CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2025-43726

    Last Modified: 26 Feb 2026

    Dell Alienware Command Center 5.x (AWCC), versions prior to 5.10.2.0, contains an Improper Link Resolution Before File Access ('Link Following')" vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-57777

    Last Modified: 9 Oct 2025

    There is an out of bounds write vulnerability due to improper bounds checking in displ2.dll when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-57775

    Last Modified: 9 Oct 2025

    There is a heap-based Buffer Overflow vulnerability due to improper bounds checking when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-9188

    Last Modified: 9 Oct 2025

    There is a deserialization of untrusted data vulnerability in Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-57778

    Last Modified: 9 Oct 2025

    There is an out of bounds write vulnerability due to improper bounds checking resulting in an invalid source address when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-57776

    Last Modified: 9 Oct 2025

    There is an out of bounds write vulnerability due to improper bounds checking resulting in an invalid address when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-57774

    Last Modified: 9 Oct 2025

    There is an out of bounds write vulnerability due to improper bounds checking resulting in invalid data when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-9189

    Last Modified: 3 Sept 2026

    There is an out of bounds write vulnerability due to improper bounds checking resulting in a large destination address when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.

    Published: 2 Sept 2025
    2.9
    Low

    CVE-2025-9828

    Last Modified: 3 Oct 2025

    A vulnerability was determined in Tenda CP6 11.10.00.243. The affected element is the function sub_2B7D04 of the component uhttp. Executing manipulation can lead to risky cryptographic algorithm. The attack may be launched remotely. This attack is characterized by high complexity. The exploitability is described as difficult. The exploit has been publicly disclosed and may be utilized.

    Published: 2 Sept 2025
    9.4
    Critical

    CVE-2025-9696

    Last Modified: 15 Apr 2026

    The SunPower PVS6's BluetoothLE interface is vulnerable due to its use of hardcoded encryption parameters and publicly accessible protocol details. An attacker within Bluetooth range could exploit this vulnerability to gain full access to the device's servicing interface. This access allows the attacker to perform actions such as firmware replacement, disabling power production, modifying grid settings, creating SSH tunnels, altering firewall settings, and manipulating connected devices.

    Published: 2 Sept 2025
    8.6
    High

    CVE-2025-2413

    Last Modified: 6 Jun 2026

    Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft ProKuafor allows Authentication Bypass. This issue affects ProKuafor: from s1.02.08 before v1.02.08.

    Published: 2 Sept 2025
    4.7
    Medium

    CVE-2025-0670

    Last Modified: 6 Jun 2026

    Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft ProKuafor allows Resource Leak Exposure. This issue affects ProKuafor: from s1.02.07 before v1.02.08.

    Published: 2 Sept 2025
    4.3
    Medium

    CVE-2024-12974

    Last Modified: 1 Jun 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft ProKuaför allows Cross-Site Scripting (XSS). This issue affects ProKuaför: from s1.02.07 before v1.02.08.

    Published: 2 Sept 2025
    8.2
    High

    CVE-2024-58259

    Last Modified: 15 Apr 2026

    A vulnerability has been identified within Rancher Manager in which it did not enforce request body size limits on certain public (unauthenticated) and authenticated API endpoints. This allows a malicious user to exploit this by sending excessively large payloads, which are fully loaded into memory during processing, leading to Denial of Service (DoS).

    Published: 2 Sept 2025
    8.6
    High

    CVE-2025-2414

    Last Modified: 6 Jun 2026

    Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft OctoCloud allows Authentication Bypass. This issue affects OctoCloud: from s1.09.03 before v1.11.01.

    Published: 2 Sept 2025
    7.7
    High

    CVE-2024-52284

    Last Modified: 15 Apr 2026

    Unauthorized disclosure of sensitive data: Any user with `GET` or `LIST` permissions on `BundleDeployment` resources could retrieve Helm values containing credentials or other secrets.

