6.5
    Medium

    CVE-2025-52078

    Last Modified: 15 Apr 2026

    File upload vulnerability in Writebot AI Content Generator SaaS React Template thru 4.0.0, allowing remote attackers to gain escalated privileges via a crafted POST request to the /file-upload endpoint.

    Published:5 Aug 2025
    9.8
    Critical

    CVE-2025-52021

    Last Modified: 15 Apr 2026

    A SQL Injection vulnerability exists in the edit_product.php file of PuneethReddyHC Online Shopping System Advanced 1.0. The product_id GET parameter is unsafely passed to a SQL query without proper validation or parameterization.

    Published:7 Oct 2025
    7.7
    High

    CVE-2025-51970

    Last Modified: 13 Nov 2025

    A SQL Injection vulnerability exists in the action.php endpoint of PuneethReddyHC Online Shopping System Advanced 1.0 due to improper sanitization of user-supplied input in the keyword POST parameter.

    Published:29 Jul 2025
    7.5
    High

    CVE-2025-51869

    Last Modified: 15 Apr 2026

    Insecure Direct Object Reference (IDOR) vulnerability in Liner thru 2025-06-03 allows attackers to gain sensitive information via crafted space_id, thread_id, and message_id parameters to the v1/space/{space_id}/thread/{thread_id}/message/{message_id} endpoint.

    Published:21 Jul 2025
    7.5
    High

    CVE-2025-51868

    Last Modified: 15 Apr 2026

    Insecure Direct Object Reference (IDOR) vulnerability in Dippy (chat.dippy.ai) v2 allows attackers to gain sensitive information via the conversation_id parameter to the conversation_history endpoint.

    Published:21 Jul 2025
    6.5
    Medium

    CVE-2025-51867

    Last Modified: 15 Apr 2026

    Insecure Direct Object Reference (IDOR) vulnerability in Deepfiction AI (deepfiction.ai) thru June 3, 2025, allowing attackers to chat with the LLM using other users' credits via sensitive information gained by the /browse/stories endpoint.

    Published:22 Jul 2025
    8.8
    High

    CVE-2025-51865

    Last Modified: 15 Apr 2026

    Ai2 playground web service (playground.allenai.org) LLM chat through 2025-06-03 is vulnerable to Insecure Direct Object Reference (IDOR), allowing attackers to gain sensitvie information via enumerating thread keys in the URL.

    Published:22 Jul 2025
    6.5
    Medium

    CVE-2025-51864

    Last Modified: 15 Apr 2026

    A reflected cross-site scripting (XSS) vulnerability exists in AIBOX LLM chat (chat.aibox365.cn) through 2025-05-27, allowing attackers to hijack accounts through stolen JWT tokens.

    Published:22 Jul 2025
    6.1
    Medium

    CVE-2025-51863

    Last Modified: 15 Apr 2026

    Self Cross Site Scripting (XSS) vulnerability in ChatGPT Unli (ChatGPTUnli.com) thru 2025-05-26 allows attackers to execute arbitrary code via a crafted SVG file to the chat interface.

    Published:22 Jul 2025
    6.1
    Medium

    CVE-2025-51862

    Last Modified: 15 Apr 2026

    Insecure Direct Object Reference (IDOR) vulnerability in TelegAI (telegai.com) thru 2025-05-26 in its chat component. An attacker can exploit this IDOR to tamper other users' conversation. Additionally, malicious contents and XSS payloads can be injected, leading to phishing attack, user spoofing and account hijacking via XSS.

    Published:22 Jul 2025
    6.1
    Medium

    CVE-2025-51860

    Last Modified: 15 Apr 2026

    Stored Cross-Site Scripting (XSS) in TelegAI (telegai.com) 2025-05-26 in its chat component and character container component. An attacker can achieve arbitrary client-side script execution by crafting an AI Character with SVG XSS payloads in either description, greeting, example dialog, or system prompt(instructing the LLM to embed XSS payload in its chat response). When a user interacts with such a malicious AI Character or just browse its profile, the script executes in the user's browser. Successful exploitation can lead to the theft of sensitive information, such as session tokens, potentially resulting in account hijacking.

