CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2025-42923

    Last Modified: 15 Apr 2026

    Due to insufficient CSRF protection in SAP Fiori App Manage Work Center Groups, an authenticated user could be tricked by an attacker to send unintended request to the web server. This has low impact on integrity and no impact on confidentiality and availability of the application.

    Published: 9 Sept 2025
    9.9
    Critical

    CVE-2025-42922

    Last Modified: 15 Apr 2026

    SAP NetWeaver AS Java allows an attacker authenticated as a non-administrative user to use a flaw in an available service to upload an arbitrary file. This file when executed can lead to a full compromise of confidentiality, integrity and availability of the system.

    Published: 9 Sept 2025
    6.1
    Medium

    CVE-2025-42920

    Last Modified: 24 Oct 2025

    Due to a Cross-Site Scripting (XSS) vulnerability in the SAP Supplier Relationship Management, an unauthenticated attacker could generate a malicious link and make it publicly accessible. If an authenticated victim clicks on the link, the injected input is processed during the page generation, resulting in the execution of malicious content. This execution allows the attacker to access and modify information within the victim's browser scope, impacting confidentiality and integrity, while availability remains unaffected.

    Published: 9 Sept 2025
    4.3
    Medium

    CVE-2025-42918

    Last Modified: 23 Oct 2025

    SAP NetWeaver Application Server for ABAP allows authenticated users with access to background processing to gain unauthorized read access to profile parameters. This results in a low impact on confidentiality, with no impact on integrity or availability

    Published: 9 Sept 2025
    6.5
    Medium

    CVE-2025-42917

    Last Modified: 15 Apr 2026

    SAP HCM Approve Timesheets Fiori 2.0 application does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This issue has a significant impact on the application's integrity, while confidentiality and availability remain unaffected.

    Published: 9 Sept 2025
    8.1
    High

    CVE-2025-42916

    Last Modified: 15 Apr 2026

    Due to missing input validation, an attacker with high privilege access to ABAP reports could delete the content of arbitrary database tables, if the tables are not protected by an authorization group. This leads to a high impact on integrity and availability of the database but no impact on confidentiality.

    Published: 9 Sept 2025
    5.4
    Medium

    CVE-2025-42915

    Last Modified: 15 Apr 2026

    Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an attacker with basic user privileges to abuse functionalities that should be restricted to specific user groups.This issue could impact both the confidentiality and integrity of the application without affecting the availability.

    Published: 9 Sept 2025
    3.1
    Low

    CVE-2025-42914

    Last Modified: 15 Apr 2026

    Due to missing authorization checks, SAP HCM My Timesheet Fiori 2.0 application allows an authenticated attacker with in-depth system knowledge to escalate privileges and perform activities that are otherwise restricted, resulting in a low impact on the integrity of the application. Confidentiality and availability are not impacted.

    Published: 9 Sept 2025
    3.1
    Low

    CVE-2025-42913

    Last Modified: 15 Apr 2026

    Due to missing authorization checks, SAP HCM My Timesheet Fiori 2.0 application allows an authenticated attacker with in-depth system knowledge to escalate privileges and perform activities that are otherwise restricted, resulting in a low impact on the integrity of the application. Confidentiality and availability are not impacted.

    Published: 9 Sept 2025
    6.5
    Medium

    CVE-2025-42912

    Last Modified: 15 Apr 2026

    SAP HCM My Timesheet Fiori 2.0 application does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This issue has a significant impact on the application's integrity, while confidentiality and availability remain unaffected.

    Published: 9 Sept 2025
    5
    Medium

    CVE-2025-42911

    Last Modified: 23 Oct 2025

    SAP NetWeaver (Service Data Download) allows an authenticated user to call a remote-enabled function module, which could grant access to information about the SAP system and operating system. This leads to a low impact on confidentiality, with no effect on the integrity and availability of the application

    Published: 9 Sept 2025
    2.1
    Low

    CVE-2025-10121

    Last Modified: 15 Apr 2026

    A flaw has been found in uverif up to 3.2. This affects the function addbatch of the file /admin/kami_list. This manipulation of the argument note causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

    Published: 9 Sept 2025
    7.4
    High

    CVE-2025-10120

    Last Modified: 10 Sept 2025

    A vulnerability was detected in Tenda AC20 up to 16.03.08.12. The impacted element is the function strcpy of the file /goform/GetParentControlInfo. The manipulation of the argument mac results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used.

    Published: 9 Sept 2025
    5.5
    Medium

    CVE-2025-10118

    Last Modified: 10 Sept 2025

    A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. The affected element is an unknown function of the file /login.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

    Published: 9 Sept 2025
    4.8
    Medium

    CVE-2025-43778

    Last Modified: 12 Dec 2025

    A Stored cross-site scripting vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q2.0 through 2025.Q2.11, 2025.Q1.0 through 2025.Q1.16, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.0 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13 and 2024.Q1.1 through 2024.Q1.20 allows an remote authenticated attacker to inject JavaScript through the name of a fieldset in Kaleo Forms Admin. The malicious payload is stored and executed without proper sanitization or escaping.

