CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2025-1297

    Last Modified: 5 Jul 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 14 Feb 2025
    8.6
    High

    CVE-2024-2240

    Last Modified: 26 Aug 2025

    Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability could allow a remote authenticated attacker to execute various attacks.

    Published: 14 Feb 2025
    5.3
    Medium

    CVE-2025-23406

    Last Modified: 15 Apr 2026

    Out-of-bounds read vulnerability caused by improper checking of TCP MSS option values exists in Cente middleware TCP/IP Network Series, which may lead to processing a specially crafted packet to cause the affected product crashed.

    Published: 14 Feb 2025
    8.6
    High

    CVE-2025-1053

    Last Modified: 26 Sept 2025

    Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encryption key to obtain passwords used by Brocade SANnav.

    Published: 14 Feb 2025
    7.2
    High

    CVE-2024-55904

    Last Modified: 18 Aug 2025

    IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.9 could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted input containing special elements.

    Published: 14 Feb 2025
    4.8
    Medium

    CVE-2024-13493

    Last Modified: 14 May 2025

    The Sensly Online Presence WordPress plugin through 0.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 14 Feb 2025
    8.8
    High

    CVE-2024-57778

    Last Modified: 15 Apr 2026

    An issue in Orbe ONetView Roeador Onet-1200 Orbe 1680210096 allows a remote attacker to escalate privileges via the servers response from status code 500 to status code 200.

    Published: 14 Feb 2025
    8.6
    High

    CVE-2025-26819

    Last Modified: 30 Sept 2025

    Monero through 0.18.3.4 before ec74ff4 does not have response limits on HTTP server connections.

    Published: 14 Feb 2025
    6.9
    Medium

    CVE-2025-26789

    Last Modified: 15 Apr 2026

    An issue was discovered in Logpoint AgentX before 1.5.0. A vulnerability caused by limited access controls allowed li-admin users to access sensitive information about AgentX Manager in a Logpoint deployment.

    Published: 14 Feb 2025
    5.5
    Medium

    CVE-2025-25740

    Last Modified: 2 May 2025

    D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the PSK parameter in the SetQuickVPNSettings module.

    Published: 14 Feb 2025
    8.8
    High

    CVE-2025-25745

    Last Modified: 2 May 2025

    D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetQuickVPNSettings module.

    Published: 14 Feb 2025
    4.8
    Medium

    CVE-2025-25988

    Last Modified: 18 Apr 2025

    Cross Site Scripting vulnerability in hooskcms v.1.8 allows a remote attacker to cause a denial of service via the custom Link title parameter and the Title parameter.

    Published: 14 Feb 2025
    4.5
    Medium

    CVE-2025-26791

    Last Modified: 7 Oct 2025

    DOMPurify before 3.2.4 has an incorrect template literal regular expression, sometimes leading to mutation cross-site scripting (mXSS).

    Published: 14 Feb 2025
    9.8
    Critical

    CVE-2024-56973

    Last Modified: 15 Apr 2026

    Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.

    Published: 14 Feb 2025
    5.4
    Medium

    CVE-2024-57790

    Last Modified: 15 Apr 2026

    IXON B.V. IXrouter IX2400 (Industrial Edge Gateway) v3.0 was discovered to contain hardcoded root credentials stored in the non-volatile flash memory. This vulnerability allows physically proximate attackers to gain root access via UART or SSH.

    Published: 14 Feb 2025
    4.3
    Medium

    CVE-2024-57969

    Last Modified: 9 Jul 2025

    app/Model/Attribute.php in MISP before 2.4.198 ignores an ACL during a GUI attribute search.

    Published: 14 Feb 2025
    6.1
    Medium

    CVE-2025-25990

    Last Modified: 18 Apr 2025

    Cross Site Scripting vulnerability in hooskcms v.1.7.1 allows a remote attacker to obtain sensitive information via the /install/index.php component.

    Published: 14 Feb 2025
    5.1
    Medium

    CVE-2025-25991

    Last Modified: 18 Apr 2025

    SQL Injection vulnerability in hooskcms v.1.7.1 allows a remote attacker to obtain sensitive information via the /install/index.php component.

