CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2025-58691

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Russell Jamieson Genesis Club Lite genesis-club-lite allows Stored XSS.This issue affects Genesis Club Lite: from n/a through <= 1.17.

    Published: 22 Sept 2025
    7.1
    High

    CVE-2025-58690

    Last Modified: 23 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in ptibogxiv Doliconnect doliconnect allows Stored XSS.This issue affects Doliconnect: from n/a through <= 9.5.7.

    Published: 22 Sept 2025
    6.5
    Medium

    CVE-2025-58702

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebWizards MarketKing marketking-multivendor-marketplace-for-woocommerce allows Stored XSS.This issue affects MarketKing: from n/a through <= 2.0.92.

    Published: 22 Sept 2025
    6.5
    Medium

    CVE-2025-58703

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in skyword Skyword API Plugin skyword-plugin allows Stored XSS.This issue affects Skyword API Plugin: from n/a through <= 2.5.3.

    Published: 22 Sept 2025
    6.5
    Medium

    CVE-2025-58704

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ren Ventura WP Delete User Accounts wp-delete-user-accounts allows Stored XSS.This issue affects WP Delete User Accounts: from n/a through <= 1.2.4.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-59418

    Last Modified: 15 Apr 2026

    BunnyPad is a note taking software. Prior to version 11.0.27000.0915, opening files greater than or equal to 20MB causes buffer overflow to occur. This issue has been patched in version 11.0.27000.0915. Users who wish not to upgrade should refrain from opening files larger than 10MB.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10809

    Last Modified: 25 Sept 2025

    A security vulnerability has been detected in Campcodes Online Learning Management System 1.0. The affected element is an unknown function of the file /admin/department.php. Such manipulation of the argument d leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10808

    Last Modified: 15 Oct 2025

    A weakness has been identified in Campcodes Farm Management System 1.0. Impacted is an unknown function of the file /uploadProduct.php. This manipulation of the argument Type causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited.

    Published: 22 Sept 2025
    7.5
    High

    CVE-2025-59420

    Last Modified: 3 Nov 2025

    Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to version 1.6.4, Authlib’s JWS verification accepts tokens that declare unknown critical header parameters (crit), violating RFC 7515 “must‑understand” semantics. An attacker can craft a signed token with a critical header (for example, bork or cnf) that strict verifiers reject but Authlib accepts. In mixed‑language fleets, this enables split‑brain verification and can lead to policy bypass, replay, or privilege escalation. This issue has been patched in version 1.6.4.

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59885

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59879

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59880

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59881

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59882

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59883

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59884

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59876

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59877

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    Unknown

    CVE-2025-59878

    Last Modified: 23 Sept 2025

    Not used

    Published: 22 Sept 2025
    2.1
    Low

    CVE-2025-10807

    Last Modified: 24 Sept 2025

    A security flaw has been discovered in Campcodes Online Beauty Parlor Management System 1.0. This issue affects some unknown processing of the file /admin/edit-customer-detailed.php. The manipulation of the argument editid results in sql injection. The attack may be launched remotely. The exploit has been released to the public and may be exploited.

    Published: 22 Sept 2025
    2.1
    Low

    CVE-2025-10806

    Last Modified: 24 Sept 2025

    A vulnerability was identified in Campcodes Online Beauty Parlor Management System 1.0. This vulnerability affects unknown code of the file /admin/bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.

    Published: 22 Sept 2025
    4.8
    Medium

    CVE-2025-43807

    Last Modified: 15 Dec 2025

    Stored cross-site scripting (XSS) vulnerability in the notifications widget in Liferay Portal 7.4.0 through 7.4.3.112, and Liferay DXP 2023.Q4.0 through 2023.Q4.8, 2023.Q3.1 through 2023.Q3.10, and 7.4 GA through update 92 allows remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a publication’s “Name” text field.

    Published: 22 Sept 2025
    6.5
    Medium

    CVE-2025-59413

    Last Modified: 23 Sept 2025

    CubeCart is an ecommerce software solution. Prior to version 6.5.11, a logic flaw exists in the newsletter subscription endpoint that allows an attacker to unsubscribe any user without their consent. By changing the value of the force_unsubscribe parameter in the POST request to 1, an attacker can force the removal of any valid subscriber’s email address. This issue has been patched in version 6.5.11.