    Published: 9 Sept 2025
    2
    Low

    CVE-2025-10117

    Last Modified: 10 Sept 2025

    A weakness has been identified in SourceCodester Simple To-Do List System 1.0. Impacted is an unknown function of the file /fetch_tasks.php of the component Add New Task. Executing manipulation with the input <script>alert('XSS')</script> can lead to cross site scripting. The attack can be executed remotely. The exploit has been made available to the public and could be exploited.

    Published: 9 Sept 2025
    5.5
    Medium

    CVE-2025-10116

    Last Modified: 15 Apr 2026

    A vulnerability was identified in SiempreCMS up to 1.3.6. This vulnerability affects unknown code of the file /docs/admin/file_upload.php. Such manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit is publicly available and might be used.

    Published: 9 Sept 2025
    5.5
    Medium

    CVE-2025-10115

    Last Modified: 15 Apr 2026

    A vulnerability was determined in SiempreCMS up to 1.3.6. This affects an unknown part of the file user_search_ajax.php. This manipulation of the argument name/userName causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.

    Published: 9 Sept 2025
    5.5
    Medium

    CVE-2025-10114

    Last Modified: 10 Sept 2025

    A vulnerability was found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown functionality of the file /profile.php. The manipulation of the argument Name results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.

    Published: 9 Sept 2025
    Unknown

    CVE-2025-43774

    Last Modified: 18 Sept 2025

    This CVE ID is rejected. The reported vulnerability was found to be present only in a feature that was under development and protected by a beta feature flag. As a result, the issue was not exploitable in the official or public releases within the specified affected ranges, making this a false positive for officially released versions.

    Published: 9 Sept 2025
    5.5
    Medium

    CVE-2025-10113

    Last Modified: 10 Sept 2025

    A security vulnerability has been detected in itsourcecode Student Information Management System 1.0. This affects an unknown function of the file /admin/modules/room/index.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.

    Published: 9 Sept 2025
    3.1
    Low

    CVE-2025-8277

    Last Modified: 30 Jun 2026

    A flaw was found in libssh's handling of key exchange (KEX) processes when a client repeatedly sends incorrect KEX guesses. The library fails to free memory during these rekey operations, which can gradually exhaust system memory. This issue can lead to crashes on the client side, particularly when using libgcrypt, which impacts application stability and availability.

    Published: 9 Sept 2025
    6.4
    Medium

    CVE-2025-57665

    Last Modified: 17 Oct 2025

    Element Plus Link component (el-link) through 2.10.6 implements insufficient input validation for the href attribute, creating a security abstraction gap that obscures URL-based attack vectors. The component passes user-controlled href values directly to underlying anchor elements without protocol validation, URL sanitization, or security headers. This allows attackers to inject malicious URLs using dangerous protocols (javascript:, data:, file:) or redirect users to external malicious sites. While native HTML anchor elements present similar risks, UI component libraries bear additional responsibility for implementing security safeguards and providing clear risk documentation. The vulnerability enables XSS attacks, phishing campaigns, and open redirect exploits affecting applications that use Element Plus Link components with user-controlled or untrusted URL inputs.

    Published: 9 Sept 2025
    8.8
    High

    CVE-2025-57278

    Last Modified: 10 Oct 2025

    The LB-Link BL-CPE300M AX300 4G LTE Router firmware version BL-R8800_B10_ALK_SL_V01.01.02P42U14_06 does not implement proper session handling. After a user authenticates from a specific IP address, the router grants access to any other client using that same IP, without requiring credentials or verifying client identity. There are no session tokens, cookies, or unique identifiers in place. This flaw allows an attacker to obtain full administrative access simply by configuring their device to use the same IP address as a previously authenticated user. This results in a complete authentication bypass.

    Published: 9 Sept 2025
    9.8
    Critical

    CVE-2025-57633

    Last Modified: 15 Apr 2026

    A command injection vulnerability in FTP-Flask-python through 5173b68 allows unauthenticated remote attackers to execute arbitrary OS commands. The /ftp.html endpoint's "Upload File" action constructs a shell command from the ftp_file parameter and executes it using os.system() without sanitization or escaping.