    Published: 2 Sept 2025
    4.7
    Medium

    CVE-2025-0640

    Last Modified: 6 Jun 2026

    Authorization Bypass Through User-Controlled Key vulnerability in Akinsoft OctoCloud allows Resource Leak Exposure. This issue affects OctoCloud: from s1.09.02 before v1.11.01.

    Published: 2 Sept 2025
    4.7
    Medium

    CVE-2024-12973

    Last Modified: 1 Jun 2026

    Origin Validation Error vulnerability in Akinsoft OctoCloud allows HTTP Response Splitting, CAPEC - 87 - Forceful Browsing. This issue affects OctoCloud: from s1.09.01 before v1.11.01.

    Published: 2 Sept 2025
    4.3
    Medium

    CVE-2024-12972

    Last Modified: 1 Jun 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft OctoCloud allows Cross-Site Scripting (XSS). This issue affects OctoCloud: from s1.09.01 before v1.11.01.

    Published: 2 Sept 2025
    8.5
    High

    CVE-2025-46810

    Last Modified: 15 Apr 2026

    A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of openSUSE Tumbleweed traefik2 allows the traefik user to escalate to root. This issue affects Tumbleweed: from ? before 2.11.29.

    Published: 2 Sept 2025
    9.3
    Critical

    CVE-2025-52551

    Last Modified: 15 Apr 2026

    E2 Facility Management Systems use a proprietary protocol that allows for unauthenticated file operations on any file in the file system.

    Published: 2 Sept 2025
    8.6
    High

    CVE-2025-52550

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) firmware upgrade packages are unsigned. An attacker can forge malicious firmware upgrade packages. An attacker with admin access to the application services can install a malicious firmware upgrade.

    Published: 2 Sept 2025
    9.2
    Critical

    CVE-2025-52549

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) generates the root linux password on each boot. An attacker can generate the root linux password for a vulnerable device based on known or easy to fetch parameters.

    Published: 2 Sept 2025
    6.9
    Medium

    CVE-2025-52548

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) contains a hidden API call in the application services that enables SSH and Shellinabox, which exist but are disabled by default. An attacker with admin access to the application services can utilize this API to enable remote access to the underlying OS.

    Published: 2 Sept 2025
    8.7
    High

    CVE-2025-52547

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) MGW contains an API call that lacks input validation. An attacker can use this command to continuously crash the application services.

    Published: 2 Sept 2025
    5.1
    Medium

    CVE-2025-52546

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated attacker to upload floor plan files. By uploading a specially crafted floor plan file, an attacker can inject a stored XSS to the floorplan web page.

    Published: 2 Sept 2025
    7.7
    High

    CVE-2025-52545

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) RCI service contains an API call to read users info, which returns all usernames and password hashes for the application services.

    Published: 2 Sept 2025
    8.8
    High

    CVE-2025-52544

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated attacker to upload floor plan files. By uploading a specially crafted floor plan file, an attacker can access any file from the E3 file system.

    Published: 2 Sept 2025
    5.3
    Medium

    CVE-2025-52543

    Last Modified: 1 Oct 2025

    E3 Site Supervisor Control (firmware version < 2.31F01) application services (MGW and RCI) uses client side hashing for authentication. An attacker can authenticate by obtaining only the password hash.

    Published: 2 Sept 2025
    9.3
    Critical

    CVE-2025-6519

    Last Modified: 10 Oct 2025

    E3 Site Supervisor (firmware version < 2.31F01) has a default admin user "ONEDAY" with a daily generated password. An attacker can predictably generate the password for ONEDAY. The oneday user cannot be deleted or modified by any user.

    Published: 2 Sept 2025
    9.8
    Critical

    CVE-2025-5662

    Last Modified: 15 Apr 2026

    A deserialization vulnerability exists in the H2O-3 REST API (POST /99/ImportSQLTable) that affects all versions up to 3.46.0.7. This vulnerability allows remote code execution (RCE) due to improper validation of JDBC connection parameters when using a Key-Value format. The vulnerability is present in the MySQL JDBC Driver version 8.0.19 and JDK version 8u112. The issue is resolved in version 3.46.0.8.

