CVE Alert: CVE-2025-49192
Vulnerability Summary: CVE-2025-49192 The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing...
Vulnerability Summary: CVE-2025-49192 The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing...
Vulnerability Summary: CVE-2025-36573 Dell Smart Dock Firmware, versions prior to 01.00.08.01, contain an Insertion of Sensitive Information into Log File...
Vulnerability Summary: CVE-2025-46035 Buffer Overflow vulnerability in Tenda AC6 v.15.03.05.16 allows a remote attacker to cause a denial of service...
Vulnerability Summary: CVE-2025-5982 An issue has been discovered in GitLab EE affecting all versions from 12.0 before 17.10.8, 17.11 before...
Vulnerability Summary: CVE-2024-55567 Improper input validation was discovered in UsbCoreDxe in Insyde InsydeH2O kernel 5.4 before 05.47.01, 5.5 before 05.55.01,...
Vulnerability Summary: CVE-2025-49579 Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. All system messages in...
Vulnerability Summary: CVE-2025-49576 Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. The citizen-search-noresults-title and citizen-search-noresults-desc...
Vulnerability Summary: CVE-2025-49578 Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Various date messages returned...
Vulnerability Summary: CVE-2025-49577 Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Various preferences messages are...
Vulnerability Summary: CVE-2025-49575 Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Multiple system messages are...
Vulnerability Summary: CVE-2025-4418 An improper validation of integrity check value vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14...
Vulnerability Summary: CVE-2025-6031 Amazon Cloud Cam is a home security camera that was deprecated on December 2, 2022, is end...
Vulnerability Summary: CVE-2025-44019 AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if exploited, could allow an...
Vulnerability Summary: CVE-2025-36539 AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if exploited, could allow an...
Vulnerability Summary: CVE-2025-4417 A cross-site scripting vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14 and prior that, if...
Vulnerability Summary: CVE-2025-2745 A cross-site scripting vulnerability exists in AVEVA PI Web API version 2023 SP1 and prior that, if...
Vulnerability Summary: CVE-2025-41234 Description In Spring Framework, versions 6.0.x as of 6.0.5, versions 6.1.x and 6.2.x, an application is vulnerable...
Vulnerability Summary: CVE-2025-5484 A username and password are required to authenticate to the central SinoTrack device management interface. The username...
Vulnerability Summary: CVE-2025-41233 Description: VMware AVI Load Balancer contains an authenticated blind SQL Injection vulnerability. VMware has evaluated the severity...
Vulnerability Summary: CVE-2025-5485 User names used to access the web management interface are limited to the device identifier, which is...
Vulnerability Summary: CVE-2025-27689 Dell iDRAC Tools, version(s) prior to 11.3.0.0, contain(s) an Improper Access Control vulnerability. A low privileged attacker...
Vulnerability Summary: CVE-2025-4275 Running the provided utility changes the certificate on any Insyde BIOS and then the attached .efi file...
Vulnerability Summary: CVE-2025-4666 The Zotpress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘nickname’ parameter in all...
Vulnerability Summary: CVE-2025-5959 Type Confusion in V8 in Google Chrome prior to 137.0.7151.103 allowed a remote attacker to execute arbitrary...