    Published: 9 Sept 2025
    5.4
    Medium

    CVE-2025-57540

    Last Modified: 17 Sept 2025

    A stored cross-site scripting (XSS) vulnerability exists in the WebAuthn Relying Party field within the Datacenter configuration of Proxmox Virtual Environment (PVE) 8.4. Authenticated users can inject JavaScript code that is later executed in the browsers of users who view the configuration page, enabling client-side attacks.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57064

    Last Modified: 15 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the bindDhcpIndex parameter in the modifyDhcpRule function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57078

    Last Modified: 17 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the pppoeServerWhiteMacIndex parameter in the formModifyPppAuthWhiteMac function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-29089

    Last Modified: 15 Apr 2026

    An issue in TP-Link AX10 Ax1500 v.1.3.10 Build (20230130) allows a remote attacker to obtain sensitive information

    Published: 9 Sept 2025
    9.1
    Critical

    CVE-2025-44594

    Last Modified: 17 Sept 2025

    halo v2.20.17 and before is vulnerable to server-side request forgery (SSRF) in /apis/uc.api.storage.halo.run/v1alpha1/attachments/-/upload-from-url.

    Published: 9 Sept 2025
    6.1
    Medium

    CVE-2025-44593

    Last Modified: 18 Sept 2025

    Halo prior to 2.20.13 allows bypassing file type detection and uploading malicious files such as .exe and .html files. Specifically, .html files can trigger stored XSS vulnerabilities. This vulnerability is fixed in 2.20.13

    Published: 9 Sept 2025
    6.1
    Medium

    CVE-2025-44595

    Last Modified: 18 Sept 2025

    Halo v2.20.17 and before is vulnerable to Cross Site Scripting (XSS) in /halo_host/archives/{name}.

    Published: 9 Sept 2025
    6.1
    Medium

    CVE-2025-52277

    Last Modified: 17 Oct 2025

    Cross Site Scripting vulnerability in YesWiki v.4.54 allows a remote attacker to execute arbitrary code via a crafted payload to the meta configuration robots field

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-52322

    Last Modified: 17 Oct 2025

    An issue in Open5GS v2.7.2 and before allows a remote attacker to cause a denial of service via a crafted Create Session Request message to the SMF (PGW-C), using the IP address of a legitimate UE in the PDN Address Allocation (PAA) field

    Published: 9 Sept 2025
    7.2
    High

    CVE-2025-52915

    Last Modified: 15 Apr 2026

    K7RKScan.sys 23.0.0.10, part of the K7 Security Anti-Malware suite, allows an admin-privileged user to send crafted IOCTL requests to terminate processes that are protected through a third-party implementation. This is caused by insufficient caller validation in the driver's IOCTL handler, enabling unauthorized processes to perform those actions in kernel space. Successful exploitation can lead to denial of service by disrupting critical third-party services or applications.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57063

    Last Modified: 15 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the portMappingIndex parameter in the formDelPortMapping function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57061

    Last Modified: 15 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain multiple stack overflows in the formIPMacBindModify function via the ruleId, ip, mac, v6 and remark parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57062

    Last Modified: 18 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the delDhcpIndex parameter in the formDelDhcpRule function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57057

    Last Modified: 15 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the listStr parameter in the ipMacBindListStore function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57058

    Last Modified: 15 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain multiple stack overflows in the formSetDebugCfg function via the pEnable, pLevel, and pModule parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57059

    Last Modified: 15 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the dhcpIndex parameter in the addDhcpRule function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57060

    Last Modified: 17 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the rules parameter in the dns_forward_rule_store function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57069

    Last Modified: 18 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the pPppUser parameter in the getsinglepppuser function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57070

    Last Modified: 18 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the gstUp parameter in the guestWifiRuleRefresh function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57071

    Last Modified: 18 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the vpnUsers parameter in the formAddVpnUsers function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57072

    Last Modified: 18 Sept 2025

    Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the staticRouteGateway parameter in the formSetStaticRoute function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    9.8
    Critical

    CVE-2025-57085

    Last Modified: 17 Sept 2025

    Tenda W30E V16.01.0.19 (5037) was discovered to contain a stack overflow in the v17 parameter in the UploadCfg function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57086

    Last Modified: 17 Sept 2025

    Tenda W30E V16.01.0.19 (5037) was discovered to contain a stack overflow in the String parameter in the formDeleteMeshNode function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    7.5
    High

    CVE-2025-57087

    Last Modified: 18 Sept 2025

    Tenda W30E V16.01.0.19 (5037) was discovered to contain a stack overflow in the countryCode parameter in the werlessAdvancedSet function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

    Published: 9 Sept 2025
    5.4
    Medium

    CVE-2025-57538

    Last Modified: 18 Sept 2025

    A stored cross-site scripting (XSS) vulnerability in the HTTP Proxy field within the Datacenter configuration panel of Proxmox Virtual Environment (PVE) 8.4 allows an authenticated user to inject malicious input. The input is stored and executed in the context of other users' browsers when they view the affected configuration page. This can lead to arbitrary JavaScript execution.

    Published: 9 Sept 2025