CVE Feed

    Dashboard / CVE

    8.7
    High

    CVE-2011-10020

    Last Modified: 15 Apr 2026

    Kaillera Server version 0.86 is vulnerable to a denial-of-service condition triggered by sending a malformed UDP packet after the initial handshake. Once a client sends a valid HELLO0.83 packet and receives a response, any subsequent malformed packet causes the server to crash and become unresponsive. This flaw stems from improper input validation in the server’s UDP packet handler, allowing unauthenticated remote attackers to disrupt service availability.

    Published: 20 Aug 2025
    9.3
    Critical

    CVE-2010-20059

    Last Modified: 15 Apr 2026

    FreeNAS 0.7.2 prior to revision 5543 includes an unauthenticated command‐execution backdoor in its web interface. The exec_raw.php script exposes a cmd parameter that is passed directly to the underlying shell without sanitation.

    Published: 20 Aug 2025
    8.4
    High

    CVE-2011-10030

    Last Modified: 15 Apr 2026

    Foxit PDF Reader <  4.3.1.0218 exposes a JavaScript API function, createDataObject(), that allows untrusted PDF content to write arbitrary files anywhere on disk. By embedding a malicious PDF that calls this API, an attacker can drop executables or scripts into privileged folders, leading to code execution the next time the system boots or the user logs in.

    Published: 20 Aug 2025
    8.5
    High

    CVE-2010-20045

    Last Modified: 15 Apr 2026

    FileWrangler <= 5.30 suffers from a stack-based buffer overflow vulnerability when parsing directory listings from an FTP server. A malicious server can send an overlong folder name in response to a LIST command, triggering memory corruption during client-side rendering. Exploitation requires passive user interaction—simply connecting to the server—without further input. Successful exploitation may lead to arbitrary code execution.

    Published: 20 Aug 2025
    2
    Low

    CVE-2025-9233

    Last Modified: 11 Sept 2025

    A security vulnerability has been detected in Scada-LTS up to 2.7.8.1. Impacted is an unknown function of the file view_edit.shtm. The manipulation of the argument Name leads to cross site scripting. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.

    Published: 20 Aug 2025
    8.7
    High

    CVE-2009-10005

    Last Modified: 15 Jul 2026

    ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose the mimencode binary via a CGI endpoint, allowing unauthenticated attackers to retrieve arbitrary files from the filesystem. By crafting a POST request to /cgi-bin/ck/mimencode with traversal and output parameters, attackers can read sensitive files such as /etc/passwd outside the webroot.

    Published: 20 Aug 2025
    5.1
    Medium

    CVE-2025-55751

    Last Modified: 15 Apr 2026

    OnboardLite is the result of the Influx Initiative, our vision for an improved student organization lifecycle at the University of Central Florida. An attacker can craft a link to the trusted application that, when visited, redirects the user to a malicious external site. This enables phishing, credential theft, malware delivery, and trust abuse. Any version with commit hash 6cca19e or later implements jwt signing for the redirect url parameter.

    Published: 20 Aug 2025
    8.4
    High

    CVE-2011-10027

    Last Modified: 15 Apr 2026

    AOL Desktop 9.6 contains a buffer overflow vulnerability in its Tool\rich.rct component when parsing .rtx files. By embedding an overly long string in a hyperlink tag, an attacker can trigger a stack-based buffer overflow due to the use of unsafe strcpy operations. This allows remote attackers to execute arbitrary code when a victim opens a malicious .rtx file. AOL Desktop is end-of-life and no longer supported. Users are encouraged to migrate to AOL Desktop Gold or alternative platforms.

    Published: 20 Aug 2025
    8.7
    High

    CVE-2025-55732

    Last Modified: 22 Aug 2025

    Frappe is a full-stack web application framework. Prior to 15.74.2 and 14.96.15, an attacker could implement SQL injection through specially crafted requests, allowing malicious people to access sensitive information. This vulnerability is a bypass of the official patch released for CVE-2025-52895. This vulnerability is fixed in 15.74.2 and 14.96.15.

    Published: 20 Aug 2025
    6.3
    Medium

    CVE-2025-55731

    Last Modified: 22 Aug 2025

    Frappe is a full-stack web application framework. A carefully crafted request could extract data that the user would normally not have access to, via SQL injection. This vulnerability is fixed in 15.74.2 and 14.96.15.

