CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2025-4949

    Last Modified: 5 Jan 2026

    In Eclipse JGit versions 7.2.0.202503040940-r and older, the ManifestParser class used by the repo command and the AmazonS3 class used to implement the experimental amazons3 git transport protocol allowing to store git pack files in an Amazon S3 bucket, are vulnerable to XML External Entity (XXE) attacks when parsing XML files. This vulnerability can lead to information disclosure, denial of service, and other security issues.

    Published: 21 May 2025
    9.8
    Critical

    CVE-2025-4524

    Last Modified: 29 Apr 2026

    The Madara – Responsive and modern WordPress theme for manga sites theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.2.2 via the 'template' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

    Published: 21 May 2025
    7.4
    High

    CVE-2025-5024

    Last Modified: 30 Jun 2026

    A flaw was found in gnome-remote-desktop. Once gnome-remote-desktop listens for RDP connections, an unauthenticated attacker can exhaust system resources and repeatedly crash the process. There may be a resource leak after many attacks, which will also result in gnome-remote-desktop no longer being able to open files even after it is restarted via systemd.

    Published: 21 May 2025
    9.8
    Critical

    CVE-2025-4094

    Last Modified: 27 Aug 2025

    The DIGITS: WordPress Mobile Number Signup and Login WordPress plugin before 8.4.6.1 does not rate limit OTP validation attempts, making it straightforward for attackers to bruteforce them.

    Published: 21 May 2025
    5.3
    Medium

    CVE-2025-5013

    Last Modified: 17 Jun 2025

    A vulnerability, which was classified as problematic, was found in HkCms up to 2.3.2.240702. This affects an unknown part of the file /index.php/search/index.html of the component Search. The manipulation of the argument keyword leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 21 May 2025
    4.8
    Medium

    CVE-2025-5011

    Last Modified: 17 Jun 2025

    A vulnerability classified as problematic was found in moonlightL hexo-boot 4.3.0. This vulnerability affects unknown code of the file /admin/home/index.html of the component Dynamic List Page. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 21 May 2025
    8.6
    High

    CVE-2025-48205

    Last Modified: 15 Apr 2026

    The sr_feuser_register extension through 12.4.8 for TYPO3 allows Insecure Direct Object Reference.

    Published: 21 May 2025
    8.6
    High

    CVE-2025-48201

    Last Modified: 15 Apr 2026

    The ns_backup extension through 13.0.0 for TYPO3 has a Predictable Resource Location.

    Published: 21 May 2025
    5.5
    Medium

    CVE-2025-4057

    Last Modified: 15 Apr 2026

    A flaw was found in ActiveMQ Artemis. The password generated by activemq-artemis-operator does not regenerate between separated CR dependencies.

    Published: 21 May 2025
    8.4
    High

    CVE-2025-27998

    Last Modified: 15 Apr 2026

    An issue in Valvesoftware Steam Client Steam Client 1738026274 allows attackers to escalate privileges via a crafted executable or DLL.

    Published: 21 May 2025
    6.8
    Medium

    CVE-2025-48204

    Last Modified: 15 Apr 2026

    The ns_backup extension through 13.0.0 for TYPO3 allows command injection.

    Published: 21 May 2025
    6.4
    Medium

    CVE-2025-48203

    Last Modified: 15 Apr 2026

    The cs_seo extension through 9.2.0 for TYPO3 allows XSS.

    Published: 21 May 2025
    5.3
    Medium

    CVE-2025-48202

    Last Modified: 15 Apr 2026

    The femanager extension through 8.2.1 for TYPO3 allows Insecure Direct Object Reference.

    Published: 21 May 2025
    5.4
    Medium

    CVE-2025-45754

    Last Modified: 25 Jun 2025

    A stored cross-site scripting (XSS) vulnerability exists in SeedDMS 6.0.32. This vulnerability allows an attacker to inject malicious JavaScript payloads by creating a document with an XSS payload as the document name.

    Published: 21 May 2025
    6.1
    Medium

    CVE-2025-45755

    Last Modified: 10 Jun 2025

    A Stored Cross-Site Scripting (XSS) vulnerability exists in Vtiger CRM Open Source Edition v8.3.0, exploitable via the Services Import feature. An attacker can craft a malicious CSV file containing an XSS payload, mapped to the Service Name field. When the file is uploaded, the application improperly sanitizes user input, leading to persistent script execution.