    Published: 22 Sept 2025
    5.4
    Medium

    CVE-2025-59412

    Last Modified: 23 Sept 2025

    CubeCart is an ecommerce software solution. Prior to version 6.5.11, a vulnerability exists in the product reviews feature where user-supplied input is not properly sanitized before being displayed. An attacker can submit HTML tags inside the review description field. Once the administrator approves the review, the injected HTML is rendered on the product page for all visitors. This could be used to redirect users to malicious websites or to display unwanted content. This issue has been patched in version 6.5.11.

    Published: 22 Sept 2025
    5.4
    Medium

    CVE-2025-59411

    Last Modified: 23 Sept 2025

    CubeCart is an ecommerce software solution. Prior to version 6.5.11, the contact form’s Enquiry field accepts raw HTML and that HTML is included verbatim in the email sent to the store admin. By submitting HTML in the Enquiry, the admin receives an email containing that HTML. This indicates user input is not being escaped or sanitized before being output in email (and possibly when re-rendering the form), leading to Cross-Site Scripting / HTML injection risk in email clients or admin UI. This issue has been patched in version 6.5.11.

    Published: 22 Sept 2025
    7.1
    High

    CVE-2025-59335

    Last Modified: 23 Sept 2025

    CubeCart is an ecommerce software solution. Prior to version 6.5.11, there is an absence of automatic session expiration following a user's password change. This oversight poses a security risk, as if a user forgets to log out from a location where they accessed their account, an unauthorized user can maintain access even after the password has been changed. Due to this bug, if an account has already been compromised, the legitimate user has no way to revoke the attacker’s access. The malicious actor retains full access to the account until their session naturally expires. This means the account remains insecure even after the password has been changed. This issue has been patched in version 6.5.11.

    Published: 22 Sept 2025
    2.1
    Low

    CVE-2025-10805

    Last Modified: 24 Sept 2025

    A vulnerability was determined in Campcodes Online Beauty Parlor Management System 1.0. This affects an unknown part of the file /admin/add-services.php. Executing manipulation of the argument sername can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 22 Sept 2025
    9.3
    Critical

    CVE-2025-35042

    Last Modified: 19 Dec 2025

    Airship AI Acropolis includes a default administrative account that uses the same credentials on every installation. Instances of Airship AI that do not change this account password are vulnerable to a remote attacker logging in and gaining the privileges of this account. Fixed in 10.2.35, 11.0.21, and 11.1.9.

    Published: 22 Sept 2025
    7.7
    High

    CVE-2025-35041

    Last Modified: 19 Dec 2025

    Airship AI Acropolis allows unlimited MFA attempts for 15 minutes after a user has logged in with valid credentials. A remote attacker with valid credentials could brute-force the 6-digit MFA code. Fixed in 10.2.35, 11.0.21, and 11.1.9.

    Published: 22 Sept 2025
    2.1
    Low

    CVE-2025-10804

    Last Modified: 24 Sept 2025

    A vulnerability was found in Campcodes Online Beauty Parlor Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/add-customer.php. Performing manipulation of the argument mobilenum results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used.

    Published: 22 Sept 2025
    5.4
    Medium

    CVE-2025-36037

    Last Modified: 3 Oct 2025

    IBM webMethods Integration 10.15 and 11.1 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.

    Published: 22 Sept 2025
    7.5
    High

    CVE-2025-36202

    Last Modified: 3 Oct 2025

    IBM webMethods Integration 10.15 and 11.1 could allow an authenticated user with required execute Services to execute commands on the system due to the improper validation of format string strings passed as an argument from an external source.

