CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2025-1021

    Last Modified: 17 Nov 2025

    Missing authorization vulnerability in synocopy in Synology DiskStation Manager (DSM) before 7.1.1-42962-8, 7.2.1-69057-7 and 7.2.2-72806-3 allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 23 Apr 2025
    6.5
    Medium

    CVE-2025-47711

    Last Modified: 30 Jun 2026

    There's a flaw in the nbdkit server when handling responses from its plugins regarding the status of data blocks. If a client makes a specific request for a very large data range, and a plugin responds with an even larger single block, the nbdkit server can encounter a critical internal error, leading to a denial-of-service.

    Published: 23 Apr 2025
    6.1
    Medium

    CVE-2025-29526

    Last Modified: 15 Apr 2026

    A Cross-Site Scripting (XSS) vulnerability in the search function of Q4 Inc Investor Relations Platform v5.147.1.2 allows attackers to execute arbitrary Javascript via injecting a crafted payload into the SearchTerm parameter.

    Published: 23 Apr 2025
    8.1
    High

    CVE-2025-28169

    Last Modified: 15 Apr 2026

    BYD QIN PLUS DM-i Dilink OS v3.0_13.1.7.2204050.1 to v3.0_13.1.7.2312290.1_0 was discovered to cend broadcasts to the manufacturer's cloud server unencrypted, allowing attackers to execute a man-in-the-middle attack.

    Published: 23 Apr 2025
    6.5
    Medium

    CVE-2025-47712

    Last Modified: 30 Jun 2026

    A flaw exists in the nbdkit "blocksize" filter that can be triggered by a specific type of client request. When a client requests block status information for a very large data range, exceeding a certain limit, it causes an internal error in the nbdkit, leading to a denial of service.

    Published: 23 Apr 2025
    2.9
    Low

    CVE-2025-46393

    Last Modified: 31 Dec 2025

    In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).

    Published: 23 Apr 2025
    2.9
    Low

    CVE-2025-43965

    Last Modified: 31 Dec 2025

    In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used.

    Published: 23 Apr 2025
    3.2
    Low

    CVE-2025-46394

    Last Modified: 2 Jun 2026

    In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences.

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28019

    Last Modified: 6 May 2025

    TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in the downloadFile.cgi component

    Published: 23 Apr 2025
    5.8
    Medium

    CVE-2025-43716

    Last Modified: 15 Apr 2026

    A directory traversal vulnerability exists in Ivanti LANDesk Management Gateway through 4.2-1.9. By appending %3F.php to the URI of the /client/index.php endpoint, an attacker can bypass access controls and gain unauthorized access to various endpoints such as /client/index.php%3F.php/gsb/firewall.php within the management web panel, potentially exposing sensitive device information. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

    Published: 23 Apr 2025
    9.8
    Critical

    CVE-2025-45427

    Last Modified: 30 Apr 2025

    In Tenda AC9 v1.0 with firmware V15.03.05.14_multi, the security parameter of /goform/WifiBasicSet has a stack overflow vulnerability, which can lead to remote arbitrary code execution.

    Published: 23 Apr 2025
    2.5
    Low

    CVE-2024-58251

    Last Modified: 15 Apr 2026

    In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim.

    Published: 23 Apr 2025
    7.5
    High

    CVE-2025-27580

    Last Modified: 15 Apr 2026

    NIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 generates predictable tokens (that depend on username, time, and the fixed 7Dl9#dj- string) and thus allows unauthenticated users with a Common Access Card (CAC) to escalate privileges and compromise any account, including administrators.

    Published: 23 Apr 2025
    4.3
    Medium

    CVE-2025-27581

    Last Modified: 15 Apr 2026

    NIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 allows users who lack the InET role to access the InET module via direct requests to known endpoints.

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28018

    Last Modified: 6 May 2025

    TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in downloadFile.cgi through the v14 parameter.

    Published: 23 Apr 2025
    6.5
    Medium

    CVE-2025-28017

    Last Modified: 6 May 2025

    TOTOLINK A800R V4.1.2cu.5032_B20200408 is vulnerable to Command Injection in downloadFile.cgi via the QUERY_STRING parameter.

