

    Published: 28 Nov 2025
    Unknown

    CVE-2025-3261

    Last Modified: 16 Dec 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 27 Nov 2025
    9.9
    Critical

    CVE-2025-12421

    Last Modified: 26 Feb 2026

    Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

    Published: 27 Nov 2025
    4.3
    Medium

    CVE-2025-12559

    Last Modified: 3 Dec 2025

    Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

    Published: 27 Nov 2025
    9.9
    Critical

    CVE-2025-12419

    Last Modified: 26 Feb 2026

    Mattermost versions 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12, 11.0.x <= 11.0.3 fail to properly validate OAuth state tokens during OpenID Connect authentication which allows an authenticated attacker with team creation privileges to take over a user account via manipulation of authentication data during the OAuth completion flow. This requires email verification to be disabled (default: disabled), OAuth/OpenID Connect to be enabled, and the attacker to control two users in the SSO system with one of them never having logged into Mattermost.

    Published: 27 Nov 2025
    3.5
    Low

    CVE-2025-13758

    Last Modified: 3 Dec 2025

    Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

    Published: 27 Nov 2025
    8.8
    High

    CVE-2025-13757

    Last Modified: 3 Dec 2025

    SQL Injection vulnerability in last usage logs in Devolutions Server.This issue affects Devolutions Server: through 2025.2.20, through 2025.3.8.

    Published: 27 Nov 2025
    4.3
    Medium

    CVE-2025-13765

    Last Modified: 3 Dec 2025

    Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

    Published: 27 Nov 2025
    9.3
    Critical

    CVE-2025-12140

    Last Modified: 15 Apr 2026

    The application contains an insecure 'redirectToUrl' mechanism that incorrectly processes the value of the 'redirectUrlParameter' parameter. The application interprets the entered string of characters as a Java expression, allowing an unauthenticated attacer to perform arbitrary code execution. This issue was fixed in version wu#2016.1.5513#0#20251014_113353

    Published: 27 Nov 2025
    7.2
    High

    CVE-2025-13692

    Last Modified: 21 Apr 2026

    The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. A form with a file upload field must be created with the premium version of the plugin in order to exploit the vulnerability. However, once the form exists, the vulnerability is exploitable even if the premium version is deactivated and/or uninstalled.

    Published: 27 Nov 2025
    9.3
    Critical

    CVE-2025-8890

    Last Modified: 15 Apr 2026

    Firmware in SDMC NE6037 routers prior to version 7.1.12.2.44 has a network diagnostics tool vulnerable to a shell command injection attacks. In order to exploit this vulnerability, an attacker has to log in to the router's administrative portal, which by default is reachable only via LAN ports.

    Published: 27 Nov 2025
    4.3
    Medium

    CVE-2025-12971

    Last Modified: 21 Apr 2026

    The Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a misconfigured capability check on the 'wcp_change_post_folder' function in all versions up to, and including, 3.1.5. This makes it possible for authenticated attackers, with Contributor-level access and above, to move arbitrary folder contents to arbitrary folders.

    Published: 27 Nov 2025
    6.1
    Medium

    CVE-2025-54057

    Last Modified: 20 Apr 2026

    Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache SkyWalking. This issue affects Apache SkyWalking: <= 10.2.0. Users are recommended to upgrade to version 10.3.0, which fixes the issue.

    Published: 27 Nov 2025
    4.7
    Medium

    CVE-2025-59302

    Last Modified: 26 Feb 2026

    In Apache CloudStack improper control of generation of code ('Code Injection') vulnerability is found in the following APIs which are accessible only to admins. * quotaTariffCreate * quotaTariffUpdate * createSecondaryStorageSelector * updateSecondaryStorageSelector * updateHost * updateStorage This issue affects Apache CloudStack: from 4.18.0 before 4.20.2, from 4.21.0 before 4.22.0. Users are recommended to upgrade to versions 4.20.2 or 4.22.0, which contain the fix. The fix introduces a new global configuration flag, js.interpretation.enabled, allowing administrators to control the interpretation of JavaScript expressions in these APIs, thereby mitigating the code injection risk.

    Published: 27 Nov 2025
    4.3
    Medium

    CVE-2025-59454

    Last Modified: 2 Dec 2025

    In Apache CloudStack, a gap in access control checks affected the APIs - createNetworkACL - listNetworkACLs - listResourceDetails - listVirtualMachinesUsageHistory - listVolumesUsageHistory While these APIs were accessible only to authorized users, insufficient permission validation meant that users could occasionally access information beyond their intended scope. Users are recommended to upgrade to Apache CloudStack 4.20.2.0 or 4.22.0.0, which fixes the issue.

    Published: 27 Nov 2025
    2.4
    Low

    CVE-2025-13742

    Last Modified: 30 Dec 2025

    Emails sent by pretix can utilize placeholders that will be filled with customer data. For example, when {name} is used in an email template, it will be replaced with the buyer's name for the final email. If the name of the attendee contained HTML or Markdown formatting, this was rendered as HTML in the resulting email. This way, a user could inject links or other formatted text through a maliciously formatted name. Since pretix applies a strict allow list approach to allowed HTML tags, this could not be abused for XSS or similarly dangerous attack chains. However, it can be used to manipulate emails in a way that makes user-provided content appear in a trustworthy and credible way, which can be abused for phishing.

    Published: 27 Nov 2025
    4.3
    Medium

    CVE-2025-10476

    Last Modified: 21 Apr 2026

    The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wpfc_db_fix_callback() function in all versions up to, and including, 1.4.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to initiate several database fix actions. This only affects sites with premium activated.

    Published: 27 Nov 2025
    7.3
    High

    CVE-2025-59890

    Last Modified: 15 Apr 2026

    Improper input sanitization in the file archives upload functionality of Eaton Galileo software allows traversing paths which could lead into an attacker with local access to execute unauthorized code or commands. This security issue has been fixed in the latest version of Galileo which is available on the Eaton download center.

    Published: 27 Nov 2025
    5.3
    Medium

    CVE-2025-13381

    Last Modified: 21 Apr 2026

    The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'ays_chatgpt_save_wp_media' function in all versions up to, and including, 2.7.0. This makes it possible for unauthenticated attackers to upload media files.

    Published: 27 Nov 2025
    5.3
    Medium

    CVE-2025-12584

    Last Modified: 22 Apr 2026

    The Quick View for WooCommerce plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.2.17 via the 'wqv_popup_content' AJAX endpoint due to insufficient restrictions on which products can be included. This makes it possible for unauthenticated attackers to extract data from private products that they should not have access to.

    Published: 27 Nov 2025
    6.5
    Medium

    CVE-2025-13378

    Last Modified: 22 Apr 2026

    The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.7.0 via the ays_chatgpt_pinecone_upsert function. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.

    Published: 27 Nov 2025
    5.4
    Medium

    CVE-2025-59026

    Last Modified: 15 Apr 2026

    Malicious content uploaded as file can be used to execute script code when following attacker-controlled links. Unintended actions can be executed in the context of the users account, including exfiltration of sensitive information. Please deploy the provided updates and patch releases. No publicly available exploits are known

    Published: 27 Nov 2025