    Published: 22 Sept 2025
    7.4
    High

    CVE-2025-10803

    Last Modified: 24 Sept 2025

    A vulnerability has been found in Tenda AC23 up to 16.03.07.52. Affected by this vulnerability is the function sscanf of the file /goform/SetPptpServerCfg of the component HTTP POST Request Handler. Such manipulation of the argument startIp leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 22 Sept 2025
    7.5
    High

    CVE-2025-9038

    Last Modified: 15 Apr 2026

    Improper Privilege Management vulnerability in GE Vernova S1 Agile Configuration Software on Windows allows Privilege Escalation.This issue affects S1 Agile Configuration Software: 3.1 and previous version.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10802

    Last Modified: 24 Sept 2025

    A flaw has been found in code-projects Online Bidding System 1.0. Affected is an unknown function of the file /administrator/remove.php. This manipulation of the argument ID causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

    Published: 22 Sept 2025
    8.8
    High

    CVE-2025-9900

    Last Modified: 29 Jun 2026

    A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an attacker can trick the library into writing attacker-controlled color data to an arbitrary memory location. This memory corruption can be exploited to cause a denial of service (application crash) or to achieve arbitrary code execution with the permissions of the user.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10801

    Last Modified: 24 Sept 2025

    A security vulnerability has been detected in SourceCodester Pet Grooming Management Software 1.0. This affects an unknown function of the file /admin/edit_tax.php. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10800

    Last Modified: 24 Sept 2025

    A weakness has been identified in itsourcecode Online Discussion Forum 1.0. The impacted element is an unknown function of the file /index.php. Executing manipulation of the argument email/password can lead to sql injection. The attack can be executed remotely. The exploit has been made available to the public and could be exploited.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10799

    Last Modified: 25 Sept 2025

    A security flaw has been discovered in code-projects Hostel Management System 1.0. The affected element is an unknown function of the file /justines/admin/mod_reservation/index.php?view=view. Performing manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10798

    Last Modified: 25 Sept 2025

    A vulnerability was identified in code-projects Hostel Management System 1.0. Impacted is an unknown function of the file /justines/admin/mod_roomtype/index.php?view=view. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.

    Published: 22 Sept 2025
    8.1
    High

    CVE-2025-10854

    Last Modified: 15 Apr 2026

    The txtai framework allows the loading of compressed tar files as embedding indices. While the validate function is intended to prevent path traversal vulnerabilities by ensuring safe filenames, it does not account for symbolic links within the tar file. An attacker is able to write a file anywhere in the filesystem when txtai is used to load untrusted embedding indices

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10797

    Last Modified: 25 Sept 2025

    A vulnerability was determined in code-projects Hostel Management System 1.0. This issue affects some unknown processing of the file /justines/index.php. This manipulation of the argument log_email causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10796

    Last Modified: 25 Sept 2025

    A vulnerability was found in code-projects Hostel Management System 1.0. This vulnerability affects unknown code of the file /justines/admin/login.php. The manipulation of the argument email results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.

    Published: 22 Sept 2025
    7.1
    High

    CVE-2025-9983

    Last Modified: 15 Apr 2026

    GALAYOU G2 cameras stream video output via RTSP streams. By default these streams are protected by randomly generated credentials. However these credentials are not required to access the stream. Changing these values does not change camera's behavior. The vendor did not respond in any way. Only version 11.100001.01.28 was tested, other versions might also be vulnerable.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10795

    Last Modified: 25 Sept 2025

    A vulnerability has been found in code-projects Online Bidding System 1.0. This affects an unknown part of the file /administrator/bidupdate.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 22 Sept 2025
    2.1
    Low

    CVE-2025-10794

    Last Modified: 25 Sept 2025

    A flaw has been found in PHPGurukul Car Rental Project 3.0. Affected by this issue is some unknown functionality of the file /carrental/search.php. Executing manipulation of the argument autofocus can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been published and may be used.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-46711

    Last Modified: 17 Oct 2025

    Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger NULL pointer dereference kernel exceptions.

    Published: 22 Sept 2025
    5.1
    Medium

    CVE-2025-25177

    Last Modified: 15 Apr 2026

    Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kernel exceptions.

    Published: 22 Sept 2025
    5.5
    Medium

    CVE-2025-10793

    Last Modified: 23 Oct 2025

    A vulnerability was detected in code-projects E-Commerce Website 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/admin_account_delete.php. Performing manipulation of the argument user_id results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.

    Published: 22 Sept 2025
    7.4
    High

    CVE-2025-10792

    Last Modified: 8 Oct 2025

    A security vulnerability has been detected in D-Link DIR-513 A1FW110. Affected is an unknown function of the file /goform/formWPS. Such manipulation of the argument webpage leads to buffer overflow. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

    Published: 22 Sept 2025