CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2025-29386

    Last Modified: 19 Mar 2025

    In Tenda AC9 v1.0 V15.03.05.14_multi, the mac parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead to remote arbitrary code execution.

    Published: 14 Mar 2025
    6.8
    Medium

    CVE-2025-30022

    Last Modified: 3 Apr 2025

    CM Soluces Informatica Ltda Auto Atendimento 1.x.x was discovered to contain a SQL injection via the DATANASC parameter.

    Published: 14 Mar 2025
    3.3
    Low

    CVE-2025-27496

    Last Modified: 22 Aug 2025

    Snowflake, a platform for using artificial intelligence in the context of cloud computing, has a vulnerability in the Snowflake JDBC driver ("Driver") in versions 3.0.13 through 3.23.0 of the driver. When the logging level was set to DEBUG, the Driver would log locally the client-side encryption master key of the target stage during the execution of GET/PUT commands. This key by itself does not grant access to any sensitive data without additional access authorizations, and is not logged server-side by Snowflake. Snowflake fixed the issue in version 3.23.1.

    Published: 13 Mar 2025
    8.5
    High

    CVE-2025-2229

    Last Modified: 15 Apr 2026

    A token is created using the username, current date/time, and a fixed AES-128 encryption key, which is the same across all installations.

    Published: 13 Mar 2025
    8.5
    High

    CVE-2025-2230

    Last Modified: 15 Apr 2026

    A flaw exists in the Windows login flow where an AuthContext token can be exploited for replay attacks and authentication bypass.

    Published: 13 Mar 2025
    3.3
    Low

    CVE-2025-2157

    Last Modified: 15 Apr 2026

    A flaw was found in Foreman/Red Hat Satellite. Improper file permissions allow low-privileged OS users to monitor and access temporary files under /var/tmp, exposing sensitive command outputs, such as /etc/shadow. This issue can lead to information disclosure and privilege escalation if exploited effectively.

    Published: 13 Mar 2025
    4.3
    Medium

    CVE-2024-30143

    Last Modified: 15 Apr 2026

    HCL AppScan Traffic Recorder fails to adequately neutralize special characters within the filename, potentially allowing it to resolve to a location beyond the restricted directory. Potential exploits can completely disrupt or takeover the application or the computer where the application is running.

    Published: 13 Mar 2025
    7.2
    High

    CVE-2025-24053

    Last Modified: 13 Feb 2026

    Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network.

    Published: 13 Mar 2025
    5.8
    Medium

    CVE-2025-29773

    Last Modified: 3 Apr 2025

    Froxlor is open-source server administration software. A vulnerability in versions prior to 2.2.6 allows users (such as resellers or customers) to create accounts with the same email address as an existing account. This creates potential issues with account identification and security. This vulnerability can be exploited by authenticated users (e.g., reseller, customer) who can create accounts with the same email address that has already been used by another account, such as the admin. The attack vector is email-based, as the system does not prevent multiple accounts from registering the same email address, leading to possible conflicts and security issues. Version 2.2.6 fixes the issue.

    Published: 13 Mar 2025
    4.4
    Medium

    CVE-2025-29768

    Last Modified: 18 Aug 2025

    Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an archive with Vim and then press 'x' on such a strange filename. The issue has been fixed as of Vim patch v9.1.1198.

    Published: 13 Mar 2025
    8.7
    High

    CVE-2025-2081

    Last Modified: 26 Aug 2026

    Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 are vulnerable to an attacker impersonating the web application service and mislead victim clients.

    Published: 13 Mar 2025
    9.3
    Critical

    CVE-2025-2080

    Last Modified: 26 Aug 2026

    Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 contain an exposed web management service that could allow an attacker to bypass authentication measures and gain controls over utilities within the products.

    Published: 13 Mar 2025
    8.7
    High

    CVE-2025-2079

    Last Modified: 26 Aug 2026

    Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 contain a hard coded secret key. This could allow an attacker to generate valid JWT (JSON Web Token) sessions.

