CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2025-8891

    Last Modified: 18 Dec 2025

    The OceanWP theme for WordPress is vulnerable to Cross-Site Request Forgery in versions 4.0.9 to 4.1.1. This is due to missing or incorrect nonce validation on the oceanwp_notice_button_click() function. This makes it possible for unauthenticated attackers to install the Ocean Extra plugin via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 13 Aug 2025
    8.8
    High

    CVE-2025-8882

    Last Modified: 26 Feb 2026

    Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

    Published: 13 Aug 2025
    6.5
    Medium

    CVE-2025-8881

    Last Modified: 14 Aug 2025

    Inappropriate implementation in File Picker in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

    Published: 13 Aug 2025
    8.8
    High

    CVE-2025-8901

    Last Modified: 26 Sept 2025

    Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

    Published: 13 Aug 2025
    8.8
    High

    CVE-2025-8880

    Last Modified: 26 Feb 2026

    Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

    Published: 13 Aug 2025
    8.8
    High

    CVE-2025-8879

    Last Modified: 26 Feb 2026

    Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption via a curated set of gestures. (Chromium security severity: High)

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-4410

    Last Modified: 15 Apr 2026

    A buffer overflow vulnerability exists in the module SetupUtility. An attacker with local privileged access can exploit this vulnerability by executeing arbitrary code.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-4277

    Last Modified: 15 Apr 2026

    Tcg2Smm has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM level.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-4276

    Last Modified: 15 Apr 2026

    UsbCoreDxe has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM level.

    Published: 13 Aug 2025
    5.4
    Medium

    CVE-2025-52392

    Last Modified: 15 Apr 2026

    Soosyze CMS 2.0 allows brute-force login attacks via the /user/login endpoint due to missing rate-limiting and lockout mechanisms. An attacker can repeatedly submit login attempts without restrictions, potentially gaining unauthorized administrative access. This vulnerability corresponds to CWE-307: Improper Restriction of Excessive Authentication Attempts.

    Published: 13 Aug 2025
    5.4
    Medium

    CVE-2025-52386

    Last Modified: 15 Apr 2026

    CycloneDX Sunshine v0.9 is vulnerable to CSV Formula Injection via a crafted JSON file

    Published: 13 Aug 2025
    6.1
    Medium

    CVE-2025-50690

    Last Modified: 15 Apr 2026

    A Cross-Site Scripting (XSS) vulnerability exists in SpatialReference.org (OSGeo/spatialreference.org) versions prior to 2025-05-17 (commit 2120adfa17ddd535bd0f539e6c4988fa3a2cb491). The vulnerability is caused by improper handling of user input in the search query parameter. An attacker can craft a specially formed URL with malicious JavaScript code, which is then reflected back and executed in the victim's browser. This flaw allows an attacker to execute arbitrary JavaScript in the context of the victim's session, potentially leading to session hijacking, phishing attacks, data theft, or redirection to malicious sites. The issue is exposed on publicly accessible pages, making it exploitable by an unauthenticated attacker.

    Published: 13 Aug 2025
    9.1
    Critical

    CVE-2025-50251

    Last Modified: 15 Apr 2026

    Server side request forgery (SSRF) vulnerability in makeplane plane 0.23.1 via the password recovery.

    Published: 13 Aug 2025
    9.8
    Critical

    CVE-2025-43982

    Last Modified: 15 Apr 2026

    Shenzhen Tuoshi NR500-EA RG500UEAABxCOMSLICv3.4.2731.16.43 devices enable the SSH service by default. There is a hidden hard-coded root account that cannot be disabled in the GUI.

    Published: 13 Aug 2025
    7.8
    High

    CVE-2025-8941

    Last Modified: 15 Apr 2026

    A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a "complete" fix for CVE-2025-6020.

    Published: 13 Aug 2025
    9.8
    Critical

    CVE-2025-52385

    Last Modified: 15 Apr 2026

    An issue in Studio 3T v.2025.1.0 and before allows a remote attacker to execute arbitrary code via a crafted payload to the child_process module

    Published: 13 Aug 2025
    6.1
    Medium

    CVE-2025-51691

    Last Modified: 15 Apr 2026

    Cross-Site Scripting (XSS) vulnerability found in MarkTwo commit e3a1d3f90cce4ea9c26efcbbf3a1cbfb9dcdb298 (May 2025) allows a remote attacker to execute arbitrary code via a crafted script input to the editor interface. The application does not properly sanitize user-supplied Markdown before rendering it. Successful exploitation could lead to session hijacking, credential theft, or arbitrary client-side code execution in the context of the victim's browser.

    Published: 13 Aug 2025
    9.8
    Critical

    CVE-2025-51452

    Last Modified: 14 Aug 2025

    In TOTOLINK A7000R firmware 9.1.0u.6115_B20201022, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

    Published: 13 Aug 2025
    6.5
    Medium

    CVE-2025-50946

    Last Modified: 17 Oct 2025

    OS Command Injection in Olivetin 2025.4.22 Custom Themes via the ParseRequestURI function in service/internal/executor/arguments.go.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50635

    Last Modified: 15 Aug 2025

    A null pointer dereference vulnerability was discovered in Netis WF2780 v2.2.35445. The vulnerability exists in the FUN_0048a728 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the CONTENT_LENGTH variable, causing the program to crash and potentially leading to a denial-of-service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50617

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_0046ed68 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wps_set in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50616

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_0046f984 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_advanced_set in the payload, which can cause the program to crash and lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    6.1
    Medium