    Published: 20 Aug 2025
    5.4
    Medium

    CVE-2025-1142

    Last Modified: 3 Sept 2025

    IBM Edge Application Manager 4.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.

    Published: 20 Aug 2025
    6.1
    Medium

    CVE-2025-1139

    Last Modified: 3 Sept 2025

    IBM Edge Application Manager 4.5 could allow a local user to read or modify resources that they should not have authorization to access due to incorrect permission assignment.

    Published: 20 Aug 2025
    6.5
    Medium

    CVE-2025-36114

    Last Modified: 1 Dec 2025

    IBM QRadar SOAR Plugin App 1.0.0 through 5.6.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system.

    Published: 20 Aug 2025
    7.1
    High

    CVE-2025-43748

    Last Modified: 26 Feb 2026

    Insufficient CSRF protection for omni-administrator users in Liferay Portal 7.0.0 through 7.4.3.119, and Liferay DXP 2024.Q1.1 through 2024.Q1.6, 2023.Q4.0 through 2023.Q4.9, 2023.Q3.1 through 2023.Q3.9, 7.4 GA through update 92, 7.3 GA through update 36, and older unsupported versions allows attackers to execute Cross-Site Request Forgery

    Published: 20 Aug 2025
    1
    Low

    CVE-2025-8448

    Last Modified: 15 Apr 2026

    CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause unauthorized access to sensitive credential data when an attacker is able to capture local SMB traffic between a valid user within the BMS network and the vulnerable products.

    Published: 20 Aug 2025
    4.1
    Medium

    CVE-2025-8449

    Last Modified: 15 Apr 2026

    CWE-400: Uncontrolled Resource Consumption vulnerability exists that could cause a denial of service when an authenticated user sends a specially crafted request to a specific endpoint from within the BMS network.

    Published: 20 Aug 2025
    4.9
    Medium

    CVE-2025-54927

    Last Modified: 15 Apr 2026

    CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause unauthorized access to sensitive files when an authenticated attackers uses a crafted path input that is processed by the system.

    Published: 20 Aug 2025
    7.2
    High

    CVE-2025-54926

    Last Modified: 15 Apr 2026

    CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause remote code execution when an authenticated attacker with admin privileges uploads a malicious file over HTTP which then gets executed.

    Published: 20 Aug 2025
    7.5
    High

    CVE-2025-54925

    Last Modified: 15 Apr 2026

    CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized access to sensitive data when an attacker configures the application to access a malicious url.

    Published: 20 Aug 2025
    7.5
    High

    CVE-2025-54924

    Last Modified: 15 Apr 2026

    CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized access to sensitive data when an attacker sends a specially crafted document to a vulnerable endpoint.

    Published: 20 Aug 2025
    8.7
    High

    CVE-2025-54923

    Last Modified: 15 Apr 2026

    CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause remote code execution and compromise of system integrity when authenticated users send crafted data to a network-exposed service that performs unsafe deserialization.

    Published: 20 Aug 2025
    9.3
    Critical

    CVE-2025-9074

    Last Modified: 15 Apr 2026

    A vulnerability was identified in Docker Desktop that allows local running Linux containers to access the Docker Engine API via the configured Docker subnet, at 192.168.65.7:2375 by default. This vulnerability occurs with or without Enhanced Container Isolation (ECI) enabled, and with or without the "Expose daemon on tcp://localhost:2375 without TLS" option enabled. This can lead to execution of a wide range of privileged commands to the engine API, including controlling other containers, creating new ones, managing images etc. In some circumstances (e.g. Docker Desktop for Windows with WSL backend) it also allows mounting the host drive with the same privileges as the user running Docker Desktop.

    Published: 20 Aug 2025
    7.2
    High

    CVE-2025-31355

    Last Modified: 3 Nov 2025

    A firmware update vulnerability exists in the Firmware Signature Validation functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted malicious file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 20 Aug 2025
    8.1
    High

    CVE-2025-24322

    Last Modified: 3 Nov 2025

    An unsafe default authentication vulnerability exists in the Initial Setup Authentication functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted network request can lead to arbitrary code execution. An attacker can browse to the device to trigger this vulnerability.