    Published: 14 Feb 2025
    5.1
    Medium

    CVE-2025-25992

    Last Modified: 2 May 2025

    SQL Injection vulnerability in FeMiner wms 1.0 allows a remote attacker to obtain sensitive information via the inquire_inout_item.php component.

    Published: 14 Feb 2025
    5.1
    Medium

    CVE-2025-25993

    Last Modified: 2 May 2025

    SQL Injection vulnerability in FeMiner wms wms 1.0 allows a remote attacker to obtain sensitive information via the parameter "itemid."

    Published: 14 Feb 2025
    7.5
    High

    CVE-2025-25994

    Last Modified: 2 May 2025

    SQL Injection vulnerability in FeMiner wms wms 1.0 allows a remote attacker to obtain sensitive information via the parameters date1, date2, id.

    Published: 14 Feb 2025
    7.5
    High

    CVE-2025-25997

    Last Modified: 13 May 2025

    Directory Traversal vulnerability in FeMiner wms v.1.0 allows a remote attacker to obtain sensitive information via the databak.php component.

    Published: 14 Feb 2025
    5.9
    Medium

    CVE-2025-26157

    Last Modified: 6 Jun 2025

    A SQL Injection vulnerability was found in /bpms/index.php in Source Code and Project Beauty Parlour Management System V1.1, which allows remote attackers to execute arbitrary code via the name POST request parameter.

    Published: 14 Feb 2025
    5.6
    Medium

    CVE-2025-26158

    Last Modified: 6 Jun 2025

    A Stored Cross-Site Scripting (XSS) vulnerability was discovered in the manage-employee.php page of Kashipara Online Attendance Management System V1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the department parameter.

    Published: 14 Feb 2025
    8.8
    High

    CVE-2025-26156

    Last Modified: 2 Apr 2025

    A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online Shopping Portal v2.1, which allows remote attackers to execute arbitrary code via orderid POST request parameter.

    Published: 14 Feb 2025
    8.1
    High

    CVE-2025-26519

    Last Modified: 10 Dec 2025

    musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-KR text to UTF-8.

    Published: 14 Feb 2025
    8.4
    High

    CVE-2025-26788

    Last Modified: 15 Apr 2026

    StrongKey FIDO Server before 4.15.1 treats a non-discoverable (namedcredential) flow as a discoverable transaction.

    Published: 14 Feb 2025
    6.5
    Medium

    CVE-2024-57725

    Last Modified: 15 Apr 2026

    An issue in the Arcadyan Livebox Fibra PRV3399B_B_LT allows a remote or local attacker to modify the GPON link value without authentication, causing an internet service disruption via the /firstconnection.cgi endpoint.

    Published: 14 Feb 2025
    5.5
    Medium

    CVE-2024-10404

    Last Modified: 26 Aug 2025

    CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could allow an authenticated, local attacker to view Brocade Fabric OS switch sensitive information in clear text. An attacker with administrative privileges could retrieve sensitive information including passwords; SNMP responses that contain AuthSecret and PrivSecret after collecting a “supportsave” or getting access to an already collected “supportsave”. NOTE: this issue exists because of an incomplete fix for CVE-2024-29952

    Published: 13 Feb 2025
    5.9
    Medium

    CVE-2024-12054

    Last Modified: 15 Apr 2026

    ZF Roll Stability Support Plus (RSSPlus) is vulnerable to an authentication bypass vulnerability targeting deterministic RSSPlus SecurityAccess service seeds, which may allow an attacker to remotely (proximal/adjacent with RF equipment or via pivot from J2497 telematics devices) call diagnostic functions intended for workshop or repair scenarios. This can impact system availability, potentially degrading performance or erasing software, however the vehicle remains in a safe vehicle state.

    Published: 13 Feb 2025
    6.1
    Medium

    CVE-2025-24836

    Last Modified: 15 Apr 2026

    With a specially crafted Python script, an attacker could send continuous startMeasurement commands over an unencrypted Bluetooth connection to the affected device. This would prevent the device from connecting to a clinician's app to take patient readings and ostensibly flood it with requests, resulting in a denial-of-service condition.

