CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2025-13227

    Last Modified: 26 Feb 2026

    Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 17 Nov 2025
    8.8
    High

    CVE-2025-13224

    Last Modified: 26 Feb 2026

    Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 17 Nov 2025
    8.8
    High

    CVE-2025-13223

    Last Modified: 26 Feb 2026

    Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 17 Nov 2025
    7.4
    High

    CVE-2025-13305

    Last Modified: 8 Dec 2025

    A weakness has been identified in D-Link DWR-M920, DWR-M921, DWR-M960, DIR-822K and DIR-825M 1.01.07. This issue affects some unknown processing of the file /boafrm/formTracerouteDiagnosticRun. Executing manipulation of the argument host can lead to buffer overflow. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.

    Published: 17 Nov 2025
    8.7
    High

    CVE-2025-31649

    Last Modified: 15 Apr 2026

    A hard-coded password vulnerability exists in the ControlVault WBDI Driver functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted ControlVault API call can lead to execute priviledged operation. An attacker can issue an api call to trigger this vulnerability.

    Published: 17 Nov 2025
    8.7
    High

    CVE-2025-31361

    Last Modified: 15 Apr 2026

    A privilege escalation vulnerability exists in the ControlVault WBDI Driver WBIO_USH_ADD_RECORD functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted WinBioControlUnit call can lead to privilege escalation. An attacker can issue an api call to trigger this vulnerability.

    Published: 17 Nov 2025
    7.3
    High

    CVE-2025-36463

    Last Modified: 15 Apr 2026

    Multiple out-of-bounds read and write vulnerabilities exist in the ControlVault WBDI Driver Broadcom Storage Adapter functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted WinBioControlUnit call can lead to memory corruption. An attacker can issue an api call to trigger this vulnerability. This vulnerability is triggered when submitting a `WinBioControlUnit` call to the StorageAdapter with the ControlCode 4 (`WBIO_USH_ADD_RECORD`) and with an invalid `SendBufferSize`.

    Published: 17 Nov 2025
    7.3
    High

    CVE-2025-36462

    Last Modified: 15 Apr 2026

    Multiple out-of-bounds read and write vulnerabilities exist in the ControlVault WBDI Driver Broadcom Storage Adapter functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted WinBioControlUnit call can lead to memory corruption. An attacker can issue an api call to trigger this vulnerability. This vulnerability is triggered when submitting a `WinBioControlUnit` call to the StorageAdapter with the ControlCode 3 (`WBIO_USH_CREATE_CHALLENGE`) with an invalid `ReceiveBuferSize`.

    Published: 17 Nov 2025
    7.3
    High

    CVE-2025-36461

    Last Modified: 15 Apr 2026

    Multiple out-of-bounds read and write vulnerabilities exist in the ControlVault WBDI Driver Broadcom Storage Adapter functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted WinBioControlUnit call can lead to memory corruption. An attacker can issue an api call to trigger this vulnerability. This vulnerability is triggered when submitting a `WinBioControlUnit` call to the StorageAdapter with the ControlCode 0 (`WBIO_USH_GET_TEMPLATE`) and with either and an invalid `ReceiveBuferSize` and/or an invalid `SendBufferSize`.

    Published: 17 Nov 2025
    7.3
    High

    CVE-2025-36460

    Last Modified: 15 Apr 2026

    Multiple out-of-bounds read and write vulnerabilities exist in the ControlVault WBDI Driver Broadcom Storage Adapter functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted WinBioControlUnit call can lead to memory corruption. An attacker can issue an api call to trigger this vulnerability. This vulnerability is triggered when submitting a `WinBioControlUnit` call to the StorageAdapter with the ControlCode 2 (`WBIO_USH_GET_IDENTITY`) with an improper `ReceiveBuferSize` value.

    Published: 17 Nov 2025
    8.8
    High

    CVE-2025-32089

    Last Modified: 15 Apr 2026

    A buffer overflow vulnerability exists in the CvManager_SBI functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted ControlVault API call can lead to a arbitrary code execution. An attacker can issue an api call to trigger this vulnerability.

