CVE Alert: CVE-2025-4368
Vulnerability Summary: CVE-2025-4368 A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected is the function...
Vulnerability Summary: CVE-2025-4368 A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected is the function...
Vulnerability Summary: CVE-2025-45490 Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS function via...
Vulnerability Summary: CVE-2025-25014 A Prototype pollution vulnerability in Kibana leads to arbitrary code execution via crafted HTTP requests to machine...
Vulnerability Summary: CVE-2025-30165 vLLM is an inference and serving engine for large language models. In a multi-node vLLM deployment using...
Vulnerability Summary: CVE-2025-45250 MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url function of the...
Vulnerability Summary: CVE-2025-46736 Umbraco is a free and open source .NET content management system. Prior to versions 10.8.10 and 13.8.1,...
Vulnerability Summary: CVE-2025-32022 Finit provides fast init for Linux systems. Finit's urandom plugin has a heap buffer overwrite vulnerability at...
Vulnerability Summary: CVE-2025-46815 The identity infrastructure software ZITADEL offers developers the ability to manage user sessions using the Session API....
Vulnerability Summary: CVE-2025-46816 goshs is a SimpleHTTPServer written in Go. Starting in version 0.3.4 and prior to version 1.0.5, running...
Vulnerability Summary: CVE-2025-44900 In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform/GetParentControlInfo, the manipulation of the...
Vulnerability Summary: CVE-2025-37730 Improper certificate validation in Logstash's TCP output could lead to a man-in-the-middle (MitM) attack in “client” mode,...
Vulnerability Summary: CVE-2025-46820 phpgt/Dom provides access to modern DOM APIs. Versions of phpgt/Dom prior to 4.1.8 expose the GITHUB_TOKEN in...
Vulnerability Summary: CVE-2025-0855 The PGS Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up to,...
Vulnerability Summary: CVE-2024-12225 A vulnerability was found in Quarkus in the quarkus-security-webauthn module. The Quarkus WebAuthn module publishes default REST...
Vulnerability Summary: CVE-2025-0853 The PGS Core plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the...
Vulnerability Summary: CVE-2025-47256 Libxmp through 4.6.2 has a stack-based buffer overflow in depack_pha in loaders/prowizard/pha.c via a malformed Pha format...
Vulnerability Summary: CVE-2025-0856 The PGS Core plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due...
Vulnerability Summary: CVE-2025-46720 Keystone is a content management system for Node.js. Prior to version 6.5.0, `{field}.isFilterable` access control can be...
Vulnerability Summary: CVE-2025-4283 A vulnerability was found in SourceCodester/oretnom23 Stock Management System 1.0 and classified as critical. This issue affects...
Vulnerability Summary: CVE-2025-4279 The External image replace plugin for WordPress is vulnerable to arbitrary file uploads due to missing file...
Vulnerability Summary: CVE-2025-1909 The BuddyBoss Platform Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
Vulnerability Summary: CVE-2025-46340 Misskey is an open source, federated social media platform. Starting in version 12.0.0 and prior to version...
Vulnerability Summary: CVE-2025-4287 A vulnerability was found in PyTorch 2.6.0+cu124. It has been rated as problematic. Affected by this issue...
Vulnerability Summary: CVE-2025-4286 A vulnerability was found in Intelbras InControl up to 2.21.59. It has been classified as problematic. Affected...