CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2025-54554

    Last Modified: 15 Apr 2026

    tiaudit in Tera Insights tiCrypt before 2025-07-17 allows unauthenticated REST API requests that reveal sensitive information about the underlying SQL queries and database structure.

    Published: 4 Aug 2025
    8.4
    High

    CVE-2025-51726

    Last Modified: 15 Apr 2026

    CyberGhostVPNSetup.exe (Windows installer) is signed using the weak cryptographic hash algorithm SHA-1, which is vulnerable to collision attacks. This allows a malicious actor to craft a fake installer with a forged SHA-1 certificate that may still be accepted by Windows signature verification mechanisms, particularly on systems without strict SmartScreen or trust policy enforcement. Additionally, the installer lacks High Entropy Address Space Layout Randomization (ASLR), as confirmed by BinSkim (BA2015 rule) and repeated WinDbg analysis. The binary consistently loads into predictable memory ranges, increasing the success rate of memory corruption exploits. These two misconfigurations, when combined, significantly lower the bar for successful supply-chain style attacks or privilege escalation through fake installers.

    Published: 4 Aug 2025
    9.8
    Critical

    CVE-2025-50341

    Last Modified: 15 Apr 2026

    A Boolean-based SQL injection vulnerability was discovered in Axelor 5.2.4 via the _domain parameter. An attacker can manipulate the SQL query logic and determine true/false conditions, potentially leading to data exposure or further exploitation.

    Published: 4 Aug 2025
    5.3
    Medium

    CVE-2025-5988

    Last Modified: 15 Apr 2026

    A flaw was found in the Ansible aap-gateway. Cross-site request forgery (CSRF) origin checking is not done on requests from the gateway to external components, such as the controller, hub, and eda.

    Published: 4 Aug 2025
    6.4
    Medium

    CVE-2025-54962

    Last Modified: 15 Apr 2026

    /edit-user in webserver in OpenPLC Runtime 3 through 9cd8f1b allows authenticated users to upload arbitrary files (such as .html or .svg), and these are then publicly accessible under the /static URI.

    Published: 4 Aug 2025
    9
    Critical

    CVE-2025-44954

    Last Modified: 7 Aug 2025

    RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build has a hardcoded SSH private key for a root-equivalent user account.

    Published: 4 Aug 2025
    4.3
    Medium

    CVE-2025-50340

    Last Modified: 15 Apr 2026

    An Insecure Direct Object Reference (IDOR) vulnerability was discovered in SOGo Webmail thru 5.6.0, allowing an authenticated user to send emails on behalf of other users by manipulating a user-controlled identifier in the email-sending request. The server fails to verify whether the authenticated user is authorized to use the specified sender identity, resulting in unauthorized message delivery as another user. This can lead to impersonation, phishing, or unauthorized communication within the system. NOTE: this is disputed by the Supplier because the only effective way to prevent this sender spoofing is on the SMTP server, not within a client such as SOGo.

    Published: 4 Aug 2025
    9.8
    Critical

    CVE-2025-52239

    Last Modified: 14 Aug 2025

    An arbitrary file upload vulnerability in ZKEACMS v4.1 allows attackers to execute arbitrary code via a crafted file.

    Published: 4 Aug 2025
    8.1
    High

    CVE-2025-51534

    Last Modified: 20 Sept 2025

    A cross-site scripting (XSS) vulnerability in Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name field.

    Published: 4 Aug 2025
    8.5
    High

    CVE-2025-44957

    Last Modified: 3 Nov 2025

    Ruckus SmartZone (SZ) before 6.1.2p3 Refresh Build allows authentication bypass via a valid API key and crafted HTTP headers.

    Published: 4 Aug 2025
    8.5
    High

    CVE-2025-44960

    Last Modified: 3 Nov 2025

    RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build allows OS command injection via a certain parameter in an API route.

    Published: 4 Aug 2025
    9.9
    Critical

    CVE-2025-44961

    Last Modified: 3 Nov 2025

    In RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build, OS command injection can occur via an IP address field provided by an authenticated user.

    Published: 4 Aug 2025
    6.5
    Medium

    CVE-2024-45183

    Last Modified: 27 Oct 2025

    An issue was discovered in Samsung Mobile Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, and 2400. A lack of a JPEG length check leads to an out-of-bound write.

    Published: 4 Aug 2025
    9.6
    Critical

    CVE-2025-50754

    Last Modified: 15 Apr 2026

    Unisite CMS version 5.0 contains a stored Cross-Site Scripting (XSS) vulnerability in the "Report" functionality. A malicious script submitted by an attacker is rendered in the admin panel when viewed by an administrator. This allows attackers to hijack the admin session and, by leveraging the template editor, upload and execute a PHP web shell on the server, leading to full remote code execution.

    Published: 4 Aug 2025
    7.3
    High

    CVE-2025-26065

    Last Modified: 3 Nov 2025

    A cross-site scripting (XSS) vulnerability in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the name of a visiting Wi-Fi network.