    Published:22 Jul 2025
    6.5
    Medium

    CVE-2025-51859

    Last Modified: 15 Apr 2026

    Stored Cross-Site Scripting (XSS) vulnerability in Chaindesk thru 2025-05-26 in its agent chat component. An attacker can achieve arbitrary client-side script execution by crafting an AI agent whose system prompt instructs the underlying Large Language Model (LLM) to embed malicious script payloads (e.g., SVG-based XSS) into its chat responses. When a user interacts with such a malicious agent or accesses a direct link to a conversation containing an XSS payload, the script executes in the user's browser. Successful exploitation can lead to the theft of sensitive information, such as JWT session tokens, potentially resulting in account hijacking.

    Published:22 Jul 2025
    6.1
    Medium

    CVE-2025-51858

    Last Modified: 15 Apr 2026

    Self Cross-Site Scripting (XSS) vulnerability in ChatPlayground.ai through 2025-05-24, allows attackers to execute arbitrary code and gain sensitive information via a crafted SVG file contents sent through the chat component.

    Published:22 Jul 2025
    8.7
    High

    CVE-2025-51846

    Last Modified: 4 May 2026

    CryptPad 2025.3.1 allows unbounded WebSocket frame flood. A remote, unauthenticated attacker can significantly degrade or deny service for all users of a CryptPad instance. Fixed in 2026.2.2.

    Published:30 Apr 2026
    Unknown

    CVE-2025-51820

    https://github.com/shk-mubashshir/CVE-2025-51820

    8.4
    High

    CVE-2025-51726

    Last Modified: 15 Apr 2026

    CyberGhostVPNSetup.exe (Windows installer) is signed using the weak cryptographic hash algorithm SHA-1, which is vulnerable to collision attacks. This allows a malicious actor to craft a fake installer with a forged SHA-1 certificate that may still be accepted by Windows signature verification mechanisms, particularly on systems without strict SmartScreen or trust policy enforcement. Additionally, the installer lacks High Entropy Address Space Layout Randomization (ASLR), as confirmed by BinSkim (BA2015 rule) and repeated WinDbg analysis. The binary consistently loads into predictable memory ranges, increasing the success rate of memory corruption exploits. These two misconfigurations, when combined, significantly lower the bar for successful supply-chain style attacks or privilege escalation through fake installers.

    Published:4 Aug 2025
    2.4
    Low

    CVE-2025-51643

    Last Modified: 2 Oct 2025

    Meitrack T366G-L GPS Tracker devices contain an SPI flash chip (Winbond 25Q64JVSIQ) that is accessible without authentication or tamper protection. An attacker with physical access to the device can use a standard SPI programmer to extract the firmware using flashrom. This results in exposure of sensitive configuration data such as APN credentials, backend server information, and network parameter

    Published:28 Aug 2025
    3.7
    Low

    CVE-2025-51591

    Last Modified: 15 Apr 2026

    A Server-Side Request Forgery (SSRF) in JGM Pandoc v3.6.4 allows attackers to gain access to and compromise the whole infrastructure via injecting a crafted iframe. Note: Some users have stated that Pandoc by default can retrieve and parse untrusted HTML content which can enable SSRF vulnerabilities. Using the ‘--sandbox’ option or ‘pandoc-server’ can mitigate such vulnerabilities. Using pandoc with an external ‘--pdf-engine’ can also enable SSRF vulnerabilities, such as CVE-2022-35583 in wkhtmltopdf.

    Published:11 Jul 2025
    3.7
    Low

    CVE-2025-51586

    Last Modified: 12 Sept 2025

    An issue was discoverd in file controllers/admin/AdminLoginController.php in PrestaShop before 8.2.1 allowing attackers to gain sensitive information via the reset password feature.