    Published: 21 May 2025
    9.1
    Critical

    CVE-2025-27558

    Last Modified: 15 Apr 2026

    IEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks against mesh networks. In mesh networks using Wi-Fi Protected Access (WPA, WPA2, or WPA3) or Wired Equivalent Privacy (WEP), an adversary can exploit this vulnerability to inject arbitrary frames towards devices that support receiving non-SSP A-MSDU frames. NOTE: this issue exists because of an incorrect fix for CVE-2020-24588. P802.11-REVme, as of early 2025, is a planned release of the 802.11 standard.

    Published: 21 May 2025
    6.5
    Medium

    CVE-2024-42922

    Last Modified: 25 Jun 2025

    AAPanel v7.0.7 was discovered to contain an OS command injection vulnerability.

    Published: 21 May 2025
    5.5
    Medium

    CVE-2024-56428

    Last Modified: 25 Jun 2025

    The local iLabClient database in itech iLabClient 3.7.1 allows local attackers to read cleartext credentials (from the CONFIGS table) for their servers configured in the client.

    Published: 21 May 2025
    7.7
    High

    CVE-2024-56429

    Last Modified: 15 Apr 2026

    itech iLabClient 3.7.1 relies on the hard-coded YngAYdgAE/kKZYu2F2wm6w== key (found in iLabClient.jar) for local users to read or write to the database.

    Published: 21 May 2025
    10
    Critical

    CVE-2025-48200

    Last Modified: 15 Apr 2026

    The sr_feuser_register extension through 12.4.8 for TYPO3 allows Remote Code Execution.

    Published: 21 May 2025
    6.1
    Medium

    CVE-2024-57529

    Last Modified: 13 Jun 2025

    Cross Site Scripting vulnerability in Jeppesen JetPlanner Pro v.1.6.2.20 allows a remote attacker to execute arbitrary code.

    Published: 21 May 2025
    6.5
    Medium

    CVE-2025-25539

    Last Modified: 25 Jun 2025

    Local File Inclusion vulnerability in Vasco v3.14and before allows a remote attacker to obtain sensitive information via help menu.

    Published: 21 May 2025
    8.4
    High

    CVE-2025-27997

    Last Modified: 3 Jun 2025

    An issue in Blizzard Battle.net v2.40.0.15267 allows attackers to escalate privileges via placing a crafted shell script or executable into the C:\ProgramData directory.

    Published: 21 May 2025
    7.5
    High

    CVE-2025-40775

    Last Modified: 15 Apr 2026

    When an incoming DNS protocol message includes a Transaction Signature (TSIG), BIND always checks it. If the TSIG contains an invalid value in the algorithm field, BIND immediately aborts with an assertion failure. This issue affects BIND 9 versions 9.20.0 through 9.20.8 and 9.21.0 through 9.21.7.

    Published: 21 May 2025
    7.2
    High

    CVE-2025-44040

    Last Modified: 13 Oct 2025

    An issue in OrangeHRM v.5.7 allows an attacker to escalate privileges via UserService.php and the checkForOldHash function. Authentication decisions may be made via PHP loose-equality comparisons if a specific MD5 value is present in the credential store. NOTE: this is disputed by the Supplier because an adversary has no way to place the specific MD5 value into the credential store (unless they already have full privileges) and because the specific MD5 value would not realistically be present otherwise.

    Published: 21 May 2025
    9.8
    Critical

    CVE-2025-44083

    Last Modified: 3 Jun 2025

    An issue in D-Link DI-8100 16.07.26A1 allows a remote attacker to bypass administrator login authentication

    Published: 21 May 2025
    6.5
    Medium

    CVE-2025-44892

    Last Modified: 3 Jun 2025

    FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ownekey parameter in the web_rmon_alarm_post_rmon_alarm function.

    Published: 21 May 2025
    6.5
    Medium

    CVE-2025-44895

    Last Modified: 3 Jun 2025

    FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ipv4Aclkey parameter in the web_acl_ipv4BasedAceAdd function.

    Published: 21 May 2025
    7.2
    High

    CVE-2025-45752

    Last Modified: 13 Jun 2025

    A vulnerability in SeedDMS 6.0.32 allows an attacker with admin privileges to execute arbitrary PHP code by exploiting the zip import functionality in the Extension Manager.