    Published: 4 Aug 2025
    8.6
    High

    CVE-2025-44643

    Last Modified: 15 Apr 2026

    Certain Draytek products are affected by Insecure Configuration. This affects AP903 v1.4.18 and AP912C v1.4.9 and AP918R v1.4.9. The setting of the password property in the ripd.conf configuration file sets a hardcoded weak password, posing a security risk. An attacker with network access could exploit this to gain unauthorized control over the routing daemon, potentially altering network routes or intercepting traffic.

    Published: 4 Aug 2025
    8.8
    High

    CVE-2025-44955

    Last Modified: 3 Nov 2025

    RUCKUS Network Director (RND) before 4.5 allows jailed users to obtain root access vis a weak, hardcoded password.

    Published: 4 Aug 2025
    5.3
    Medium

    CVE-2025-44958

    Last Modified: 3 Nov 2025

    RUCKUS Network Director (RND) before 4.5 stores passwords in a recoverable format.

    Published: 4 Aug 2025
    5
    Medium

    CVE-2025-44962

    Last Modified: 3 Nov 2025

    RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build allows ../ directory traversal to read files.

    Published: 4 Aug 2025
    9
    Critical

    CVE-2025-44963

    Last Modified: 3 Nov 2025

    RUCKUS Network Director (RND) before 4.5 allows spoofing of an administrator JWT by an attacker who knows the hardcoded value of a certain secret key.

    Published: 4 Aug 2025
    9.9
    Critical

    CVE-2025-46093

    Last Modified: 7 Aug 2025

    LiquidFiles before 4.1.2 supports FTP SITE CHMOD for mode 6777 (setuid and setgid), which allows FTPDrop users to execute arbitrary code as root by leveraging the Actionscript feature and the sudoers configuration.

    Published: 4 Aug 2025
    3.8
    Low

    CVE-2025-46094

    Last Modified: 7 Aug 2025

    LiquidFiles before 4.1.2 allows directory traversal by configuring the pathname of a local executable file as an Actionscript.

    Published: 4 Aug 2025
    6.5
    Medium

    CVE-2025-46206

    Last Modified: 2 Oct 2025

    An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the `strip_outline()` function enters infinite recursion

    Published: 4 Aug 2025
    2.9
    Low

    CVE-2025-50422

    Last Modified: 15 Apr 2026

    Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cairo-ft-font.c.

    Published: 4 Aug 2025
    6.5
    Medium

    CVE-2025-50420

    Last Modified: 9 Oct 2025

    An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an infinite recursion via supplying a crafted PDF file. This can lead to a Denial of Service (DoS).

    Published: 4 Aug 2025
    9.8
    Critical

    CVE-2025-51390

    Last Modified: 15 Aug 2025

    TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a command injection vulnerability via the pin parameter in the setWiFiWpsConfig function.

    Published: 4 Aug 2025
    9.8
    Critical

    CVE-2025-51387

    Last Modified: 9 Oct 2025

    The GitKraken Desktop 10.8.0 and 11.1.0 is susceptible to code injection due to misconfigured Electron Fuses. Specifically, the following insecure settings were observed: RunAsNode is enabled and EnableNodeCliInspectArguments is not disabled. These configurations allow the application to be executed in Node.js mode, enabling attackers to pass arguments that result in arbitrary code execution.

    Published: 4 Aug 2025
    9.8
    Critical

    CVE-2025-51536

    Last Modified: 23 Sept 2025

    Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a hardcoded Administrator password.

    Published: 4 Aug 2025
    9.1
    Critical

    CVE-2025-51535

    Last Modified: 20 Sept 2025

    Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a SQL injection vulnerability.

    Published: 4 Aug 2025
    7.7
    High

    CVE-2025-53394

    Last Modified: 15 Apr 2026

    Paramount Macrium Reflect through 2025-06-26 allows attackers to execute arbitrary code with administrator privileges via a crafted .mrimgx or .mrbax backup file and a renamed executable placed in the same directory. When a user with administrative privileges opens the crafted backup file and proceeds to mount it, Reflect launches the renamed executable (e.g., explorer.exe), which is under attacker control. This occurs because of insufficient validation of companion files referenced during backup mounting.

    Published: 4 Aug 2025
    7.7
    High

    CVE-2025-53395

    Last Modified: 15 Apr 2026

    Paramount Macrium Reflect through 2025-06-26 allows local attackers to execute arbitrary code with administrator privileges via a crafted .mrimgx backup file and a malicious VSSSvr.dll located in the same directory. When a user with administrative privileges mounts a backup by opening the .mrimgx file, Reflect loads the attacker's VSSSvr.dll after the mount completes. This occurs because of untrusted DLL search path behavior in ReflectMonitor.exe.