    Published: 13 Mar 2025
    8.6
    High

    CVE-2025-27107

    Last Modified: 15 Apr 2026

    Integrated Scripting is a tool for creating scripts for handling complex operations in Integrated Dynamics. Minecraft users who use Integrated Scripting prior to versions 1.21.1-1.0.17, 1.21.4-1.0.9-254, 1.20.1-1.0.13, and 1.19.2-1.0.10 may be vulnerable to arbitrary code execution. By using Java reflection on a thrown exception object it's possible to escape the JavaScript sandbox for IntegratedScripting's Variable Cards, and leverage that to construct arbitrary Java classes and invoke arbitrary Java methods. This vulnerability allows for execution of arbitrary Java methods, and by extension arbitrary native code e.g. from `java.lang.Runtime.exec`, on the Minecraft server by any player with the ability to create and use an IntegratedScripting Variable Card. Versions 1.21.1-1.0.17, 1.21.4-1.0.9-254, 1.20.1-1.0.13, and 1.19.2-1.0.10 fix the issue.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1652

    Last Modified: 26 Feb 2026

    A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1651

    Last Modified: 26 Feb 2026

    A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1650

    Last Modified: 26 Feb 2026

    A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1649

    Last Modified: 26 Feb 2026

    A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1433

    Last Modified: 19 Aug 2025

    A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.7
    High

    CVE-2025-27138

    Last Modified: 21 Mar 2025

    DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, there is a flaw in the authentication in the io.dataease.auth.filter.TokenFilter class, which may cause the risk of unauthorized access. The vulnerability has been fixed in v2.10.6. No known workarounds are available.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1432

    Last Modified: 26 Feb 2026

    A maliciously crafted 3DM file, when parsed through Autodesk AutoCAD, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1431

    Last Modified: 26 Feb 2026

    A maliciously crafted SLDPRT file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1430

    Last Modified: 26 Feb 2026

    A maliciously crafted SLDPRT file, when parsed through Autodesk AutoCAD, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1429

    Last Modified: 26 Feb 2026

    A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1428

    Last Modified: 26 Feb 2026

    A maliciously crafted CATPART file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-1427

    Last Modified: 26 Feb 2026

    A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

    Published: 13 Mar 2025
    7.3
    High

    CVE-2025-27103

    Last Modified: 28 Mar 2025

    DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, a bypass for the patch for CVE-2024-55953 allows authenticated users to read and deserialize arbitrary files through the background JDBC connection. The vulnerability has been fixed in v2.10.6. No known workarounds are available.

    Published: 13 Mar 2025
    7.3
    High

    CVE-2025-24974

    Last Modified: 21 Mar 2025

    DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, authenticated users can read and deserialize arbitrary files through the background JDBC connection. The vulnerability has been fixed in v2.10.6. No known workarounds are available.

    Published: 13 Mar 2025
    7.5
    High

    CVE-2025-2284

    Last Modified: 15 Apr 2026

    A denial-of-service vulnerability exists in the "GetWebLoginCredentials" function in "Sante PACS Server.exe".

    Published: 13 Mar 2025
    7.8
    High

    CVE-2025-2265

    Last Modified: 15 Apr 2026

    The password of a web user in "Sante PACS Server.exe" is zero-padded to 0x2000 bytes, SHA1-hashed, base64-encoded, and stored in the USER table in the SQLite database HTTP.db. However, the number of hash bytes encoded and stored is truncated if the hash contains a zero byte

    Published: 13 Mar 2025
    7.5
    High

    CVE-2025-2264

    Last Modified: 3 Apr 2025

    A Path Traversal Information Disclosure vulnerability exists in "Sante PACS Server.exe". An unauthenticated remote attacker can exploit it to download arbitrary files on the disk drive where the application is installed.

    Published: 13 Mar 2025
    9.8
    Critical

    CVE-2025-2263

    Last Modified: 3 Apr 2025

    During login to the web server in "Sante PACS Server.exe", OpenSSL function EVP_DecryptUpdate is called to decrypt the username and password. A fixed 0x80-byte stack-based buffer is passed to the function as the output buffer. A stack-based buffer overflow exists if a long encrypted username or password is supplied by an unauthenticated remote attacker.

    Published: 13 Mar 2025
    7.5
    High

    CVE-2024-8176

    Last Modified: 21 Sept 2026

    A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents. When parsing an XML document with deeply nested entity references, libexpat can be forced to recurse indefinitely, exhausting the stack space and causing a crash. This issue could lead to denial of service (DoS) or, in some cases, exploitable memory corruption, depending on the environment and library usage.

    Published: 13 Mar 2025
    8.1
    High

    CVE-2025-2280

    Last Modified: 28 Mar 2025

    Improper access control in web extension restriction feature in Devolutions Server 2024.3.4.0 and earlier allows an authenticated user to bypass the browser extension restriction feature.

    Published: 13 Mar 2025
    6.5
    Medium

    CVE-2025-2278

    Last Modified: 28 Mar 2025

    Improper access control in temporary access requests and checkout requests endpoints in Devolutions Server 2024.3.13 and earlier allows an authenticated user to access information about these requests via a known request ID.

