CVE Feed

    Dashboard / CVE

    8.4
    High

    CVE-2025-46269

    Last Modified: 28 Nov 2025

    In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applications lack proper validation of user-supplied data when parsing VC6 files. This could lead to a heap-based buffer overflow. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.

    Published: 18 Aug 2025
    8.4
    High

    CVE-2025-52584

    Last Modified: 28 Nov 2025

    In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applications lack proper validation of user-supplied data when parsing XE files. This could lead to a heap-based buffer overflow. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.

    Published: 18 Aug 2025
    8.4
    High

    CVE-2025-41392

    Last Modified: 28 Nov 2025

    In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applications lack proper validation of user-supplied data when parsing AR files. This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.

    Published: 18 Aug 2025
    8.4
    High

    CVE-2025-53705

    Last Modified: 28 Nov 2025

    In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applications lack proper validation of user-supplied data when parsing CO files. This could lead to an out-of-bounds write. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.

    Published: 18 Aug 2025
    1.9
    Low

    CVE-2025-9119

    Last Modified: 15 Apr 2026

    A vulnerability was determined in Netis WF2419 1.2.29433. This vulnerability affects unknown code of the file /index.htm of the component Wireless Settings Page. This manipulation of the argument SSID with the input <img/src/onerror=prompt(8)> causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 18 Aug 2025
    8.8
    High

    CVE-2025-53192

    Last Modified: 4 Nov 2025

    ** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Expression/Command Delimiters vulnerability in Apache Commons OGNL. This issue affects Apache Commons OGNL: all versions. When using the API Ognl.getValue​, the OGNL engine parses and evaluates the provided expression with powerful capabilities, including accessing and invoking related methods, etc. Although OgnlRuntime attempts to restrict certain dangerous classes and methods (such as java.lang.Runtime) through a blocklist, these restrictions are not comprehensive. Attackers may be able to bypass the restrictions by leveraging class objects that are not covered by the blocklist and potentially achieve arbitrary code execution. As this project is retired, we do not plan to release a version that fixes this issue. Users are recommended to find an alternative or restrict access to the instance to trusted users. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

    Published: 18 Aug 2025
    8.5
    High

    CVE-2025-8098

    Last Modified: 26 Feb 2026

    An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local attacker to escalate privileges.

    Published: 18 Aug 2025
    7
    High

    CVE-2025-4371

    Last Modified: 15 Apr 2026

    A potential vulnerability was reported in the Lenovo 510 FHD and Performance FHD web cameras that could allow an attacker with physical access to write arbitrary firmware updates to the device over a USB connection.

    Published: 18 Aug 2025
    5.8
    Medium

    CVE-2025-55213

    Last Modified: 14 Jan 2026

    OpenFGA is a high-performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar. OpenFGA v1.9.3 to v1.9.4 ( openfga-0.2.40 <= Helm chart <= openfga-0.2.41, v1.9.3 <= docker <= v.1.9.4) are vulnerable to improper policy enforcement when certain Check and ListObject calls are executed. This vulnerability is fixed in 1.9.5.

    Published: 18 Aug 2025
    6.9
    Medium

    CVE-2025-43731

    Last Modified: 19 Dec 2025

    A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.8, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.16 and 7.4 GA through update 92 allows an remote authenticated user to inject JavaScript in message board threads and categories.

    Published: 18 Aug 2025
    9.3
    Critical

    CVE-2025-7693

    Last Modified: 15 Apr 2026

    A security issue exists due to improper handling of malformed CIP Forward Close packets during fuzzing. The controller enters a solid red Fault LED state and becomes unresponsive. Upon power cycle, the controller will enter recoverable fault where the MS LED and Fault LED become flashing red and reports fault code 0xF015. To recover, clear the fault.

    Published: 18 Aug 2025
    8.6
    High

    CVE-2025-55300

    Last Modified: 15 Apr 2026

    Komari is a lightweight, self-hosted server monitoring tool designed to provide a simple and efficient solution for monitoring server performance. Prior to 1.0.4-fix1, WebSocket upgrader has disabled origin checking, enabling Cross-Site WebSocket Hijacking (CSWSH) attacks against authenticated users. Any third party website can send requests to the terminal websocket endpoint with browser's cookies, resulting in remote code execution. This vulnerability is fixed in 1.0.4-fix1.