    Published:8 Sept 2025
    5.3
    Medium

    CVE-2025-51529

    Last Modified: 21 Oct 2025

    Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin through version 2.29 allows remote attackers to cause a denial of service (database server resource exhaustion) via unlimited database write operations to the wp_ajax_nopriv_cacsp_insert_consent_data endpoint.

    Published:19 Aug 2025
    7.5
    High

    CVE-2025-51495

    Last Modified: 16 Oct 2025

    An integer overflow vulnerability exists in the WebSocket component of Mongoose 7.5 thru 7.17. By sending a specially crafted WebSocket request, an attacker can cause the application to crash. If downstream vendors integrate this component improperly, the issue may lead to a buffer overflow.

    Published:29 Sept 2025
    8.8
    High

    CVE-2025-51482

    Last Modified: 7 Oct 2025

    Remote Code Execution in letta.server.rest_api.routers.v1.tools.run_tool_from_source in letta-ai Letta 0.7.12 allows remote attackers to execute arbitrary Python code and system commands via crafted payloads to the /v1/tools/run endpoint, bypassing intended sandbox restrictions.

    Published:22 Jul 2025
    6.9
    Medium

    CVE-2025-51471

    Last Modified: 17 Oct 2025

    Cross-Domain Token Exposure in server.auth.getAuthorizationToken in Ollama 0.6.7 allows remote attackers to steal authentication tokens and bypass access controls via a malicious realm value in a WWW-Authenticate header returned by the /api/pull endpoint.

    Published:22 Jul 2025
    6.5
    Medium

    CVE-2025-51458

    Last Modified: 11 Sept 2025

    SQL Injection in editor_sql_run and query_ex in eosphoros-ai DB-GPT 0.7.0 allows remote attackers to execute arbitrary SQL statements via crafted input passed to the /v1/editor/sql/run or /v1/editor/chart/run endpoints, interacting with api_editor_v1.editor_sql_run, editor_chart_run, and datasource.rdbms.base.query_ex.

    Published:22 Jul 2025
    6.1
    Medium

    CVE-2025-51411

    Last Modified: 9 Oct 2025

    A reflected cross-site scripting (XSS) vulnerability exists in Institute-of-Current-Students v1.0 via the email parameter in the /postquerypublic endpoint. The application fails to properly sanitize user input before reflecting it in the HTML response. This allows unauthenticated attackers to inject and execute arbitrary JavaScript code in the context of the victim's browser by tricking them into visiting a crafted URL or submitting a malicious form. Successful exploitation may lead to session hijacking, credential theft, or other client-side attacks.

    Published:25 Jul 2025
    6.5
    Medium

    CVE-2025-51403

    Last Modified: 22 Jul 2025

    A stored cross-site scripting (XSS) vulnerability in the department assignment editing module of of Live Helper Chat v4.60 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Alias Nick parameter.

    Source:Manojkumar J
    Published:21 Jul 2025
    5.4
    Medium

    CVE-2025-51401

    Last Modified: 22 Jul 2025

    A stored cross-site scripting (XSS) vulnerability in the chat transfer function of Live Helper Chat v4.60 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the operator name parameter.

    Source:Manojkumar J
    Published:21 Jul 2025
    5.4
    Medium

    CVE-2025-51400

    Last Modified: 22 Jul 2025

    A stored cross-site scripting (XSS) vulnerability in the Personal Canned Messages of Live Helper Chat v4.60 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload.

    Source:Manojkumar J
    Published:21 Jul 2025
    5.4
    Medium

    CVE-2025-51398

    Last Modified: 22 Jul 2025

    A stored cross-site scripting (XSS) vulnerability in the Facebook registration page of Live Helper Chat v4.60 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name parameter.

    Source:Manojkumar J
    Published:21 Jul 2025
    5.4
    Medium

    CVE-2025-51397

    Last Modified: 22 Jul 2025

    A stored cross-site scripting (XSS) vulnerability in the Facebook Chat module of Live Helper Chat v4.60 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Surname parameter under the Recipient' Lists.

