CVE Feed

    Dashboard / CVE

    8.7
    High

    CVE-2025-9648

    Last Modified: 15 Apr 2026

    A vulnerability in the CivetWeb library's function mg_handle_form_request allows remote attackers to trigger a denial of service (DoS) condition. By sending a specially crafted HTTP POST request containing a null byte in the payload, the server enters an infinite loop during form data parsing. Multiple malicious requests will result in complete CPU exhaustion and render the service unresponsive to further requests. This issue was fixed in commit 782e189. This issue affects only the library, standalone executable pre-built by vendor is not affected.

    Published: 29 Sept 2025
    9.8
    Critical

    CVE-2025-8868

    Last Modified: 16 Oct 2025

    In Progress Chef Automate, versions earlier than 4.13.295, on Linux x86 platform, an authenticated attacker can gain access to Chef Automate restricted functionality in the compliance service via improperly neutralized inputs used in an SQL command using a well-known token.

    Published: 29 Sept 2025
    8.8
    High

    CVE-2025-6724

    Last Modified: 16 Oct 2025

    In Progress Chef Automate, versions earlier than 4.13.295, on Linux x86 platform, an authenticated attacker can gain access to Chef Automate restricted functionality in multiple services via improperly neutralized inputs used in an SQL command.

    Published: 29 Sept 2025
    Unknown

    CVE-2025-11150

    Last Modified: 29 Sept 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 29 Sept 2025
    5.1
    Medium

    CVE-2025-11147

    Last Modified: 16 Oct 2025

    Reflected cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows malicious scripts (XSS) to be executed in “/html/<filename>.html”.

    Published: 29 Sept 2025
    5.1
    Medium

    CVE-2025-11146

    Last Modified: 16 Oct 2025

    Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows an attacker to execute malicious scripts (XSS) in the web management application. The vulnerability is caused by improper handling of GET inputs included in the URL in “/acng-report.html”.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-10346

    Last Modified: 2 Oct 2025

    HTML injection vulnerability in Perfex CRM v3.2.1 consisting of a stored HTML injection due to lack of proper validation of user input by sending a POST request in the parameters 'subject' at the endpoint 'knoewledge_base/article'.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-10345

    Last Modified: 2 Oct 2025

    HTML injection vulnerability in Perfex CRM v3.2.1 consisting of a stored HTML injection due to lack of proper validation of user input by sending a POST request in the parameters 'name' and 'address' at the endpoint 'admin/leads/lead'.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-10344

    Last Modified: 2 Oct 2025

    HTML injection vulnerability in Perfex CRM v3.2.1 consisting of a stored HTML injection due to lack of proper validation of user input by sending a POST request in the parameters 'name' and 'clientid' at the endpoint '/projects/project/x'.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-10343

    Last Modified: 2 Oct 2025

    HTML injection vulnerability in Perfex CRM v3.2.1 consisting of a stored HTML injection due to lack of proper validation of user input by sending a POST request in the parameter 'expense_name' at the endpoint '/expenses/expense'.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-10342

    Last Modified: 2 Oct 2025

    HTML injection vulnerability in Perfex CRM v3.2.1 consisting of a stored HTML injection due to lack of proper validation of user input by sending a POST request in the parameter 'name' at the endpoint '/subscriptions/create'.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-10341

    Last Modified: 2 Oct 2025

    HTML injection vulnerability in Perfex CRM v3.2.1 consisting of a stored HTML injection due to lack of proper validation of user input by sending a POST request in the parameter 'company' at the endpoint '/clients/client/x.

    Published: 29 Sept 2025
    8.8
    High

    CVE-2025-48006

    Last Modified: 14 Oct 2025

    Improper restriction of XML external entity reference issue exists in DataSpider Servista 4.4 and earlier. If a specially crafted request is processed, arbitrary files on the file system where the server application for the product is installed may be read, or a denial-of-service (DoS) condition may occur.

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61629

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61630

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61631

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61632

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61633

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61626

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61627

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    Unknown

    CVE-2025-61628

    Last Modified: 30 Sept 2025

    Not used

    Published: 29 Sept 2025
    4.8
    Medium

    CVE-2024-5200

    Last Modified: 15 Apr 2026

    The Postie WordPress plugin before 1.9.71 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 29 Sept 2025
    2
    Low

    CVE-2025-11141

    Last Modified: 15 Apr 2026

    A security flaw has been discovered in Ruijie NBR2100G-E up to 20250919. Affected by this issue is the function listAction of the file /itbox_pi/branch_passw.php?a=list. Performing manipulation of the argument city results in os command injection. The attack is possible to be carried out remotely. The exploit has been released to the public and may be exploited. Other parameters might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    6.9
    Medium

    CVE-2025-10504

    Last Modified: 15 Apr 2026

    Heap-based Buffer Overflow vulnerability in ABB Terra AC wallbox.This issue affects Terra AC wallbox: through 1.8.33.