    Published: 18 Aug 2025
    9.4
    Critical

    CVE-2025-55299

    Last Modified: 15 Apr 2026

    VaulTLS is a modern solution for managing mTLS (mutual TLS) certificates. Prior to 0.9.1, user accounts created through the User web UI have an empty but not NULL password set, attackers can use this to login with an empty password. This is combined with that fact, that previously disabling the password based login only effected the frontend, but still allowed login via the API. This vulnerability is fixed in 0.9.1.

    Published: 18 Aug 2025
    5.5
    Medium

    CVE-2025-55296

    Last Modified: 10 Sept 2025

    librenms is a community-based GPL-licensed network monitoring system. A stored Cross-Site Scripting (XSS) vulnerability exists in LibreNMS (<= 25.6.0) in the Alert Template creation feature. This allows a user with the admin role to inject malicious JavaScript, which will be executed when the template is rendered, potentially compromising other admin accounts. This vulnerability is fixed in 25.8.0.

    Published: 18 Aug 2025
    9.4
    Critical

    CVE-2025-55293

    Last Modified: 17 Oct 2025

    Meshtastic is an open source mesh networking solution. Prior to v2.6.3, an attacker can send NodeInfo with a empty publicKey first, then overwrite it with a new key. First sending a empty key bypasses 'if (p.public_key.size > 0) {', clearing the existing publicKey (and resetting the size to 0) for a known node. Then a new key bypasses 'if (info->user.public_key.size > 0) {', and this malicious key is stored in NodeDB. This vulnerability is fixed in 2.6.3.

    Published: 18 Aug 2025
    7.1
    High

    CVE-2025-55291

    Last Modified: 15 Apr 2026

    Shaarli is a minimalist bookmark manager and link sharing service. Prior to 0.15.0, the input string in the cloud tag page is not properly sanitized. This allows the </title> tag to be prematurely closed, leading to a reflected Cross-Site Scripting (XSS) vulnerability. This vulnerability is fixed in 0.15.0.

    Published: 18 Aug 2025
    5.5
    Medium

    CVE-2025-55288

    Last Modified: 3 Sept 2025

    Genealogy is a family tree PHP application. Prior to 4.4.0, Authenticated Reflected Cross-Site Scripting (XSS) vulnerability was identified in the Genealogy application. Authenticated attackers could run arbitrary JavaScript in another user’s session, leading to session hijacking, data theft, and UI manipulation. This vulnerability is fixed in 4.4.0.

    Published: 18 Aug 2025
    5.4
    Medium

    CVE-2025-55287

    Last Modified: 3 Sept 2025

    Genealogy is a family tree PHP application. Prior to 4.4.0, Authenticated Stored Cross-Site Scripting (XSS) vulnerability was identified in the Genealogy application. Authenticated attackers could run arbitrary JavaScript in another user’s session, leading to session hijacking, data theft, and UI manipulation. This vulnerability is fixed in 4.4.0.

    Published: 18 Aug 2025
    2
    Low

    CVE-2025-3639

    Last Modified: 15 Apr 2026

    Liferay Portal 7.3.0 through 7.4.3.132, and Liferay DXP 2025.Q1 through 2025.Q1.6, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.15, 7.4 GA through update 92 and 7.3 GA through update 36 allows unauthenticated users with valid credentials to bypass the login process by changing the POST method to GET, once the site has MFA enabled.

    Published: 18 Aug 2025
    9.1
    Critical

    CVE-2025-55283

    Last Modified: 21 Aug 2025

    aiven-db-migrate is an Aiven database migration tool. Prior to 1.0.7, there is a privilege escalation vulnerability that allows elevation to superuser inside PostgreSQL databases during a migration from an untrusted source server. The vulnerability stems from psql executing commands embedded in a dump from the source server. This vulnerability is fixed in 1.0.7.

    Published: 18 Aug 2025
    9.1
    Critical

    CVE-2025-55282

    Last Modified: 21 Aug 2025

    aiven-db-migrate is an Aiven database migration tool. Prior to 1.0.7, there is a privilege escalation vulnerability that allows a user to elevate to superuser inside PostgreSQL databases during a migration from an untrusted source server. By exploiting a lack of search_path restriction, an attacker can override pg_catalog and execute untrusted operators as a superuser. This vulnerability is fixed in 1.0.7.

