CVE Alert: CVE-2025-48747
Vulnerability Summary: CVE-2025-48747 Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assignment...
Vulnerability Summary: CVE-2025-48747 Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assignment...
Vulnerability Summary: CVE-2025-5256 SummaryThis advisory addresses an Open Redirection vulnerability in Mautic's user unlocking endpoint. This vulnerability could be exploited...
Vulnerability Summary: CVE-2025-48749 Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent...
Vulnerability Summary: CVE-2025-30087 Best Practical RT (Request Tracker) 4.4 through 4.4.7 and 5.0 through 5.0.7 allows XSS via injection of...
Vulnerability Summary: CVE-2025-5232 A vulnerability, which was classified as critical, has been found in PHPGurukul Student Study Center Management System...
Vulnerability Summary: CVE-2025-5231 A vulnerability classified as critical was found in PHPGurukul Company Visitor Management System 1.0. This vulnerability affects...
Vulnerability Summary: CVE-2025-5229 A vulnerability was found in Campcodes Online Hospital Management System 1.0. It has been rated as critical....
Vulnerability Summary: CVE-2025-5230 A vulnerability classified as critical has been found in PHPGurukul Online Nurse Hiring System 1.0. This affects...
Vulnerability Summary: CVE-2025-5228 A vulnerability was found in D-Link DI-8100 up to 20250523. It has been classified as critical. Affected...
Vulnerability Summary: CVE-2025-41650 An unauthenticated remote attacker can exploit input validation in cmd services of the devices, allowing them to...
Vulnerability Summary: CVE-2025-41651 Due to missing authentication on a critical function of the devices an unauthenticated remote attacker can execute...
Vulnerability Summary: CVE-2025-41653 An unauthenticated remote attacker can exploit a denial-of-service vulnerability in the device's web server functionality by sending...
Vulnerability Summary: CVE-2025-23393 A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in spacewalk-java allows...
Vulnerability Summary: CVE-2025-41652 The devices are vulnerable to an authentication bypass due to flaws in the authorization mechanism. An unauthenticated...
Vulnerability Summary: CVE-2025-41649 An unauthenticated remote attacker can exploit insufficient input validation to write data beyond the bounds of a...
Vulnerability Summary: CVE-2025-5244 A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected...
Vulnerability Summary: CVE-2025-5271 Previewing a response in Devtools ignored CSP headers, which could have allowed content injection attacks. This vulnerability...
Vulnerability Summary: CVE-2025-5117 The Property plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on...
Vulnerability Summary: CVE-2025-5270 In certain cases, SNI could have been sent unencrypted even when encrypted DNS was enabled. This vulnerability...
Vulnerability Summary: CVE-2025-5266 Script elements loading cross-origin resources generated load and error events which leaked information enabling XS-Leaks attacks. This...
Vulnerability Summary: CVE-2025-5269 Memory safety bug present in Firefox ESR 128.10, and Thunderbird 128.10. This bug showed evidence of memory...
Vulnerability Summary: CVE-2025-5265 Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could...
Vulnerability Summary: CVE-2025-5268 Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10. Some of...
Vulnerability Summary: CVE-2025-5267 A clickjacking vulnerability could have been used to trick a user into leaking saved payment card details...