    Published: 2 Sept 2025
    8.6
    High

    CVE-2025-9573

    Last Modified: 15 Apr 2026

    The ns_backup extension through 13.0.2 for TYPO3 allows command injection.

    Published: 2 Sept 2025
    6.9
    Medium

    CVE-2025-41031

    Last Modified: 15 Apr 2026

    Lack of authorisation in Deporsite by T-INNOVA. This vulnerability allows an unauthenticated attacker to change other users' profile pictures via a POST request using the parameters ‘IdPersona’ and “Foto” in ‘/ajax/TInnova_c/FotoUsuario/llamadaAjax/uploadImage’.

    Published: 2 Sept 2025
    6.9
    Medium

    CVE-2025-41030

    Last Modified: 15 Apr 2026

    Lack of authorisation in Deporsite by T-INNOVA. This vulnerability allows an unauthenticated attacker to obtain information from other users via GET ‘/ajax/TInnova_v2/Integrantes_Recurso_v2_1/llamadaAjax/buscarPersona’ using the ‘dni’ parameter.

    Published: 2 Sept 2025
    7.4
    High

    CVE-2025-41690

    Last Modified: 15 Apr 2026

    A low-privileged attacker in bluetooth range may be able to access the password of a higher-privilege user (Maintenance) by viewing the device’s event log. This vulnerability could allow the Operator to authenticate as the Maintenance user, thereby gaining unauthorized access to sensitive configuration settings and the ability to modify device parameters.

    Published: 2 Sept 2025
    5.1
    Medium

    CVE-2025-44017

    Last Modified: 15 Apr 2026

    "Gunosy" App contains a vulnerability where sensitive information may be included in the application's outbound communication. If a user accesses a crafted URL, an attacker may obtain the JWT (JSON Web Token).

    Published: 2 Sept 2025
    7.1
    High

    CVE-2025-9815

    Last Modified: 4 Sept 2025

    A weakness has been identified in alaneuler batteryKid up to 2.1 on macOS. The affected element is an unknown function of the file PrivilegeHelper/PrivilegeHelper.swift of the component NSXPCListener. This manipulation causes missing authentication. It is possible to launch the attack on the local host. The exploit has been made available to the public and could be exploited.

    Published: 2 Sept 2025
    5.5
    Medium

    CVE-2025-9814

    Last Modified: 3 Sept 2025

    A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1.1. Impacted is an unknown function of the file /admin/contact-us.php. The manipulation of the argument mobnumber results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be exploited.

    Published: 2 Sept 2025
    7.4
    High

    CVE-2025-9813

    Last Modified: 4 Sept 2025

    A vulnerability was identified in Tenda CH22 1.0.0.1. This issue affects the function formSetSambaConf of the file /goform/SetSambaConf. The manipulation of the argument samba_userNameSda leads to buffer overflow. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

    Published: 2 Sept 2025
    7.4
    High

    CVE-2025-9812

    Last Modified: 4 Sept 2025

    A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formexeCommand of the file /goform/exeCommand. Executing manipulation of the argument cmdinput can lead to buffer overflow. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

    Published: 2 Sept 2025
    5.5
    Medium

    CVE-2025-9811

    Last Modified: 3 Sept 2025

    A vulnerability was found in Campcodes Farm Management System 1.0. This affects an unknown part of the file /reviewInput.php. Performing manipulation of the argument rating results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.

    Published: 2 Sept 2025
    2.3
    Low

    CVE-2025-8662

    Last Modified: 4 Sept 2025

    OpenAM (OpenAM Consortium Edition) contains a vulnerability that may cause it to malfunction as a SAML IdP due to a tampered request.This issue affects OpenAM: from 14.0.0 through 14.0.1.