    Published: 13 Feb 2025
    6.9
    Medium

    CVE-2025-23421

    Last Modified: 15 Apr 2026

    An attacker could obtain firmware files and reverse engineer their intended use leading to loss of confidentiality and integrity of the hardware devices enabled by the Qardio iOS and Android applications.

    Published: 13 Feb 2025
    4.3
    Medium

    CVE-2025-25195

    Last Modified: 15 Apr 2026

    Zulip is an open source team chat application. A weekly cron job (added in 50256f48314250978f521ef439cafa704e056539) demotes channels to being "inactive" after they have not received traffic for 180 days. However, upon doing so, an event was sent to all users in the organization, not just users in the channel. This event contained the name of the private channel. Similarly, the same commit (50256f48314250978f521ef439cafa704e056539) added functionality to notify clients when channels stopped being "inactive." The first message sent to a private channel which had not previously had any messages for over 180 days (and were thus already marked "inactive") would leak an event to all users in the organization; this event also contained the name of the private channel. Commits 75be449d456d29fef27e9d1828bafa30174284b4 and a2a1a7f8d152296c8966f1380872c0ac69e5c87e fixed the issue. This vulnerability only existed in `main`, and was not part of any published versions.

    Published: 13 Feb 2025
    6.2
    Medium

    CVE-2025-20615

    Last Modified: 24 Mar 2025

    The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accounts and access an engineering backdoor in the application. The engineering backdoor allows the attacker to send hex-based commands over a UI-based terminal.

    Published: 13 Feb 2025
    9.3
    Critical

    CVE-2025-25067

    Last Modified: 23 Apr 2025

    mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to execute arbitrary OS commands.

    Published: 13 Feb 2025
    5.1
    Medium

    CVE-2025-23411

    Last Modified: 4 Mar 2025

    mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sensitive information. An attacker would need to trick the victim in to visiting an attacker-controlled website.

    Published: 13 Feb 2025
    9.2
    Critical

    CVE-2025-22896

    Last Modified: 4 Mar 2025

    mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information.

    Published: 13 Feb 2025
    10
    Critical

    CVE-2025-24865

    Last Modified: 4 Mar 2025

    The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attacker to retrieve sensitive information and upload files without the associated password.

    Published: 13 Feb 2025
    8.7
    High

    CVE-2025-24861

    Last Modified: 4 Mar 2025

    An attacker may inject commands via specially-crafted post requests.

    Published: 13 Feb 2025
    8.7
    High

    CVE-2025-25281

    Last Modified: 10 Apr 2025

    An attacker may modify the URL to discover sensitive information about the target network.

    Published: 13 Feb 2025
    8.7
    High

    CVE-2025-26473

    Last Modified: 19 Mar 2025

    The Mojave Inverter uses the GET method for sensitive information.

    Published: 13 Feb 2025
    9.3
    Critical

    CVE-2025-1283

    Last Modified: 10 Apr 2025

    The Dingtian DT-R0 Series is vulnerable to an exploit that allows attackers to bypass login requirements by directly navigating to the main page.

    Published: 13 Feb 2025
    7.3
    High

    CVE-2024-11347

    Last Modified: 15 Apr 2026

    Integer Overflow or Wraparound vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Forced Integer Overflow.The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user.

    Published: 13 Feb 2025
    7.3
    High

    CVE-2024-11346

    Last Modified: 15 Apr 2026

    : Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Resource Injection.This issue affects CX, XC, CS, et. Al.: from 001.001:0 through 081.231, from *.*.P001 through *.*.P233, from *.*.P001 through *.*.P759, from *.*.P001 through *.*.P836.

    Published: 13 Feb 2025
    7.3
    High

    CVE-2024-11344

    Last Modified: 15 Apr 2026

    A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.

    Published: 13 Feb 2025
    9.1
    Critical

    CVE-2025-1127

    Last Modified: 15 Apr 2026

    The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user and/or modify the contents of any data on the filesystem.