    Published: 17 Nov 2025
    7.4
    High

    CVE-2025-13304

    Last Modified: 8 Dec 2025

    A security flaw has been discovered in D-Link DWR-M920, DWR-M921, DWR-M960, DWR-M961 and DIR-825M 1.01.07/1.1.47. This vulnerability affects unknown code of the file /boafrm/formPingDiagnosticRun. Performing manipulation of the argument host results in buffer overflow. The attack may be initiated remotely. The exploit has been released to the public and may be exploited.

    Published: 17 Nov 2025
    5.4
    Medium

    CVE-2025-7711

    Last Modified: 20 Apr 2026

    The The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.0.3. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for authenticated attackers, with Subscriber-level access and above, to execute arbitrary shortcodes.

    Published: 17 Nov 2025
    8.8
    High

    CVE-2025-36553

    Last Modified: 15 Apr 2026

    A buffer overflow vulnerability exists in the CvManager functionality of Dell ControlVault3 prior to 5.15.14.19 and Dell ControlVault3 Plus prior to 6.2.36.47. A specially crafted ControlVault API call can lead to memory corruption. An attacker can issue an api call to trigger this vulnerability.

    Published: 17 Nov 2025
    2.1
    Low

    CVE-2025-13303

    Last Modified: 19 Nov 2025

    A vulnerability was determined in code-projects Courier Management System 1.0. Affected by this issue is some unknown functionality of the file /search-edit.php. This manipulation of the argument Consignment causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 17 Nov 2025
    5.3
    Medium

    CVE-2025-64766

    Last Modified: 15 Apr 2026

    NixOS's Onlyoffice is a software suite that offers online and offline tools for document editing, collaboration, and management. In versions from 22.11 to before 25.05 and versions before Unstable 25.11, a hard-coded secret was used in the NixOS module for the OnlyOffice document server to protect its file cache. An attacker with knowledge of an existing revision ID could use this secret to obtain a document. In practice, an arbitrary revision ID should be hard to obtain. The primary impact is likely the access to known documents from users with expired access. This issue was resolved in NixOS unstable version 25.11 and version 25.05.

    Published: 17 Nov 2025
    Unknown

    CVE-2025-13338

    Last Modified: 27 Nov 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 17 Nov 2025
    2
    Low

    CVE-2025-13302

    Last Modified: 19 Nov 2025

    A vulnerability was identified in code-projects Courier Management System 1.0. This affects an unknown part of the file /add-new-officer.php. Such manipulation of the argument ManagerName leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13301

    Last Modified: 24 Feb 2026

    A vulnerability was found in itsourcecode Web-Based Internet Laboratory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /subject/controller.php. The manipulation results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.

    Published: 17 Nov 2025
    7.5
    High

    CVE-2025-36118

    Last Modified: 8 Dec 2025

    IBM Storage Virtualize 8.4, 8.5, 8.7, and 9.1 IKEv1 implementation allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request.

    Published: 17 Nov 2025
    Unknown

    CVE-2025-13337

    Last Modified: 13 Mar 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13300

    Last Modified: 24 Feb 2026

    A vulnerability has been found in itsourcecode Web-Based Internet Laboratory Management System 1.0. Affected is an unknown function of the file /settings/controller.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 17 Nov 2025
    4.3
    Medium

    CVE-2025-36299

    Last Modified: 19 Nov 2025

    IBM Planning Analytics Local 2.1.0 through 2.1.14 stores sensitive information in source code could be used in further attacks against the system.

    Published: 17 Nov 2025
    8
    High

    CVE-2025-36357

    Last Modified: 26 Feb 2026

    IBM Planning Analytics Local 2.1.0 through 2.1.14 could allow a remote authenticated user to traverse directories on the system. An attacker could send a specially crafted URL request containing absolute path sequences to view, read, or write arbitrary files on the system.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13299

    Last Modified: 24 Feb 2026

    A flaw has been found in itsourcecode Web-Based Internet Laboratory Management System 1.0. This impacts an unknown function of the file /user/controller.php. Executing a manipulation can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13298

    Last Modified: 24 Feb 2026

    A vulnerability was detected in itsourcecode Web-Based Internet Laboratory Management System 1.0. This affects an unknown function of the file /enrollment/controller.php. Performing a manipulation results in sql injection. The attack is possible to be carried out remotely. The exploit is now public and may be used.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13297

    Last Modified: 24 Feb 2026

    A security vulnerability has been detected in itsourcecode Web-Based Internet Laboratory Management System 1.0. The impacted element is an unknown function of the file /course/controller.php. Such manipulation leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.