    Published: 4 Aug 2025
    1.9
    Low

    CVE-2025-8513

    Last Modified: 15 Apr 2026

    A vulnerability, which was classified as problematic, was found in Caixin News App 8.0.1 on Android. Affected is an unknown function of the file AndroidManifest.xml of the component com.caixin.news. The manipulation leads to improper export of android application components. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 3 Aug 2025
    1.9
    Low

    CVE-2025-8512

    Last Modified: 15 Apr 2026

    A vulnerability, which was classified as problematic, has been found in TVB Big Big Shop App 2.9.0 on Android. This issue affects some unknown processing of the file AndroidManifest.xml of the component hk.com.tvb.bigbigshop. The manipulation leads to improper export of android application components. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8511

    Last Modified: 11 Sept 2025

    A vulnerability classified as problematic was found in Portabilis i-Diario 1.5.0. This vulnerability affects unknown code of the file /diario-de-observacoes/ of the component Observações. The manipulation of the argument Descrição leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8510

    Last Modified: 12 Aug 2025

    A vulnerability classified as problematic has been found in Portabilis i-Educar 2.10. This affects the function Gerar of the file ieducar/intranet/educar_matricula_lst.php. The manipulation of the argument ref_cod_aluno leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of the patch is 82c288b9a4abb084bdfa1c0c4ef777ed45f98b46. It is recommended to apply a patch to fix this issue. The vendor initially closed the original advisory without requesting a CVE.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8509

    Last Modified: 12 Aug 2025

    A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /intranet/educar_servidor_cad.php. The manipulation of the argument matricula leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8508

    Last Modified: 12 Aug 2025

    A vulnerability was found in Portabilis i-Educar 2.9. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /intranet/educar_avaliacao_desempenho_cad.php. The manipulation of the argument titulo_avaliacao/descricao leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 3 Aug 2025
    5.3
    Medium

    CVE-2024-51775

    Last Modified: 4 Nov 2025

    Missing Origin Validation in WebSockets vulnerability in Apache Zeppelin. The attacker could access the Zeppelin server from another origin without any restriction, and get internal information about paragraphs.  This issue affects Apache Zeppelin: from 0.11.1 before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

    Published: 3 Aug 2025
    6.1
    Medium

    CVE-2024-41177

    Last Modified: 4 Nov 2025

    Incomplete Blacklist to Cross-Site Scripting vulnerability in Apache Zeppelin. This issue affects Apache Zeppelin: before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8507

    Last Modified: 12 Aug 2025

    A vulnerability was found in Portabilis i-Educar 2.9. It has been classified as problematic. Affected is an unknown function of the file /intranet/educar_funcao_lst.php. The manipulation of the argument nm_funcao/abreviatura leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 3 Aug 2025
    5.3
    Medium

    CVE-2024-52279

    Last Modified: 4 Nov 2025

    Improper Input Validation vulnerability in Apache Zeppelin. The fix for JDBC URL validation in CVE-2024-31864 did not account for URL encoded input. This issue affects Apache Zeppelin: from 0.11.1 before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8506

    Last Modified: 15 Apr 2026

    A vulnerability was found in 495300897 wx-shop up to de1b66331368695779cfc6e4d11a64caddf8716e and classified as problematic. This issue affects some unknown processing of the file /user/editUI. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.

    Published: 3 Aug 2025
    2.1
    Low

    CVE-2025-8505

    Last Modified: 15 Apr 2026

    A vulnerability has been found in 495300897 wx-shop up to de1b66331368695779cfc6e4d11a64caddf8716e and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.

    Published: 3 Aug 2025
    2.1
    Low

    CVE-2025-8504

    Last Modified: 8 Aug 2025

    A vulnerability, which was classified as critical, was found in code-projects Kitchen Treasure 1.0. This affects an unknown part of the file /userregistration.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 3 Aug 2025
    5.5
    Medium

    CVE-2025-8503

    Last Modified: 5 Aug 2025

    A vulnerability, which was classified as critical, has been found in code-projects Online Medicine Guide 1.0. Affected by this issue is some unknown functionality of the file /adaddmed.php. The manipulation of the argument mname leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

    Published: 3 Aug 2025
    5.5
    Medium

    CVE-2025-8502

    Last Modified: 5 Aug 2025

    A vulnerability classified as critical was found in code-projects Online Medicine Guide 1.0. Affected by this vulnerability is an unknown functionality of the file /changepass.php. The manipulation of the argument ups leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

    Published: 3 Aug 2025
    2
    Low

    CVE-2025-8501

    Last Modified: 23 Oct 2025

    A vulnerability classified as problematic has been found in code-projects Human Resource Integrated System 1.0. Affected is an unknown function of the file /insert-and-view/action.php. The manipulation of the argument content leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 3 Aug 2025
    2.1
    Low

    CVE-2025-8500

    Last Modified: 23 Oct 2025

    A vulnerability was found in code-projects Human Resource Integrated System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /insert-and-view/action.php. The manipulation of the argument content leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 3 Aug 2025
    5.5
    Medium

    CVE-2025-8499

    Last Modified: 5 Aug 2025

    A vulnerability was found in code-projects Online Medicine Guide 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /cusfindambulence2.php. The manipulation of the argument Search leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 3 Aug 2025
    5.5
    Medium

    CVE-2025-8498

    Last Modified: 29 Sept 2025

    A security vulnerability has been detected in code-projects Online Medicine Guide 1.0. This vulnerability affects unknown code of the file /cart/index.php. Such manipulation of the argument uname leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.

    Published: 3 Aug 2025