    Published: 21 May 2025
    7.2
    High

    CVE-2025-45753

    Last Modified: 10 Jun 2025

    A vulnerability in Vtiger CRM Open Source Edition v8.3.0 allows an attacker with admin privileges to execute arbitrary PHP code by exploiting the ZIP import functionality in the Module Import feature.

    Published: 21 May 2025
    6.1
    Medium

    CVE-2025-48206

    Last Modified: 1 Aug 2025

    The ns_backup extension through 13.0.0 for TYPO3 allows XSS.

    Published: 21 May 2025
    8.6
    High

    CVE-2025-48207

    Last Modified: 15 Apr 2026

    The reint_downloadmanager extension through 5.0.0 for TYPO3 allows Insecure Direct Object Reference.

    Published: 21 May 2025
    4.8
    Medium

    CVE-2025-5010

    Last Modified: 17 Jun 2025

    A vulnerability classified as problematic has been found in moonlightL hexo-boot 4.3.0. This affects an unknown part of the file /admin/home/index.html of the component Blog Backend. The manipulation of the argument Description leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 20 May 2025
    6.9
    Medium

    CVE-2025-5008

    Last Modified: 28 Aug 2025

    A vulnerability was found in projectworlds Online Time Table Generator 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/add_teacher.php. The manipulation of the argument e leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

    Published: 20 May 2025
    5.1
    Medium

    CVE-2025-5007

    Last Modified: 15 Apr 2026

    A vulnerability was found in Part-DB up to 1.17.0. It has been declared as problematic. Affected by this vulnerability is the function handleUpload of the file src/Services/Attachments/AttachmentSubmitHandler.php of the component Profile Picture Feature. The manipulation of the argument attachment leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.17.1 is able to address this issue. The identifier of the patch is 2c4f44e808500db19c391159b30cb6142896d415. It is recommended to upgrade the affected component.

    Published: 20 May 2025
    6.9
    Medium

    CVE-2025-5006

    Last Modified: 28 May 2025

    A vulnerability was found in Campcodes Online Shopping Portal 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/category.php. The manipulation of the argument Category leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 20 May 2025
    6.9
    Medium

    CVE-2025-5004

    Last Modified: 28 Aug 2025

    A vulnerability was found in projectworlds Online Time Table Generator 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/add_course.php. The manipulation of the argument c/subname leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 20 May 2025
    6.9
    Medium

    CVE-2025-5003

    Last Modified: 28 Aug 2025

    A vulnerability has been found in projectworlds Online Time Table Generator 1.0 and classified as critical. This vulnerability affects unknown code of the file /semester_ajax.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 20 May 2025
    6.9
    Medium

    CVE-2025-5002

    Last Modified: 28 May 2025

    A vulnerability, which was classified as critical, was found in SourceCodester Client Database Management System 1.0. This affects an unknown part of the file /user_proposal_update_order.php. The manipulation of the argument order_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 20 May 2025
    4.8
    Medium

    CVE-2025-5001

    Last Modified: 17 Jun 2025

    A vulnerability was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. It has been declared as problematic. This vulnerability affects the function calloc of the file pspp-convert.c. The manipulation of the argument -l leads to integer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

    Published: 20 May 2025
    5.3
    Medium

    CVE-2025-5000

    Last Modified: 12 Jun 2025

    A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000. It has been classified as critical. This affects the function control_panel_sw of the file /cgi-bin/sysconf.cgi of the component HTTP POST Request Handler. The manipulation of the argument filename leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 20 May 2025
    5.3
    Medium

    CVE-2025-4999

    Last Modified: 12 Jun 2025

    A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000 and classified as critical. Affected by this issue is the function sub_4153FC of the file /cgi-bin/sysconf.cgi of the component HTTP POST Request Handler. The manipulation of the argument supplicant_rnd_id_en leads to command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 20 May 2025
    7.1
    High

    CVE-2025-4998

    Last Modified: 15 Apr 2026

    A vulnerability has been found in H3C Magic R200G up to 100R002 and classified as problematic. Affected by this vulnerability is the function Edit_BasicSSID/Edit_BasicSSID_5G/SetAPWifiorLedInfoById/SetMobileAPInfoById/Asp_SetTimingtimeWifiAndLed/AddMacList/EditMacList/AddWlanMacList/EditWlanMacList of the file /goform/aspForm of the component HTTP POST Request Handler. The manipulation of the argument param leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 20 May 2025
    5.3
    Medium