    Published: 2 Sept 2025
    7.8
    High

    CVE-2025-58178

    Last Modified: 15 Apr 2026

    SonarQube Server and Cloud is a static analysis solution for continuous code quality and security inspection. In versions 4 to 5.3.0, a command injection vulnerability was discovered in the SonarQube Scan GitHub Action that allows untrusted input arguments to be processed without proper sanitization. Arguments sent to the action are treated as shell expressions, allowing potential execution of arbitrary commands. A fix has been released in SonarQube Scan GitHub Action 5.3.1.

    Published: 2 Sept 2025
    6.5
    Medium

    CVE-2025-58162

    Last Modified: 3 Sept 2025

    MobSF is a mobile application security testing tool used. In version 4.4.0, an authenticated user who uploaded a specially prepared one.a, can write arbitrary files to any directory writable by the user of the MobSF process. This issue has been patched in version 4.4.1.

    Published: 2 Sept 2025
    1.3
    Low

    CVE-2025-58161

    Last Modified: 3 Sept 2025

    MobSF is a mobile application security testing tool used. In version 4.4.0, the GET /download/ route uses string path verification via os.path.commonprefix, which allows an authenticated user to download files outside the DWD_DIR download directory from "neighboring" directories whose absolute paths begin with the same prefix as DWD_DIR (e.g., .../downloads_bak, .../downloads.old). This is a Directory Traversal (escape) leading to a data leak. This issue has been patched in version 4.4.1.

    Published: 2 Sept 2025
    0.9
    Low

    CVE-2025-9806

    Last Modified: 31 Dec 2025

    A vulnerability was determined in Tenda F1202 1.2.0.9/1.2.0.14/1.2.0.20. Impacted is an unknown function of the file /etc_ro/shadow of the component Administrative Interface. This manipulation with the input Fireitup causes hard-coded credentials. The attack can only be executed locally. A high degree of complexity is needed for the attack. The exploitability is considered difficult. The exploit has been publicly disclosed and may be utilized.

    Published: 2 Sept 2025
    8.1
    High

    CVE-2025-57808

    Last Modified: 10 Sept 2025

    ESPHome is a system to control microcontrollers remotely through Home Automation systems. In version 2025.8.0 in the ESP-IDF platform, ESPHome's web_server authentication check can pass incorrectly when the client-supplied base64-encoded Authorization value is empty or is a substring of the correct value. This allows access to web_server functionality (including OTA, if enabled) without knowing any information about the correct username or password. This issue has been patched in version 2025.8.1.

    Published: 2 Sept 2025
    2.1
    Low

    CVE-2025-9805

    Last Modified: 14 Nov 2025

    A vulnerability was found in SimStudioAI sim up to 51b1e97fa22c48d144aef75f8ca31a74ad2cfed2. This issue affects some unknown processing of the file apps/sim/app/api/proxy/image/route.ts. The manipulation results in server-side request forgery. The attack may be performed from remote. The exploit has been made public and could be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. The patch is identified as 3424a338b763115f0269b209e777608e4cd31785. Applying a patch is advised to resolve this issue.

    Published: 2 Sept 2025
    6.2
    Medium

    CVE-2025-9714

    Last Modified: 12 May 2026

    Uncontrolled recursion in XPath evaluation in libxml2 up to and including version 2.9.14 allows a local attacker to cause a stack overflow via crafted expressions. XPath processing functions `xmlXPathRunEval`, `xmlXPathCtxtCompile`, and `xmlXPathEvalExpr` were resetting recursion depth to zero before making potentially recursive calls. When such functions were called recursively this could allow for uncontrolled recursion and lead to a stack overflow. These functions now preserve recursion depth across recursive calls, allowing recursion depth to be controlled.

    Published: 2 Sept 2025
    6.5
    Medium

    CVE-2024-48705

    Last Modified: 4 Sept 2025

    Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while resetting the password. This vulnerability is specifically found within the "set_sys_adm" function of the "adm.cgi" binary, and is due to improper santization of the user provided "newpass" field

    Published: 2 Sept 2025