    CVE-2025-45314

    Last Modified: 18 Aug 2025

    A cross-site scripting (XSS) vulnerability in the /Calendar endpoint of hortusfox-web v4.4 allows attackers to execute arbitrary JavaScript in the context of a user's browser via a crafted payload injected into the add function.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50608

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00471994 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_base_set in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50611

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00473154 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_sec_set_5g and wl_sec_rp_set_5g in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50614

    Last Modified: 14 Aug 2025

    A buffer overflow vulnerability has been discovered in the Netis WF2880 v2.1.40207 in the FUN_0047151c function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wds_set in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50615

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00470c50 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_mac_filter_set in the payload, which can cause the program to crash and lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    6.5
    Medium

    CVE-2025-43989

    Last Modified: 15 Apr 2026

    The /goform/formJsonAjaxReq POST endpoint of Shenzhen Tuoshi NR500-EA RG500UEAABxCOMSLICv3.4.2731.16.43 devices mishandles the set_timesetting action with the ntpserver0 parameter, which is used in a system command. By setting a username=admin cookie (bypassing normal session checks), an unauthenticated attacker can use that parameter to execute arbitrary OS commands.

    Published: 13 Aug 2025
    9.8
    Critical

    CVE-2025-51451

    Last Modified: 26 Sept 2025

    In TOTOLINK EX1200T firmware 4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-48989

    Last Modified: 12 May 2026

    Improper Resource Shutdown or Release vulnerability in Apache Tomcat made Tomcat vulnerable to the made you reset attack. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.9, from 10.1.0-M1 through 10.1.43 and from 9.0.0.M1 through 9.0.107. Older, EOL versions may also be affected. Users are recommended to upgrade to one of versions 11.0.10, 10.1.44 or 9.0.108 which fix the issue.

    Published: 13 Aug 2025
    9.8
    Critical

    CVE-2025-43986

    Last Modified: 15 Apr 2026

    An issue was discovered on KuWFi GC111 GC111-GL-LM321_V3.0_20191211 devices. The TELNET service is enabled by default and exposed over the WAN interface without authentication.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-43988

    Last Modified: 15 Apr 2026

    KuWFi 5G01-X55 FL2020_V0.0.12 devices expose an unauthenticated API endpoint (ajax_get.cgi), allowing remote attackers to retrieve sensitive configuration data, including admin credentials.

    Published: 13 Aug 2025
    6.1
    Medium

    CVE-2025-45313

    Last Modified: 15 Aug 2025

    A cross-site scripting (XSS) vulnerability in the /tasks endpoint of hortusfox-web v4.4 allows attackers to execute arbitrary JavaScript in the context of a user's browser via a crafted payload injected into the title parameter.

    Published: 13 Aug 2025
    5.4
    Medium

    CVE-2025-45315

    Last Modified: 18 Aug 2025

    A cross-site scripting (XSS) vulnerability in the /controller/admin.php endpoint of hortusfox-web v4.4 allows attackers to execute arbitrary JavaScript in the context of a user's browser via a crafted payload injected into the email parameter.

    Published: 13 Aug 2025
    6.1
    Medium

    CVE-2025-45316

    Last Modified: 18 Aug 2025

    A cross-site scripting (XSS) vulnerability in the TextBlockModule.php component of hortusfox-web v4.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the name parameter.

    Published: 13 Aug 2025
    6.5
    Medium

    CVE-2025-45317

    Last Modified: 15 Aug 2025

    A zip slip vulnerability in the /modules/ImportModule.php component of hortusfox-web v4.4 allows attackers to execute arbitrary code via a crafted archive.

    Published: 13 Aug 2025
    9.8
    Critical

    CVE-2025-50594

    Last Modified: 15 Apr 2026

    An issue was discovered in /Code/Websites/DanpheEMR/Controllers/Settings/SecuritySettingsController.cs in Danphe Health Hospital Management System EMR 3.2 allowing attackers to reset any account password.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50609

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the Function_00465620 of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of specify_parame in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50610

    Last Modified: 15 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00476598 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_base_set_5g in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50612

    Last Modified: 18 Aug 2025

    A buffer overflow vulnerability has been discovered in the Netis WF2880 v2.1.40207 in the FUN_004743f8 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_sec_set in the payload, which may cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    7.5
    High

    CVE-2025-50613

    Last Modified: 18 Aug 2025

    A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00475e1c function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wds_key_wep in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.

    Published: 13 Aug 2025
    9.6
    Critical

    CVE-2025-49457

    Last Modified: 26 Feb 2026

    Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access

    Published: 12 Aug 2025
    6.2
    Medium

    CVE-2025-49456

    Last Modified: 8 Sept 2025

    Race condition in the installer for certain Zoom Clients for Windows may allow an unauthenticated user to impact application integrity via local access.

    Published: 12 Aug 2025
    5.5
    Medium

    CVE-2025-54238

    Last Modified: 14 Aug 2025

    Dimension versions 4.1.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025
    5.5
    Medium

    CVE-2025-54233

    Last Modified: 14 Aug 2025

    Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025
    7.8
    High

    CVE-2025-54230

    Last Modified: 26 Feb 2026

    Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025
    7.8
    High

    CVE-2025-54232

    Last Modified: 26 Feb 2026

    Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025
    7.8
    High

    CVE-2025-54231

    Last Modified: 26 Feb 2026

    Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025
    7.8
    High

    CVE-2025-54229

    Last Modified: 26 Feb 2026

    Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025
    7.8
    High

    CVE-2025-54222

    Last Modified: 26 Feb 2026

    Substance3D - Stager versions 3.1.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 12 Aug 2025