    Published: 17 Nov 2025
    8.5
    High

    CVE-2025-34323

    Last Modified: 26 Feb 2026

    Nagios Log Server versions prior to 2026R1.0.1 are vulnerable to local privilege escalation due to a combination of sudo misconfiguration and group-writable application directories. The 'www-data' user is a member of the 'nagios' group, which has write access to '/usr/local/nagioslogserver/scripts', while several scripts in this directory are owned by root and may be executed via sudo without a password. A local attacker running as 'www-data' can move one of these root-owned scripts to a backup name and create a replacement script with attacker-controlled content at the original path, then invoke it with sudo. This allows arbitrary commands to be executed with root privileges, providing full compromise of the underlying operating system.

    Published: 17 Nov 2025
    8.6
    High

    CVE-2025-34322

    Last Modified: 26 Nov 2025

    Nagios Log Server versions prior to 2026R1.0.1 contain an authenticated command injection vulnerability in the experimental 'Natural Language Queries' feature. When this feature is configured, certain user-controlled settings—including model selection and connection parameters—are read from the global configuration and concatenated into a shell command that is executed via shell_exec() without proper input handling or command-line argument sanitation. An authenticated user with access to the 'Global Settings' page can supply crafted values in these fields to inject additional shell commands, resulting in arbitrary command execution as the 'www-data' user and compromise of the Log Server host.

    Published: 17 Nov 2025
    4.8
    Medium

    CVE-2025-55059

    Last Modified: 24 Nov 2025

    CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')

    Published: 17 Nov 2025
    4.5
    Medium

    CVE-2025-55058

    Last Modified: 24 Nov 2025

    CWE-20 Improper Input Validation

    Published: 17 Nov 2025
    4.5
    Medium

    CVE-2025-55057

    Last Modified: 24 Nov 2025

    Multiple CWE-352 Cross-Site Request Forgery (CSRF)

    Published: 17 Nov 2025
    7.5
    High

    CVE-2025-64756

    Last Modified: 2 Dec 2025

    Glob matches files using patterns the shell uses. Starting in version 10.2.0 and prior to versions 10.5.0 and 11.1.0, the glob CLI contains a command injection vulnerability in its -c/--cmd option that allows arbitrary command execution when processing files with malicious names. When glob -c <command> <patterns> are used, matched filenames are passed to a shell with shell: true, enabling shell metacharacters in filenames to trigger command injection and achieve arbitrary code execution under the user or CI account privileges. This issue has been patched in versions 10.5.0 and 11.1.0.

    Published: 17 Nov 2025
    4.8
    Medium

    CVE-2025-55056

    Last Modified: 24 Nov 2025

    Multiple CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')

    Published: 17 Nov 2025
    6.8
    Medium

    CVE-2025-55055

    Last Modified: 24 Nov 2025

    CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

    Published: 17 Nov 2025
    4.8
    Medium

    CVE-2025-64758

    Last Modified: 15 Apr 2026

    @dependencytrack/frontend is a Single Page Application (SPA) used in Dependency-Track, an open source Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain. Since version 4.12.0, Dependency-Track users with the SYSTEM_CONFIGURATION permission can configure a "welcome message", which is HTML that is to be rendered on the login page for branding purposes. When rendering the welcome message, Dependency-Track versions before 4.13.6 did not properly sanitize the HTML, allowing arbitrary JavaScript to be executed. Users with the SYSTEM_CONFIGURATION permission (i.e., administrators), can exploit this weakness to execute arbitrary JavaScript for users browsing to the login page. The issue has been fixed in version 4.13.6.

    Published: 17 Nov 2025
    6.9
    Medium

    CVE-2025-64342

    Last Modified: 15 Apr 2026

    ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. When the ESP32 is in advertising mode, if it receives a connection request containing an invalid Access Address (AA) of 0x00000000 or 0xFFFFFFFF, advertising may stop unexpectedly. In this case, the controller may incorrectly report a connection event to the host, which can cause the application layer to assume that the device has successfully established a connection. This issue has been fixed in versions 5.5.2, 5.4.3, 5.3.5, 5.2.6, and 5.1.7. At time of publication versions 5.5.2, 5.3.5, and 5.1.7 have not been released but are fixed respectively in commits 3b95b50, e3d7042, and 75967b5.