    Source:Manojkumar J
    Published:21 Jul 2025
    5.4
    Medium

    CVE-2025-51396

    Last Modified: 22 Jul 2025

    A stored cross-site scripting (XSS) vulnerability in Live Helper Chat v4.60 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Telegram Bot Username parameter.

    Source:Manojkumar J
    Published:21 Jul 2025
    3.5
    Low

    CVE-2025-51385

    Last Modified: 1 Aug 2025

    D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the yyxz_dlink_asp function via the id parameter.

    Published:31 Jul 2025
    Unknown

    CVE-2025-51046

    https://github.com/0xMesh-X/CVE-2025-51046

    7.5
    High

    CVE-2025-51040

    Last Modified: 9 Oct 2025

    Electrolink FM/DAB/TV Transmitter Web Management System Unauthorized access vulnerability via the /FrameSetCore.html endpoint in Electrolink 500W, 1kW, 2kW Medium DAB Transmitter Web v01.09, v01.08, v01.07, and Display v1.4, v1.2.

    Published:6 Aug 2025
    7.8
    High

    CVE-2025-51006

    Last Modified: 14 Oct 2025

    Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the dlt_linuxsll2_cleanup() function in plugins/dlt_linuxsll2/linuxsll2.c. This vulnerability is triggered when tcpedit_dlt_cleanup() indirectly invokes the cleanup routine multiple times on the same memory region. By supplying a specifically crafted pcap file to the tcprewrite binary, a local attacker can exploit this flaw to cause a Denial of Service (DoS) via memory corruption.

    Published:22 Sept 2025
    7.5
    High

    CVE-2025-51005

    Last Modified: 8 Oct 2025

    A heap-buffer-overflow vulnerability exists in the tcpliveplay utility of the tcpreplay-4.5.1. When a crafted pcap file is processed, the program incorrectly handles memory in the checksum calculation logic at do_checksum_math_liveplay in tcpliveplay.c, leading to a possible denial of service.

    Published:23 Sept 2025
    6.5
    Medium

    CVE-2025-50946

    Last Modified: 17 Oct 2025

    OS Command Injection in Olivetin 2025.4.22 Custom Themes via the ParseRequestURI function in service/internal/executor/arguments.go.

    Published:13 Aug 2025
    8.8
    High

    CVE-2025-50944

    Last Modified: 14 Oct 2025

    An issue was discovered in the method push.lite.avtech.com.MySSLSocketFactoryNew.checkServerTrusted in AVTECH EagleEyes 2.0.0. The custom X509TrustManager used in checkServerTrusted only checks the certificate's expiration date, skipping proper TLS chain validation.

    Published:15 Sept 2025
    8.8
    High

    CVE-2025-50881

    Last Modified: 23 Mar 2026

    The `flow/admin/moniteur.php` script in Use It Flow administration website before 10.0.0 is vulnerable to Remote Code Execution. When handling GET requests, the script takes user-supplied input from the `action` URL parameter, performs insufficient validation, and incorporates this input into a string that is subsequently executed by the `eval()` function. Although a `method_exists()` check is performed, it only validates the part of the user input *before* the first parenthesis `(`, allowing an attacker to append arbitrary PHP code after a valid method call structure. Successful exploitation allows an unauthenticated or trivially authenticated attacker to execute arbitrary PHP code on the server with the privileges of the web server process.

    Published:16 Mar 2026
    6.5
    Medium

    CVE-2025-50867

    Last Modified: 6 Aug 2025

    A SQL Injection vulnerability exists in the takeassessment2.php endpoint of the CloudClassroom-PHP-Project 1.0, where the Q5 POST parameter is directly embedded in SQL statements without sanitization.