    Published: 20 Aug 2025
    7.5
    High

    CVE-2025-24496

    Last Modified: 3 Nov 2025

    An information disclosure vulnerability exists in the /goform/getproductInfo functionality of Tenda AC6 V5.0 V02.03.01.110. Specially crafted network packets can lead to a disclosure of sensitive information. An attacker can send packets to trigger this vulnerability.

    Published: 20 Aug 2025
    9.8
    Critical

    CVE-2025-27129

    Last Modified: 3 Nov 2025

    An authentication bypass vulnerability exists in the HTTP authentication functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted HTTP request can lead to arbitrary code execution. An attacker can send packets to trigger this vulnerability.

    Published: 20 Aug 2025
    8.6
    High

    CVE-2025-30256

    Last Modified: 3 Nov 2025

    A denial of service vulnerability exists in the HTTP Header Parsing functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted series of HTTP requests can lead to a reboot. An attacker can send multiple network packets to trigger this vulnerability.

    Published: 20 Aug 2025
    8.1
    High

    CVE-2025-32010

    Last Modified: 3 Nov 2025

    A stack-based buffer overflow vulnerability exists in the Cloud API functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted HTTP response can lead to arbitrary code execution. An attacker can send an HTTP response to trigger this vulnerability.

    Published: 20 Aug 2025
    4.6
    Medium

    CVE-2025-54175

    Last Modified: 8 Sept 2025

    QuickCMS.EXT is vulnerable to Reflected XSS in sFileName parameter in thumbnail viewer functionality.  An attacker can craft a malicious URL that results in arbitrary JavaScript execution in the victim's browser when opened. The vendor was notified early about this vulnerability, but didn't respond with the details of vulnerability or vulnerable version range. Only version 6.8 was tested and confirmed as vulnerable, other versions were not tested and might also be vulnerable.

    Published: 20 Aug 2025
    5.1
    Medium

    CVE-2025-54174

    Last Modified: 8 Sept 2025

    QuickCMS is vulnerable to Cross-Site Request Forgery in article creation functionality. Malicious attacker can craft special website, which when visited by the admin, will automatically send a POST request creating a malicious article with content defined by the attacker. The vendor was notified early about this vulnerability, but didn't respond with the details of vulnerability or vulnerable version range. Only version 6.8 was tested and confirmed as vulnerable, other versions were not tested and might also be vulnerable.

    Published: 20 Aug 2025
    8.4
    High

    CVE-2025-8453

    Last Modified: 15 Apr 2026

    CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and arbitrary code execution when a privileged engineer user with console access modifies a configuration file used by a root-level daemon to execute custom scripts.

    Published: 20 Aug 2025
    4.8
    Medium

    CVE-2025-54172

    Last Modified: 8 Sept 2025

    QuickCMS is vulnerable to Stored XSS in sTitle parameter in page editor functionality. Malicious attacker with admin privileges can inject arbitrary HTML and JS into website, which will be rendered/executed when visiting edited page. Regular admin user is not able to inject any JS scripts into the page. The vendor was notified early about this vulnerability, but didn't respond with the details of vulnerability or vulnerable version range. Only version 6.8 was tested and confirmed as vulnerable, other versions were not tested and might also be vulnerable.

    Published: 20 Aug 2025
    5.3
    Medium

    CVE-2025-43749

    Last Modified: 16 Dec 2025

    Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.1, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.14 and 7.4 GA through update 92 allows unauthenticated users (guests) to access via URL files uploaded in the form and stored in document_library

    Published: 20 Aug 2025
    5.1
    Medium

    CVE-2025-43750

    Last Modified: 18 Dec 2025

    Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.1, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.14 and 7.4 GA through update 92 allows remote unauthenticated users (guests) to upload files via the form attachment field without proper validation, enabling extension obfuscation and bypassing MIME type checks.

    Published: 20 Aug 2025
    5.1
    Medium

    CVE-2025-43741

    Last Modified: 15 Dec 2025

    A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.3, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.14 and 7.4 GA through update 92 allows an remote authenticated attacker to inject JavaScrip in the _com_liferay_users_admin_web_portlet_UsersAdminPortlet_assetTagNames parameter

    Published: 20 Aug 2025
    6.9
    Medium

    CVE-2025-43742

    Last Modified: 16 Dec 2025

    A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.3, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.14 and 7.4 GA through update 92 allows an remote non-authenticated attacker to inject JavaScript in web content for friendly urls.