    CVE-2025-48056

    Last Modified: 15 Apr 2026

    Hubble is a fully distributed networking and security observability platform for cloud native workloads. Prior to version 1.17.2, a network attacker could inject malicious control characters into Hubble CLI terminal output, potentially leading to loss of integrity and manipulation of the output. This could be leveraged to conceal log entries, rewrite output, or even make the terminal temporarily unusable. Exploitation of this attack would require the victim to be monitoring Kafka traffic using Layer 7 Protocol Visibility at the time of the attack. The issue is patched in Hubble CLI v1.17.2. Hubble CLI users who are unable to upgrade can direct their Hubble flows to a log file and inspect the output within a text editor.

    Published: 20 May 2025
    7.1
    High

    CVE-2025-4997

    Last Modified: 15 Apr 2026

    A vulnerability, which was classified as problematic, was found in H3C R2+ProG up to 200R004. Affected is the function UpdateWanParams/AddMacList/EditMacList/AddWlanMacList/EditWlanMacList/Edit_BasicSSID/Edit_GuestSSIDFor2P4G/Edit_BasicSSID_5G/SetAPInfoById of the file /goform/aspForm of the component HTTP POST Request Handler. The manipulation of the argument param leads to denial of service. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 20 May 2025
    4.8
    Medium

    CVE-2025-4996

    Last Modified: 15 Apr 2026

    A vulnerability, which was classified as problematic, has been found in Intelbras RF 301K 1.1.5. This issue affects some unknown processing of the component Add Static IP. The manipulation of the argument Description leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure.

    Published: 20 May 2025
    7.6
    High

    CVE-2025-47290

    Last Modified: 19 Sept 2025

    containerd is a container runtime. A time-of-check to time-of-use (TOCTOU) vulnerability was found in containerd v2.1.0. While unpacking an image during an image pull, specially crafted container images could arbitrarily modify the host file system. The only affected version of containerd is 2.1.0. Other versions of containerd are not affected. This bug has been fixed in containerd 2.1.1. Users should update to this version to resolve the issue. As a workaround, ensure that only trusted images are used and that only trusted users have permissions to import images.

    Published: 20 May 2025
    7.2
    High

    CVE-2025-22157

    Last Modified: 26 Feb 2026

    This High severity PrivEsc (Privilege Escalation) vulnerability was introduced in versions: 9.12.0, 10.3.0, 10.4.0, and 10.5.0 of Jira Core Data Center and Server 5.12.0, 10.3.0, 10.4.0, and 10.5.0 of Jira Service Management Data Center and Server This PrivEsc (Privilege Escalation) vulnerability, with a CVSS Score of 7.2, allows an attacker to perform actions as a higher-privileged user. Atlassian recommends that Jira Core Data Center and Server and Jira Service Management Data Center and Server customers upgrade to latest version, if you are unable to do so, upgrade your instance to one of the specified supported fixed versions: Jira Core Data Center and Server 9.12: Upgrade to a release greater than or equal to 9.12.20 Jira Service Management Data Center and Server 5.12: Upgrade to a release greater than or equal to 5.12.20 Jira Core Data Center 10.3: Upgrade to a release greater than or equal to 10.3.5 Jira Service Management Data Center 10.3: Upgrade to a release greater than or equal to 10.3.5 Jira Core Data Center 10.4: Upgrade to a release greater than or equal to 10.6.0 Jira Service Management Data Center 10.4: Upgrade to a release greater than or equal to 10.6.0 Jira Core Data Center 10.5: Upgrade to a release greater than or equal to 10.5.1 Jira Service Management Data Center 10.5: Upgrade to a release greater than or equal to 10.5.1 See the release notes. You can download the latest version of Jira Core Data Center and Jira Service Management Data Center from the download center. This vulnerability was reported via our Atlassian (Internal) program.

    Published: 20 May 2025
    8.7
    High

    CVE-2025-4364

    Last Modified: 15 Apr 2026

    The affected products could allow an unauthenticated attacker to access system information that could enable further access to sensitive files and obtain administrative credentials.

    Published: 20 May 2025
    4.3
    Medium

    CVE-2025-47854

    Last Modified: 28 May 2025

    In JetBrains TeamCity before 2025.03.2 open redirect was possible on editing VCS Root page

    Published: 20 May 2025