    Published:31 Jul 2025
    6.1
    Medium

    CVE-2025-50866

    Last Modified: 6 Aug 2025

    CloudClassroom-PHP-Project 1.0 contains a reflected Cross-site Scripting (XSS) vulnerability in the email parameter of the postquerypublic endpoint. Improper sanitization allows an attacker to inject arbitrary JavaScript code that executes in the context of the user s browser, potentially leading to session hijacking or phishing attacks.

    Published:31 Jul 2025
    7.8
    High

    CVE-2025-50777

    Last Modified: 6 Aug 2025

    The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1.00.02) contains an Incorrect Access Control vulnerability that allows local attackers to gain root shell access. Once accessed, the device exposes critical data including Wi-Fi credentials and ONVIF service credentials stored in plaintext, enabling further compromise of the network and connected systems.

    Published:30 Jul 2025
    9.6
    Critical

    CVE-2025-50754

    Last Modified: 15 Apr 2026

    Unisite CMS version 5.0 contains a stored Cross-Site Scripting (XSS) vulnerability in the "Report" functionality. A malicious script submitted by an attacker is rendered in the admin panel when viewed by an administrator. This allows attackers to hijack the admin session and, by leveraging the template editor, upload and execute a PHP web shell on the server, leading to full remote code execution.

    Published:4 Aug 2025
    9.8
    Critical

    CVE-2025-50738

    Last Modified: 22 Aug 2025

    The Memos application, up to version v0.24.3, allows for the embedding of markdown images with arbitrary URLs. When a user views a memo containing such an image, their browser automatically fetches the image URL without explicit user consent or interaction beyond viewing the memo. This can be exploited by an attacker to disclose the viewing user's IP address, browser User-Agent string, and potentially other request-specific information to the attacker-controlled server, leading to information disclosure and user tracking.

    Published:29 Jul 2025
    Unknown

    CVE-2025-50716

    https://github.com/MooseLoveti/RealEstate-PHP-CVE-Report

    7.8
    High

    CVE-2025-50675

    Last Modified: 15 Apr 2026

    GPMAW 14, a bioinformatics software, has a critical vulnerability related to insecure file permissions in its installation directory. The directory is accessible with full read, write, and execute permissions for all users, allowing unprivileged users to manipulate files within the directory, including executable files like GPMAW3.exe, Fragment.exe, and the uninstaller GPsetup64_17028.exe. An attacker with user-level access can exploit this misconfiguration by replacing or modifying the uninstaller (GPsetup64_17028.exe) with a malicious version. While the application itself runs in the user's context, the uninstaller is typically executed with administrative privileges when an administrator attempts to uninstall the software. By exploiting this flaw, an attacker could gain administrative privileges and execute arbitrary code in the context of the admin, resulting in privilege escalation.

    Published:7 Aug 2025
    5.4
    Medium

    CVE-2025-50592

    Last Modified: 15 Aug 2025

    Cross site scripting vulnerability in seacms before 13.2 via the vid parameter to Upload/js/player/dmplayer/player.

    Published:5 Aug 2025
    6.5
    Medium

    CVE-2025-50565

    Last Modified: 5 Sept 2025

    Doubo ERP 1.0 has an SQL injection vulnerability due to a lack of filtering of user input, which can be remotely initiated by an attacker.

    Published:2 Sept 2025
    7.8
    High

    CVE-2025-50505

    Last Modified: 15 Apr 2026

    Clash Verge Rev thru 2.2.3 (fixed in 2.3.0) forces the installation of system services(clash-verge-service) by default and exposes key functions through the unauthorized HTTP API `/start_clash`, allowing local users to submit arbitrary bin_path parameters and pass them directly to the service process for execution, resulting in local privilege escalation.

    Published:7 Oct 2025
    4.8
    Medium

    CVE-2025-50481

    Last Modified: 28 Jul 2025

    A cross-site scripting (XSS) vulnerability in the component /blog/blogpost/add of Mezzanine CMS v6.1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into a blog post.

    Source:Kevin Dicks
    Published:23 Jul 2025
    Items Per Page