    Published: 18 Aug 2025
    2.7
    Low

    CVE-2025-54234

    Last Modified: 6 Nov 2025

    ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could lead to limited file system read. A high-privilege authenticated attacker can force the application to make arbitrary requests via injection of arbitrary URLs. Exploitation of this issue does not require user interaction.

    Published: 18 Aug 2025
    6.9
    Medium

    CVE-2025-55214

    Last Modified: 15 Apr 2026

    Copier library and CLI app for rendering project templates. From 7.1.0 to before 9.9.1, Copier suggests that it's safe to generate a project from a safe template, i.e. one that doesn't use unsafe features like custom Jinja extensions which would require passing the --UNSAFE,--trust flag. As it turns out, a safe template can currently write files outside the destination path where a project shall be generated or updated. This is possible when rendering a generated directory structure whose rendered path is either a relative parent path or an absolute path. Constructing such paths is possible using Copier's builtin pathjoin Jinja filter and its builtin _copier_conf.sep variable, which is the platform-native path separator. This way, a malicious template author can create a template that overwrites arbitrary files (according to the user's write permissions), e.g., to cause havoc. This vulnerability is fixed in 9.9.1.

    Published: 18 Aug 2025
    9
    Critical

    CVE-2025-55205

    Last Modified: 15 Apr 2026

    Capsule is a multi-tenancy and policy-based framework for Kubernetes. A namespace label injection vulnerability in Capsule v0.10.3 and earlier allows authenticated tenant users to inject arbitrary labels into system namespaces (kube-system, default, capsule-system), bypassing multi-tenant isolation and potentially accessing cross-tenant resources through TenantResource selectors. This vulnerability enables privilege escalation and violates the fundamental security boundaries that Capsule is designed to enforce. This vulnerability is fixed in 0.10.4.

    Published: 18 Aug 2025
    8.5
    High

    CVE-2025-55201

    Last Modified: 15 Apr 2026

    Copier library and CLI app for rendering project templates. Prior to 9.9.1, a safe template can currently read and write arbitrary files because Copier exposes a few pathlib.Path objects in the Jinja context which have unconstrained I/O methods. This effectively renders the security model w.r.t. filesystem access useless. This vulnerability is fixed in 9.9.1.

    Published: 18 Aug 2025
    9
    Critical

    CVE-2025-54117

    Last Modified: 20 Aug 2025

    NamelessMC is a free, easy to use & powerful website software for Minecraft servers. Cross-site scripting (XSS) vulnerability in NamelessMC before 2.2.3 allows remote authenticated attackers to inject arbitrary web script or HTML via the dashboard text editor component. This vulnerability is fixed in 2.2.4.

    Published: 18 Aug 2025
    7.2
    High

    CVE-2025-54421

    Last Modified: 20 Aug 2025

    NamelessMC is a free, easy to use & powerful website software for Minecraft servers. Cross-site scripting (XSS) vulnerability in NamelessMC before 2.2.4 allows remote authenticated attackers to inject arbitrary web script or HTML via the default_keywords crafted parameter. This vulnerability is fixed in 2.2.4.

    Published: 18 Aug 2025
    5.3
    Medium

    CVE-2025-54118

    Last Modified: 20 Aug 2025

    NamelessMC is a free, easy to use & powerful website software for Minecraft servers. Sensitive information disclosure in NamelessMC before 2.2.4 allows unauthenticated remote attacker to gain sensitive information such as absolute path of the source code via list parameter. This vulnerability is fixed in 2.2.4.

    Published: 18 Aug 2025
    6.2
    Medium

    CVE-2025-33100

    Last Modified: 21 Aug 2025

    IBM Concert Software 1.0.0 through 1.1.0 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.

    Published: 18 Aug 2025
    7.5
    High

    CVE-2025-33090

    Last Modified: 21 Aug 2025

    IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to cause a denial of service using a specially crafted regular expression that would cause excessive resource consumption.

    Published: 18 Aug 2025
    5.4
    Medium

    CVE-2025-27909

    Last Modified: 21 Aug 2025

    IBM Concert Software 1.0.0 through 1.1.0 uses cross-origin resource sharing (CORS) which could allow an attacker to carry out privileged actions as the domain name is not being limited to only trusted domains.