    Published: 29 Sept 2025
    5.5
    Medium

    CVE-2025-11140

    Last Modified: 3 Oct 2025

    A vulnerability was identified in Bjskzy Zhiyou ERP up to 11.0. Affected by this vulnerability is the function openForm of the component com.artery.richclient.RichClientService. Such manipulation of the argument contentString leads to xml external entity reference. The attack can be executed remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    2.1
    Low

    CVE-2025-11139

    Last Modified: 3 Oct 2025

    A vulnerability was determined in Bjskzy Zhiyou ERP up to 11.0. Affected is the function uploadStudioFile of the component com.artery.form.services.FormStudioUpdater. This manipulation of the argument filepath causes path traversal. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    2.1
    Low

    CVE-2025-11138

    Last Modified: 10 Oct 2025

    A vulnerability was found in mirweiye wenkucms up to 3.4. This impacts the function createPathOne of the file app/common/common.php. The manipulation results in os command injection. The attack may be launched remotely. The exploit has been made public and could be used.

    Published: 29 Sept 2025
    2
    Low

    CVE-2025-11137

    Last Modified: 15 Apr 2026

    A vulnerability has been found in Gstarsoft GstarCAD up to 9.4.0. This affects an unknown function of the component File Renaming Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Applying a patch is the recommended action to fix this issue.

    Published: 29 Sept 2025
    2
    Low

    CVE-2025-11136

    Last Modified: 11 Dec 2025

    A flaw has been found in YiFang CMS up to 2.0.2. The impacted element is the function webUploader of the file app/app/controller/File.php of the component Backend. Executing manipulation of the argument uploadpath can lead to unrestricted upload. The attack can be launched remotely. The exploit has been published and may be used.

    Published: 29 Sept 2025
    5.5
    Medium

    CVE-2025-11135

    Last Modified: 15 Apr 2026

    A vulnerability was detected in pmTicket Project-Management-Software up to 2ef379da2075f4761a2c9029cf91d073474e7486. The affected element is the function loadLanguage of the file classes/class.database.php of the component Cookie Handler. Performing manipulation of the argument user_id results in deserialization. The attack can be initiated remotely. The exploit is now public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    1.9
    Low

    CVE-2025-11134

    Last Modified: 15 Apr 2026

    A security vulnerability has been detected in Cudy TR1200 1.16.3-20230804-164635. Impacted is an unknown function of the file /cgi-bin/luci/admin/network/wireless/config/ of the component Wireless Settings Page. Such manipulation of the argument SSID leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    5.9
    Medium

    CVE-2025-7698

    Last Modified: 15 Apr 2026

    Out-of-bounds read vulnerabilities in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver

    Published: 29 Sept 2025
    6.9
    Medium

    CVE-2025-9904

    Last Modified: 15 Apr 2026

    Unallocated memory access vulnerability in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver

    Published: 29 Sept 2025
    5.9
    Medium

    CVE-2025-9903

    Last Modified: 15 Apr 2026

    Out-of-bounds write vulnerabilities in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver

    Published: 29 Sept 2025
    7.3
    High

    CVE-2025-11130

    Last Modified: 15 Apr 2026

    A weakness has been identified in iHongRen pptp-vpn 1.0/1.0.1 on macOS. This issue affects the function shouldAcceptNewConnection of the file HelpTool/HelperTool.m of the component XPC Service. This manipulation causes missing authentication. The attack can only be executed locally. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    8.9
    High

    CVE-2025-11126

    Last Modified: 15 Apr 2026

    A security flaw has been discovered in Apeman ID71 218.53.203.117. This vulnerability affects unknown code of the file /system/www/system.ini. The manipulation results in hard-coded credentials. The attack may be performed from remote. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 29 Sept 2025
    6
    Medium

    CVE-2025-57197

    Last Modified: 15 Apr 2026

    In the Payeer Android application 2.5.0, an improper access control vulnerability exists in the authentication flow for the PIN change feature. A local attacker with root access to the device can dynamically instrument the app to bypass the current PIN verification check and directly modify the authentication PIN. This allows unauthorized users to change PIN without knowing the original/current PIN.

    Published: 29 Sept 2025
    8.2
    High

    CVE-2025-56449

    Last Modified: 15 Apr 2026

    A security vulnerability was identified in Obsidian Scheduler's REST API 5.0.0 thru 6.3.0. If an account is locked out due to not enrolling in MFA (e.g. after the 7-day enforcement window), the REST API still allows the use of Basic Authentication to authenticate and perform administrative actions. In particular, the default admin account was found to be locked out via the web interface but still usable through the REST API. This allowed creation of a new privileged user, bypassing MFA protections. This undermines the intended security posture of MFA enforcement.