    Published: 20 Aug 2025
    5.4
    Medium

    CVE-2025-8102

    Last Modified: 21 Apr 2026

    The Easy Digital Downloads plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.5.0. This is due to missing nonce validations in the edd_sendwp_disconnect() and edd_sendwp_remote_install() functions. This makes it possible for unauthenticated attackers to deactivate or download and activate the SendWP plugin via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 20 Aug 2025
    Unknown

    CVE-2025-9173

    Last Modified: 8 Jan 2026

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The file upload in include/service/media.php verifies the file extension based on a list defined in include/lib/option.php. This whitelist prevents unrestricted uploads (e.g. PHP files). Therefore, the attack possibility is just of theoretical nature.

    Published: 20 Aug 2025
    4.3
    Medium

    CVE-2025-57734

    Last Modified: 21 Aug 2025

    In JetBrains TeamCity before 2025.07.1 aWS credentials were exposed in Docker script files

    Published: 20 Aug 2025
    5.5
    Medium

    CVE-2025-57733

    Last Modified: 21 Aug 2025

    In JetBrains TeamCity before 2025.07.1 sMTP injection was possible allowing modification of email content

    Published: 20 Aug 2025
    7.5
    High

    CVE-2025-57732

    Last Modified: 26 Feb 2026

    In JetBrains TeamCity before 2025.07.1 privilege escalation was possible due to incorrect directory ownership

    Published: 20 Aug 2025
    8.7
    High

    CVE-2025-57731

    Last Modified: 21 Aug 2025

    In JetBrains YouTrack before 2025.2.92387 stored XSS was possible via Mermaid diagram content

    Published: 20 Aug 2025
    5.2
    Medium

    CVE-2025-57730

    Last Modified: 30 Sept 2025

    In JetBrains IntelliJ IDEA before 2025.2 hTML injection was possible via Remote Development feature

    Published: 20 Aug 2025
    6.5
    Medium

    CVE-2025-57729

    Last Modified: 26 Feb 2026

    In JetBrains IntelliJ IDEA before 2025.2 unexpected plugin startup was possible due to automatic LSP server start

    Published: 20 Aug 2025
    6.5
    Medium

    CVE-2025-57728

    Last Modified: 21 Aug 2025

    In JetBrains IntelliJ IDEA before 2025.2 improper access control allowed Code With Me guest to discover hidden files

    Published: 20 Aug 2025
    4.7
    Medium

    CVE-2025-57727

    Last Modified: 21 Aug 2025

    In JetBrains IntelliJ IDEA before 2025.2 credentials disclosure was possible via remote reference

    Published: 20 Aug 2025
    6.3
    Medium

    CVE-2024-39954

    Last Modified: 21 Aug 2025

    CWE-918 Server-Side Request Forgery (SSRF) in eventmesh-runtime module in WebhookUtil.java on windows\linux\mac os e.g. allows the attacker can abuse functionality on the server to read or update internal resources. Users are recommended to upgrade to version 1.12.0 or use the master branch , which fixes this issue.

    Published: 20 Aug 2025
    5.3
    Medium

    CVE-2025-9229

    Last Modified: 15 Apr 2026

    Information disclosure vulnerability in error handling in MiR software prior to version 3.0.0 allows unauthenticated attackers to view detailed error information, such as file paths and other data, via access to verbose error pages.

    Published: 20 Aug 2025
    7.5
    High

    CVE-2025-5261

    Last Modified: 5 Jun 2026

    Authorization Bypass Through User-Controlled Key vulnerability in Pik Online Yazılım Çözümleri A.Ş. Pik Online allows Exploitation of Trusted Identifiers. This issue affects Pik Online: before 3.1.5.

    Published: 20 Aug 2025
    4.3
    Medium

    CVE-2025-9228

    Last Modified: 15 Apr 2026

    MiR software versions prior to version 3.0.0 have insufficient authorization controls when creating text notes, allowing low-privilege users to create notes which are intended only for administrative users.

    Published: 20 Aug 2025