    Published: 13 Mar 2025
    —
    Unknown

    CVE-2024-12858

    Last Modified: 2 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. *** Duplicate of CVE-2025-22880 ***

    Published: 13 Mar 2025
    6.5
    Medium

    CVE-2025-1636

    Last Modified: 28 Mar 2025

    Exposure of sensitive information in My Personal Credentials password history component in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows an authenticated user to inadvertently leak the My Personal Credentials in a shared vault via the clear history feature due to faulty business logic.

    Published: 13 Mar 2025
    6.5
    Medium

    CVE-2025-1635

    Last Modified: 28 Mar 2025

    Exposure of sensitive information in hub data source export feature in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows a user exporting a hub data source to include his authenticated session in the export due to faulty business logic.

    Published: 13 Mar 2025
    7.5
    High

    CVE-2025-2277

    Last Modified: 28 Mar 2025

    Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13 and earlier allows a user to unadvertently leak his SSH password due to missing password masking.

    Published: 13 Mar 2025
    7.5
    High

    CVE-2024-10942

    Last Modified: 15 Apr 2026

    The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 7.89 via deserialization of untrusted input in the 'replace_serialized_values' function. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code. An administrator must export and restore a backup in order to trigger the exploit.

    Published: 13 Mar 2025
    4.3
    Medium

    CVE-2025-21104

    Last Modified: 13 Feb 2026

    Dell NetWorker, versions prior to 19.11.0.4 and version 19.12, contains an URL Redirection to Untrusted Site ('Open Redirect') Vulnerability in NetWorker Management Console. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.

    Published: 13 Mar 2025
    8.2
    High

    CVE-2025-29998

    Last Modified: 15 Apr 2026

    This vulnerability exists in the CAP back office application due to missing rate limiting on OTP requests in an API endpoint. An authenticated remote attacker could exploit this vulnerability by sending multiple OTP request through vulnerable API endpoint which could lead to the OTP bombing/flooding on the targeted system.

    Published: 13 Mar 2025
    8.2
    High

    CVE-2025-29997

    Last Modified: 15 Apr 2026

    This vulnerability exists in the CAP back office application due to improper authorization checks on certain API endpoints. An authenticated remote attacker could exploit this vulnerability by manipulating API request URL to gain unauthorized access to other user accounts.

    Published: 13 Mar 2025
    8.2
    High

    CVE-2025-29996

    Last Modified: 15 Apr 2026

    This vulnerability exists in the CAP back office application due to improper implementation of OTP verification mechanism in its API based login. A remote attacker with valid credentials could exploit this vulnerability by manipulating API request URL/payload. Successful exploitation of this vulnerability could allow the attacker to bypass Two-Factor Authentication (2FA) for other user accounts.

    Published: 13 Mar 2025
    8.3
    High

    CVE-2025-29995

    Last Modified: 15 Apr 2026

    This vulnerability exists in the CAP back office application due to a weak password-reset mechanism implemented at API endpoints. An authenticated remote attacker with a valid login ID could exploit this vulnerability through vulnerable API endpoint which could lead to account takeover of targeted users.

    Published: 13 Mar 2025
    8.2
    High

    CVE-2025-29994

    Last Modified: 15 Apr 2026

    This vulnerability exists in the CAP back office application due to improper authentication check at the API endpoint. An unauthenticated remote attacker with a valid login ID could exploit this vulnerability by manipulating API input parameters through API request URL/payload leading to unauthorized access to other user accounts.

    Published: 13 Mar 2025
    7.3
    High

    CVE-2025-25175

    Last Modified: 19 Aug 2025

    A vulnerability has been identified in Simcenter Femap V2401 (All versions < V2401.0003), Simcenter Femap V2406 (All versions < V2406.0002). The affected application contains a memory corruption vulnerability while parsing specially crafted .NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-25443)

    Published: 13 Mar 2025
    —
    Unknown

    CVE-2025-2275

    Last Modified: 13 Mar 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 13 Mar 2025
    5.4
    Medium

    CVE-2025-1785

    Last Modified: 20 Apr 2026

    The Download Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.3.08 via the 'wpdm_newfile' action. This makes it possible for authenticated attackers, with Author-level access and above, to overwrite select file types outside of the originally intended directory, which may cause a denial of service.

    Published: 13 Mar 2025
    7.3
    High

    CVE-2025-1119

    Last Modified: 22 Apr 2026

    The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.6.8.5. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.

    Published: 13 Mar 2025