    Published: 29 Sept 2025
    7.5
    High

    CVE-2025-56233

    Last Modified: 15 Apr 2026

    Openindiana, kernel SunOS 5.11 has a denial of service vulnerability. For the processing of TCP packets with RST or SYN flag set, Openindiana has a wide acceptable range of sequence numbers. It does not require the sequence number to exactly match the next expected sequence value, just to be within the current receive window, which violates RFC5961. This flaw allows attackers to send multiple random TCP RST/SYN packets to hit the acceptable range of sequence numbers, thereby interrupting normal connections and causing a denial of service attack.

    Published: 29 Sept 2025
    9.9
    Critical

    CVE-2025-10725

    Last Modified: 15 Apr 2026

    A flaw was found in Red Hat Openshift AI Service. A low-privileged attacker with access to an authenticated account, for example as a data scientist using a standard Jupyter notebook, can escalate their privileges to a full cluster administrator. This allows for the complete compromise of the cluster's confidentiality, integrity, and availability. The attacker can steal sensitive data, disrupt all services, and take control of the underlying infrastructure, leading to a total breach of the platform and all applications hosted on it.

    Published: 29 Sept 2025
    7.5
    High

    CVE-2024-57412

    Last Modified: 15 Apr 2026

    An issue in SunOS Omnios v5.11 allows attackers to cause a Denial of Service (DoS) via repeatedly sending crafted TCP packets.

    Published: 29 Sept 2025
    7.5
    High

    CVE-2025-51495

    Last Modified: 16 Oct 2025

    An integer overflow vulnerability exists in the WebSocket component of Mongoose 7.5 thru 7.17. By sending a specially crafted WebSocket request, an attacker can cause the application to crash. If downstream vendors integrate this component improperly, the issue may lead to a buffer overflow.

    Published: 29 Sept 2025
    9
    Critical

    CVE-2025-56795

    Last Modified: 16 Oct 2025

    Mealie 3.0.1 and earlier is vulnerable to Stored Cross-Site Scripting (XSS) in the recipe creation functionality. Unsanitized user input in the "note" and "text" fields of the "/api/recipes/{recipe_name}" endpoint is rendered in the frontend without proper escaping leading to persistent XSS.

    Published: 29 Sept 2025
    5.3
    Medium

    CVE-2025-56764

    Last Modified: 11 Nov 2025

    Trivision NC-227WF firmware 5.80 (build 20141010) login mechanism reveals whether a username exists or not by returning different error messages ("Unknown user" vs. "Wrong password"), allowing an attacker to enumerate valid usernames.

    Published: 29 Sept 2025
    7.8
    High

    CVE-2025-41244

    Last Modified: 26 Feb 2026

    VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

    Published: 29 Sept 2025
    6.5
    Medium

    CVE-2025-57428

    Last Modified: 15 Apr 2026

    Default credentials in Each Italy Wireless Mini Router WIRELESS-N 300M v28K.MiniRouter.20190211 allows attackers to gain access to the debug shell exposed via Telnet on Port 23 and execute hardware-level flash and register manipulation commands.

    Published: 29 Sept 2025
    8.2
    High

    CVE-2025-57516

    Last Modified: 23 Dec 2025

    OS Command injection vulnerability in PublicCMS PublicCMS-V5.202506.a, and PublicCMS-V5.202506.b allowing attackers to execute arbitrary commands via crafted DATABASE, USERNAME, or PASSWORD variables to the backupDB.bat file.

    Published: 29 Sept 2025
    8.1
    High

    CVE-2025-57483

    Last Modified: 15 Apr 2026

    A reflected cross-site scripting (XSS) vulnerability in tawk.to chatbox widget v4 allows attackers to execute arbitrary Javascript in the context of the user's browser via injecting a crafted payload into the vulnerable parameter.

    Published: 29 Sept 2025
    7.3
    High

    CVE-2025-57424

    Last Modified: 15 Apr 2026

    A stored cross-site scripting (XSS) vulnerability exists in the MyCourts v3 application within the LTA number profile field. An attacker can insert arbitrary JavaScript into their profile, which executes in the browser of any user viewing it, including administrators. Due to the absence of the HttpOnly flag on the session cookie, this flaw could be exploited to capture session tokens and hijack user sessions, enabling elevated access.

    Published: 29 Sept 2025
    6.1
    Medium

    CVE-2025-56807

    Last Modified: 16 Oct 2025

    A cross-site scripting (XSS) vulnerability in FairSketch RISE Ultimate Project Manager & CRM 3.9.4 allows an administrator to store a JavaScript payload using the file explorer in the admin dashboard when creating new folders.

    Published: 29 Sept 2025