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28020

    Last Modified: 6 May 2025

    TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in downloadFile.cgi through the v25 parameter.

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28021

    Last Modified: 6 May 2025

    TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in the downloadFile.cgi through the v14 and v3 parameters

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28022

    Last Modified: 6 May 2025

    TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in downloadFile.cgi through the v25 parameter.

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28025

    Last Modified: 6 May 2025

    TOTOLINK A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a buffer overflow vulnerability in downloadFile.cgi through the v14 parameter.

    Published: 23 Apr 2025
    7.3
    High

    CVE-2025-28028

    Last Modified: 6 May 2025

    TOTOLINK A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a buffer overflow vulnerability in downloadFile.cgi through the v5 parameter.

    Published: 23 Apr 2025
    9.8
    Critical

    CVE-2025-45428

    Last Modified: 30 Apr 2025

    In Tenda ac9 v1.0 with firmware V15.03.05.14_multi, the rebootTime parameter of /goform/SetSysAutoRebbotCfg has a stack overflow vulnerability, which can lead to remote arbitrary code execution.

    Published: 23 Apr 2025
    9.8
    Critical

    CVE-2025-45429

    Last Modified: 30 Apr 2025

    In the Tenda ac9 v1.0 router with firmware V15.03.05.14_multi, there is a stack overflow vulnerability in /goform/WifiWpsStart, which may lead to remote arbitrary code execution.

    Published: 23 Apr 2025
    6.8
    Medium

    CVE-2025-37088

    Last Modified: 15 Apr 2026

    A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS). Depending on race conditions and configuration, this vulnerability may lead to local/cluster unauthorized access.

    Published: 22 Apr 2025
    5.5
    Medium

    CVE-2025-27087

    Last Modified: 15 Apr 2026

    A vulnerability in the kernel of the Cray Operating System (COS) could allow an attacker to perform a local Denial of Service (DoS) attack.

    Published: 22 Apr 2025
    9.8
    Critical

    CVE-2025-37087

    Last Modified: 15 Apr 2026

    A vulnerability in the cmdb service of the HPE Performance Cluster Manager (HPCM) could allow an attacker to gain access to an arbitrary file on the server host.

    Published: 22 Apr 2025
    9.3
    Critical

    CVE-2025-32965

    Last Modified: 15 Apr 2026

    xrpl.js is a JavaScript/TypeScript API for interacting with the XRP Ledger in Node.js and the browser. Versions 4.2.1, 4.2.2, 4.2.3, and 4.2.4 of xrpl.js were compromised and contained malicious code designed to exfiltrate private keys. Version 2.14.2 is also malicious, though it is less likely to lead to exploitation as it is not compatible with other 2.x versions. Anyone who used one of these versions should stop immediately and rotate any private keys or secrets used with affected systems. Users of xrpl.js should pgrade to version 4.2.5 or 2.14.3 to receive a patch. To secure funds, think carefully about whether any keys may have been compromised by this supply chain attack, and mitigate by sending funds to secure wallets, and/or rotating keys. If any account's master key is potentially compromised, disable the key.

    Published: 22 Apr 2025
    2.5
    Low

    CVE-2025-23253

    Last Modified: 15 Apr 2026

    NVIDIA NvContainer service for Windows contains a vulnerability in its usage of OpenSSL, where an attacker could exploit a hard-coded constant issue by copying a malicious DLL in a hard-coded path. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

    Published: 22 Apr 2025
    4.6
    Medium

    CVE-2025-31328

    Last Modified: 15 Apr 2026

    SAP Learning Solution is vulnerable to Cross-Site Request Forgery (CSRF), allowing an attacker to trick authenticated user into sending unintended requests to the server. GET-based OData function is named in a way that it violates the expected behaviour. This issue could impact both the confidentiality and integrity of the application without affecting the availability.

    Published: 22 Apr 2025
    4.3
    Medium

    CVE-2025-31327

    Last Modified: 15 Apr 2026

    SAP Field Logistics Manage Logistics application OData meta-data property is vulnerable to data tampering, due to which certain fields could be externally modified by an attacker causing low impact on integrity of the application. Confidentiality and availability are not impacted.

