CVE Alert: CVE-2024-13786
Vulnerability Summary: CVE-2024-13786 The education theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and...
Vulnerability Summary: CVE-2024-13786 The education theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and...
Vulnerability Summary: CVE-2025-6017 A flaw was found in Red Hat Advanced Cluster Management through versions 2.10, before 2.10.7, 2.11, before...
Vulnerability Summary: CVE-2025-24334 The Nokia Single RAN baseband software earlier than 23R2-SR 1.0 MP can be made to reveal the...
Vulnerability Summary: CVE-2025-24331 The Single RAN baseband OAM service is intended to run as an unprivileged service. However, it initially...
Vulnerability Summary: CVE-2025-24330 Sending a crafted SOAP "provision" operation message PlanId field within the Mobile Network Operator (MNO) internal Radio...
Vulnerability Summary: CVE-2025-24329 Sending a crafted SOAP "provision" operation message archive field within the Mobile Network Operator (MNO) internal Radio...
Vulnerability Summary: CVE-2025-24332 Nokia Single RAN AirScale baseband allows an authenticated administrative user access to all physical boards after performing...
Vulnerability Summary: CVE-2025-24333 Nokia Single RAN baseband software earlier than 24R1-SR 1.0 MP contains administrative shell input validation fault, which...
Vulnerability Summary: CVE-2025-27021 The misconfiguration in the sudoers configuration of the operating system in Infinera G42 version R6.1.3 allows low...
Vulnerability Summary: CVE-2025-27022 A path traversal vulnerability of the WebGUI HTTP endpoint in Infinera G42 version R6.1.3 allows remote authenticated...
Vulnerability Summary: CVE-2025-24335 Nokia Single RAN baseband software versions earlier than 24R1-SR 2.1 MP contain a SOAP message input validation...
Vulnerability Summary: CVE-2025-27025 The target device exposes a service on a specific TCP port with a configured endpoint. The access...
Vulnerability Summary: CVE-2025-27024 Unrestricted access to OS file system in SFTP service in Infinera G42 version R6.1.3 allows remote authenticated...
Vulnerability Summary: CVE-2025-4946 The Vikinger theme for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation...
Vulnerability Summary: CVE-2024-35164 The terminal emulator of Apache Guacamole 1.5.5 and older does not properly validate console codes received from...
Vulnerability Summary: CVE-2025-27023 Lack or insufficent input validation in WebGUI CLI web in Infinera G42 version R6.1.3 allows remote authenticated...
Vulnerability Summary: CVE-2025-39362 Missing Authorization vulnerability in Mollie Mollie Payments for WooCommerce.This issue affects Mollie Payments for WooCommerce: from n/a...
Vulnerability Summary: CVE-2025-2330 The All-in-One Addons for Elementor – WidgetKit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Vulnerability Summary: CVE-2025-27026 A missing double-check feature in the WebGUI for CLI deactivation in Infinera G42 version R6.1.3 allows an...
Vulnerability Summary: CVE-2025-52891 ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx....
Vulnerability Summary: CVE-2025-53492 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki...
Vulnerability Summary: CVE-2025-46647 A vulnerability of plugin openid-connect in Apache APISIX. This vulnerability will only have an impact if all...
Vulnerability Summary: CVE-2025-45029 WINSTAR WN572HP3 v230525 was discovered to contain a heap overflow via the CONTENT_LENGTH variable at /cgi-bin/upload.cgi. Affected...
Vulnerability Summary: CVE-2025-6725 In the PdfViewer component, a Cross-Site Scripting (XSS) vulnerability is possible if a specially-crafted document has already...