    Published: 18 Aug 2025
    5.9
    Medium

    CVE-2025-1759

    Last Modified: 21 Aug 2025

    IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.

    Published: 18 Aug 2025
    3.7
    Low

    CVE-2024-49827

    Last Modified: 21 Aug 2025

    IBM Concert Software 1.0.0 through 1.1.0 is vulnerable to excessive data exposure, allowing attackers to access sensitive information without proper filtering.

    Published: 18 Aug 2025
    8.8
    High

    CVE-2025-36120

    Last Modified: 26 Feb 2026

    IBM Storage Virtualize 8.4, 8.5, 8.6, and 8.7 could allow an authenticated user to escalate their privileges in an SSH session due to incorrect authorization checks to access resources.

    Published: 18 Aug 2025
    7.7
    High

    CVE-2025-4962

    Last Modified: 15 Apr 2026

    An Insecure Direct Object Reference (IDOR) vulnerability was identified in the `POST /v1/templates` endpoint of the Lunary API, affecting versions up to 0.8.8. This vulnerability allows authenticated users to create templates in another user's project by altering the `projectId` query parameter. The root cause of this issue is the absence of server-side validation to ensure that the authenticated user owns the specified `projectId`. The vulnerability has been addressed in version 1.9.23.

    Published: 18 Aug 2025
    4.8
    Medium

    CVE-2025-43732

    Last Modified: 19 Dec 2025

    Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.10, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.1 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.17 and 7.4 GA through update 92 is vulnerable to Insecure Direct Object Reference (IDOR) in the groupId parameter of the _com_liferay_roles_selector_web_portlet_RolesSelectorPortlet_groupId. When an organization administrator modifies this parameter id value, they can gain unauthorized access to user lists from other organizations.

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57723

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57724

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57725

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57717

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57718

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57719

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57720

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57721

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    Unknown

    CVE-2025-57722

    Last Modified: 19 Aug 2025

    Not used

    Published: 18 Aug 2025
    2.3
    Low

    CVE-2025-43733

    Last Modified: 16 Dec 2025

    A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.7 allows a remote authenticated attacker to inject JavaScript code via the content page's name field. This malicious payload is then reflected and executed within the user's browser when viewing the "document View Usages" page.

    Published: 18 Aug 2025
    5.9
    Medium

    CVE-2025-41242

    Last Modified: 15 Apr 2026

    Spring Framework MVC applications can be vulnerable to a “Path Traversal Vulnerability” when deployed on a non-compliant Servlet container. An application can be vulnerable when all the following are true: * the application is deployed as a WAR or with an embedded Servlet container * the Servlet container does not reject suspicious sequences https://jakarta.ee/specifications/servlet/6.1/jakarta-servlet-spec-6.1.html#uri-path-canonicalization * the application serves static resources https://docs.spring.io/spring-framework/reference/web/webmvc/mvc-config/static-resources.html#page-title  with Spring resource handling We have verified that applications deployed on Apache Tomcat or Eclipse Jetty are not vulnerable, as long as default security features are not disabled in the configuration. Because we cannot check exploits against all Servlet containers and configuration variants, we strongly recommend upgrading your application.

    Published: 18 Aug 2025
    7.1
    High

    CVE-2025-47206

    Last Modified: 12 Sept 2025

    An out-of-bounds write vulnerability has been reported to affect File Station 5. If a remote attacker gains a user account, they can then exploit the vulnerability to modify or corrupt memory. We have already fixed the vulnerability in the following version: File Station 5 5.5.6.4933 and later

    Published: 18 Aug 2025
    7
    High

    CVE-2025-5296

    Last Modified: 15 Apr 2026

    CWE-59: Improper Link Resolution Before File Access ('Link Following') vulnerability exists that could cause arbitrary data to be written to protected locations, potentially leading to escalation of privilege, arbitrary file corruption, exposure of application and system information or persistent denial of service when a low-privileged attacker tampers with the installation folder.

    Published: 18 Aug 2025
    8.7
    High

    CVE-2025-6625

    Last Modified: 15 Apr 2026

    CWE-20: Improper Input Validation vulnerability exists that could cause a Denial Of Service when specific crafted FTP command is sent to the device.

    Published: 18 Aug 2025