    Published: 22 Apr 2025
    6.4
    Medium

    CVE-2025-32961

    Last Modified: 15 Apr 2026

    The Cuba JPA web API enables loading and saving any entities defined in the application data model by sending simple HTTP requests. Prior to version 1.1.1, the input parameter, which consists of a file path and name, can be manipulated to return the Content-Type header with text/html if the name part ends with .html. This could allow malicious JavaScript code to be executed in the browser. For a successful attack, a malicious file needs to be uploaded beforehand. This issue has been patched in version 1.1.1. A workaround is provided on the Jmix documentation website.

    Published: 22 Apr 2025
    6.4
    Medium

    CVE-2025-32960

    Last Modified: 15 Apr 2026

    The CUBA REST API add-on performs operations on data and entities. Prior to version 7.2.7, the input parameter, which consists of a file path and name, can be manipulated to return the Content-Type header with text/html if the name part ends with .html. This could allow malicious JavaScript code to be executed in the browser. For a successful attack, a malicious file needs to be uploaded beforehand. This issue has been patched in version 7.2.7. A workaround is provided on the Jmix documentation website.

    Published: 22 Apr 2025
    6.5
    Medium

    CVE-2025-32959

    Last Modified: 15 Apr 2026

    CUBA Platform is a high level framework for enterprise applications development. Prior to version 7.2.23, the local file storage implementation does not restrict the size of uploaded files. An attacker could exploit this by uploading excessively large files, potentially causing the server to run out of space and return HTTP 500 error, resulting in a denial of service. This issue has been patched in version 7.2.23. A workaround is provided on the Jmix documentation website.

    Published: 22 Apr 2025
    6.4
    Medium

    CVE-2025-32951

    Last Modified: 31 Dec 2025

    Jmix is a set of libraries and tools to speed up Spring Boot data-centric application development. In versions 1.0.0 to 1.6.1 and 2.0.0 to 2.3.4, the input parameter, which consists of a file path and name, can be manipulated to return the Content-Type header with text/html if the name part ends with .html. This could allow malicious JavaScript code to be executed in the browser. For a successful attack, a malicious file needs to be uploaded beforehand. This issue has been patched in versions 1.6.2 and 2.4.0. A workaround is provided on the Jmix documentation website.

    Published: 22 Apr 2025
    6.5
    Medium

    CVE-2025-32952

    Last Modified: 31 Dec 2025

    Jmix is a set of libraries and tools to speed up Spring Boot data-centric application development. In versions 1.0.0 to 1.6.1 and 2.0.0 to 2.3.4, the local file storage implementation does not restrict the size of uploaded files. An attacker could exploit this by uploading excessively large files, potentially causing the server to run out of space and return HTTP 500 error, resulting in a denial of service. This issue has been patched in versions 1.6.2 and 2.4.0. A workaround is provided on the Jmix documentation website.

    Published: 22 Apr 2025
    4.6
    Medium

    CVE-2025-32964

    Last Modified: 19 Sept 2025

    ManageWiki is a MediaWiki extension allowing users to manage wikis. Prior to commit 00bebea, when enabling a conflicting extension, a restricted extension would be automatically disabled even if the user did not hold the ManageWiki-restricted right. This issue has been patched in commit 00bebea. A workaround involves ensuring that any extensions requiring specific permissions in `$wgManageWikiExtensions` also require the same permissions for managing any conflicting extensions.

    Published: 22 Apr 2025
    6.9
    Medium

    CVE-2025-32963

    Last Modified: 15 Apr 2026

    MinIO Operator STS is a native IAM Authentication for Kubernetes. Prior to version 7.1.0, if no audiences are provided for the `spec.audiences` field, the default will be of the Kubernetes apiserver. Without scoping, it can be replayed to other internal systems, which may unintentionally trust it. This issue has been patched in version 7.1.0.