    Published: 17 Nov 2025
    7.4
    High

    CVE-2025-58407

    Last Modified: 8 Jan 2026

    Kernel or driver software installed on a Guest VM may post improper commands to the GPU Firmware to exploit a TOCTOU race condition and trigger a read and/or write of data outside the allotted memory escaping the virtual machine.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13291

    Last Modified: 24 Feb 2026

    A vulnerability was found in Campcodes Supplier Management System 1.0. This affects an unknown part of the file /manufacturer/confirm_order.php. Performing a manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used.

    Published: 17 Nov 2025
    7.5
    High

    CVE-2025-58410

    Last Modified: 12 Jan 2026

    Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permissions to memory buffers exported as read-only. This is caused by improper handling of the memory protections for the buffer resource.

    Published: 17 Nov 2025
    7.2
    High

    CVE-2025-62519

    Last Modified: 5 Jan 2026

    phpMyFAQ is an open source FAQ web application. Prior to version 4.0.14, an authenticated SQL injection vulnerability in the main configuration update functionality of phpMyFAQ allows a privileged user with 'Configuration Edit' permissions to execute arbitrary SQL commands. Successful exploitation can lead to a full compromise of the database, including reading, modifying, or deleting all data, as well as potential remote code execution depending on the database configuration. This issue has been patched in version 4.0.14.

    Published: 17 Nov 2025
    8.8
    High

    CVE-2025-13319

    Last Modified: 15 Apr 2026

    An injection vulnerability has been discovered in the API feature in Digi On-Prem Manager, enabling an attacker with valid API tokens to inject SQL via crafted input. The API is not enabled by default, and a valid API token is required to perform the attack.

    Published: 17 Nov 2025
    2.1
    Low

    CVE-2025-13290

    Last Modified: 19 Nov 2025

    A vulnerability has been found in code-projects Simple Food Ordering System 1.0. Affected by this issue is some unknown functionality of the file /saveorder.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 17 Nov 2025
    2.1
    Low

    CVE-2025-13289

    Last Modified: 24 Feb 2026

    A vulnerability was detected in 1000projects Design & Development of Student Database Management System 1.0. Affected is an unknown function of the file /TeacherLogin/Academics/SubjectDetails.php. The manipulation of the argument SubCode results in sql injection. The attack may be performed from remote. The exploit is now public and may be used.

    Published: 17 Nov 2025
    7.4
    High

    CVE-2025-13288

    Last Modified: 24 Feb 2026

    A security vulnerability has been detected in Tenda CH22 1.0.0.1. This impacts the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

    Published: 17 Nov 2025
    7.1
    High

    CVE-2025-4321

    Last Modified: 15 Apr 2026

    In a Bluetooth device, using RS9116-WiseConnect SDK experiences a Denial of Service, if it receives malformed L2CAP packets, only hard reset will bring the device to normal operation

    Published: 17 Nov 2025
    Unknown

    CVE-2025-13310

    Last Modified: 17 Nov 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 17 Nov 2025
    2.1
    Low

    CVE-2025-13287

    Last Modified: 19 Nov 2025

    A weakness has been identified in itsourcecode Online Voting System 1.0. This affects an unknown function of the file /index.php?page=categories. Executing manipulation of the argument id/category can lead to sql injection. The attack can be executed remotely. The exploit has been made available to the public and could be exploited.

    Published: 17 Nov 2025
    2.1
    Low

    CVE-2025-13286

    Last Modified: 19 Nov 2025

    A security flaw has been discovered in itsourcecode Online Voting System 1.0. The impacted element is an unknown function of the file /ajax.php?action=save_user. Performing manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited.

    Published: 17 Nov 2025
    5.5
    Medium

    CVE-2025-13285

    Last Modified: 19 Nov 2025

    A vulnerability was identified in itsourcecode Online Voting System 1.0. The affected element is an unknown function of the file /login.php. Such manipulation of the argument Username leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.

    Published: 17 Nov 2025