    Published: 13 Feb 2025
    7.3
    High

    CVE-2024-11345

    Last Modified: 15 Apr 2026

    A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.

    Published: 13 Feb 2025
    4.5
    Medium

    CVE-2025-24889

    Last Modified: 15 Apr 2026

    The SecureDrop Client is a desktop application for journalists to communicate with sources and work with submissions on the SecureDrop Workstation. Prior to versions 0.14.1 and 1.0.1, an attacker who has already gained code execution in a virtual machine on the SecureDrop Workstation could gain code execution in the `sd-log` virtual machine by sending a specially crafted log entry. The vulnerability is not exploitable remotely and requires an attacker to already have code execution on one of the other virtual machines (VMs) of the system. Due to the Workstation's underlying usage of Qubes for strong isolation, the vulnerability would have allowed lateral movement between any log-enabled VM and the `sd-log` VM, but no further. The SecureDrop workstation collects logs centrally in an isolated virtual machine named `sd-log` for easy export for support and debugging purposes. The `sd-log` VM is completely isolated from the internet and ingests logs via a narrow Qubes RPC policy that allows for specific inter-VM communication via the Xen vchan protocol used by Qubes's qrexec mechanism. A path traversal bug was found in the logic used to choose where to write the log file for a specific VM: the VM name, used unsanitized in the destination path in `sd-log`, is supplied by the logging VM itself instead of being read from a trusted source, such as the Qubes environment variable `QREXEC_REMOTE_DOMAIN` that is used in the fixed implementation. An attacker could provide an arbitrary source VM name, possibly overwriting logs of other VMs, or writing a file named `syslog.log`, with attacker-controlled content, in arbitrary directories as a low-privileged user. A successful attack could potentially overwrite or add configuration to software that loads configuration files from a directory. This is exploitable to achieve code execution by setting the target directory to `/home/user/.config/autostart/` and letting it write `syslog.log`, because XFCE treats any file in that directory as a `.desktop` file regardless of its extension. Versions 0.14.1 and 1.0.1 contain a patch for this issue.

    Published: 13 Feb 2025
    8.1
    High

    CVE-2025-24888

    Last Modified: 15 Apr 2026

    The SecureDrop Client is a desktop application for journalists to communicate with sources and work with submissions on the SecureDrop Workstation. Prior to version 0.14.1, a malicious SecureDrop Server could obtain code execution on the SecureDrop Client virtual machine (`sd-app`). SecureDrop Server itself has multiple layers of built-in hardening, and is a dedicated physical machine exposed on the internet only via Tor hidden services for the Source and Journalist interfaces, and optionally via remote SSH access over another Tor hidden service. A newsroom's SecureDrop Workstation communicates only with its own dedicated SecureDrop Server. The SecureDrop Client runs in a dedicated Qubes virtual machine, named `sd-app`, as part of the SecureDrop Workstation. The private OpenPGP key used to decrypt submissions and replies is stored in a separate virtual machine and never accessed directly. The vulnerability lies in the code responsible for downloading replies. The filename of the reply is obtained from the `Content-Disposition` HTTP header and used to write the encrypted reply on disk. Note that filenames are generated and sanitized server-side, and files are downloaded in an encrypted format, so a remote attacker who has not achieved server compromise, such as one posing as a source, could not craft the HTTP response necessary for this attack. While the filename is later checked to guard against path traversal before being moved into the Client’s data storage directory, the file has already been written to a potentially arbitrary location. In this case, `safe_move()` would detect the path traversal and fail, leaving the original downloaded file in the attacker-chosen directory. Code execution can be gained by writing an autostart file in `/home/user/.config/autostart/`. Version 0.14.1 fixes the issue. As of time of publication, there is no known evidence of exploitation in the wild. This attack requires a previously compromised SecureDrop Server.

    Published: 13 Feb 2025
    7
    High

    CVE-2025-22480

    Last Modified: 24 Sept 2025

    Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.

    Published: 13 Feb 2025