    Published: 22 Apr 2025
    6.5
    Medium

    CVE-2025-32950

    Last Modified: 31 Dec 2025

    Jmix is a set of libraries and tools to speed up Spring Boot data-centric application development. In versions 1.0.0 to 1.6.1 and 2.0.0 to 2.3.4, attackers could manipulate the FileRef parameter to access files on the system where the Jmix application is deployed, provided the application server has the necessary permissions. This can be accomplished either by modifying the FileRef directly in the database or by supplying a harmful value in the fileRef parameter of the `/files` endpoint of the generic REST API. This issue has been patched in versions 1.6.2 and 2.4.0. A workaround is provided on the Jmix documentation website.

    Published: 22 Apr 2025
    4.3
    Medium

    CVE-2025-32788

    Last Modified: 27 Jun 2025

    OctoPrint provides a web interface for controlling consumer 3D printers. In versions up to and including 1.10.3, OctoPrint has a vulnerability that allows an attacker to bypass the login redirect and directly access the rendered HTML of certain frontend pages. The primary risk lies in potential future modifications to the codebase that might incorrectly rely on the vulnerable internal functions for authentication checks, leading to security vulnerabilities. This issue has been patched in version 1.11.0.

    Published: 22 Apr 2025
    9.3
    Critical

    CVE-2025-34028

    Last Modified: 29 Nov 2025

    The Commvault Command Center Innovation Release allows an unauthenticated actor to upload ZIP files that represent install packages that, when expanded by the target server, are vulnerable to path traversal vulnerability that can result in Remote Code Execution via malicious JSP. This issue affects Command Center Innovation Release: 11.38.0 to 11.38.20. The vulnerability is fixed in 11.38.20 with SP38-CU20-433 and SP38-CU20-436 and also fixed in 11.38.25 with SP38-CU25-434 and SP38-CU25-438.

    Published: 22 Apr 2025
    4.1
    Medium

    CVE-2025-27907

    Last Modified: 1 Sept 2025

    IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.

    Published: 22 Apr 2025
    7.6
    High

    CVE-2025-23251

    Last Modified: 26 Feb 2026

    NVIDIA NeMo Framework contains a vulnerability where a user could cause an improper control of generation of code by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering.

    Published: 22 Apr 2025
    7.6
    High

    CVE-2025-23250

    Last Modified: 26 Feb 2026

    NVIDIA NeMo Framework contains a vulnerability where an attacker could cause an improper limitation of a pathname to a restricted directory by an arbitrary file write. A successful exploit of this vulnerability might lead to code execution and data tampering.

    Published: 22 Apr 2025
    7.6
    High

    CVE-2025-23249

    Last Modified: 26 Feb 2026

    NVIDIA NeMo Framework contains a vulnerability where a user could cause a deserialization of untrusted data by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering.

    Published: 22 Apr 2025
    7.2
    High

    CVE-2025-3767

    Last Modified: 15 Apr 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon BAM (Boolean KPi Listing modules) allows SQL Injection. This page is only accessible to authenticated users with high privileges. This issue affects Centreon BAM: from 24.10 before 24.10.1, from 24.04 before 24.04.5, from 23.10 before 23.10.10, from 23.04 before 23.04.10.

    Published: 22 Apr 2025
    8.4
    High

    CVE-2025-1951

    Last Modified: 26 Feb 2026

    IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local user to execute commands as a privileged user due to execution of commands with unnecessary privileges.

    Published: 22 Apr 2025
    9.3
    Critical

    CVE-2025-1950

    Last Modified: 26 Feb 2026

    IBM Hardware Management Console - Power Systems V10.2.1030.0 and V10.3.1050.0 could allow a local user to execute commands locally due to improper validation of libraries of an untrusted source.

    Published: 22 Apr 2025
    8.8
    High

    CVE-2025-23176

    Last Modified: 15 Apr 2026

    CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

    Published: 22 Apr 2025
    6.1
    Medium

    CVE-2025-23175

    Last Modified: 15 Apr 2026

    Multiple XSS (CWE-79)

    Published: 22 Apr 2025
    7.1
    High

    CVE-2025-2092

    Last Modified: 25 Aug 2025

    Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p29, <2.2.0p41 and <=2.1.0p49 (EOL) causes remote site authentication secrets to be written to log files accessible to administrators.

    Published: 22 Apr 2025