CVE Alert: CVE-2025-32908
Vulnerability Summary: CVE-2025-32908 A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values...
Vulnerability Summary: CVE-2025-32908 A flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values...
Vulnerability Summary: CVE-2025-2160 Pega Platform versions 8.4.3 to Infinity 24.2.1 are affected by an XSS issue with Mashup Affected Endpoints:...
Vulnerability Summary: CVE-2024-49825 IBM Robotic Process Automation and Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.20 and 23.0.0 through...
Vulnerability Summary: CVE-2025-2424 Mattermost versions 10.5.x
Vulnerability Summary: CVE-2025-2161 Pega Platform versions 7.2.1 to Infinity 24.2.1 are affected by an XSS issue with Mashup Affected Endpoints:...
Vulnerability Summary: CVE-2025-2475 Mattermost versions 10.5.x
Vulnerability Summary: CVE-2025-32910 A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue...
Vulnerability Summary: CVE-2025-3571 A vulnerability was found in Fannuo Enterprise Content Management System 凡诺企业网站管理系统 1.1/4.0. It has been declared as...
Vulnerability Summary: CVE-2025-32909 A flaw was found in libsoup. SoupContentSniffer may be vulnerable to a NULL pointer dereference in the...
Vulnerability Summary: CVE-2025-32912 A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP...
Vulnerability Summary: CVE-2025-32914 A flaw was found in libsoup, where the soup_multipart_new_from_message() function is vulnerable to an out-of-bounds read. This...
Vulnerability Summary: CVE-2025-29720 Dify v1.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component controllers.console.remote_files.RemoteFileUploadApi. Affected Endpoints:...
Vulnerability Summary: CVE-2025-3585 A vulnerability classified as critical has been found in westboy CicadasCMS 1.0. This affects an unknown part...
Vulnerability Summary: CVE-2025-32931 DevDojo Voyager 1.4.0 through 1.8.0, when Laravel 8 or later is used, allows authenticated administrators to execute...
Vulnerability Summary: CVE-2025-2572 In WhatsUp Gold versions released before 2024.0.3, a database manipulation vulnerability allows an unauthenticated attacker to modify...
Vulnerability Summary: CVE-2025-3570 A vulnerability was found in JamesZBL/code-projects db-hospital-drug 1.0. It has been classified as problematic. This affects the...
Vulnerability Summary: CVE-2022-43850 IBM Aspera Console 3.4.0 through 3.4.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed...
Vulnerability Summary: CVE-2022-43847 IBM Aspera Console 3.4.0 through 3.4.4 is vulnerable to HTTP header injection, caused by improper validation of...
Vulnerability Summary: CVE-2025-1782 In HylaFAX Enterprise Web Interface and AvantFAX, the language form element is not properly sanitized before being...
Vulnerability Summary: CVE-2025-3587 A vulnerability classified as critical was found in ZeroWdd/code-projects studentmanager 1.0. This vulnerability affects unknown code of...
Vulnerability Summary: CVE-2022-43840 IBM Aspera Console 3.4.0 through 3.4.4 is vulnerable to an XPath injection vulnerability, which could allow an...
Vulnerability Summary: CVE-2025-3589 A vulnerability, which was classified as critical, was found in SourceCodester Music Class Enrollment System 1.0. Affected...
Vulnerability Summary: CVE-2022-43852 IBM Aspera Console 3.4.0 through 3.4.4 could disclose sensitive information in HTTP headers that could be used...
Vulnerability Summary: CVE-2025-3588 A vulnerability, which was classified as problematic, has been found in joelittlejohn jsonschema2pojo 1.2.2. This issue affects...