CVE Alert: CVE-2025-2109
Vulnerability Summary: CVE-2025-2109 The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Server-Side Request...
Vulnerability Summary: CVE-2025-2109 The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Server-Side Request...
Vulnerability Summary: CVE-2025-2635 The Digital License Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use...
Vulnerability Summary: CVE-2025-1445 A vulnerability exists in RTU IEC 61850 client and server functionality that could impact the availability if...
Vulnerability Summary: CVE-2024-10037 A vulnerability exists in the RTU500 web server component that can cause a denial of service to...
Vulnerability Summary: CVE-2024-12169 A vulnerability exists in RTU500 IEC 60870-5-104 controlled station functionality and IEC 61850 functionality, that allows an...
Vulnerability Summary: CVE-2024-11499 A vulnerability exists in RTU500 IEC 60870-4-104 controlled station functionality, that allows an authenticated and authorized attacker...
Vulnerability Summary: CVE-2025-27631 The TRMTracker web application is vulnerable to LDAP injection attack potentially allowing an attacker to inject code...
Vulnerability Summary: CVE-2025-29932 In JetBrains GoLand before 2025.1 an XXE during debugging was possible Affected Endpoints: No affected endpoints listed....
Vulnerability Summary: CVE-2025-22230 VMware Tools for Windows contains an authentication bypass vulnerability due to improper access control. A malicious actor...
Vulnerability Summary: CVE-2025-27633 The TRMTracker web application is vulnerable to reflected Cross-site scripting attack. The application allows client-side code injection...
Vulnerability Summary: CVE-2025-27632 A Host Header Injection vulnerability in TRMTracker application may allow an attacker by modifying the host header...
Vulnerability Summary: CVE-2024-42533 SQL injection vulnerability in the authentication module in Convivance StandVoice 4.5 through 6.2 allows remote attackers to...
Vulnerability Summary: CVE-2025-2531 Luxion KeyShot DAE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
Vulnerability Summary: CVE-2025-27147 The GLPI Inventory Plugin handles various types of tasks for GLPI agents, including network discovery and inventory...
Vulnerability Summary: CVE-2025-26742 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GhozyLab Gallery for Social Photo...
Vulnerability Summary: CVE-2025-29635 A command injection vulnerability in D-Link DIR-823X 240126 and 240802 allows an authorized attacker to execute arbitrary...
Vulnerability Summary: CVE-2025-2532 Luxion KeyShot USDC File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute...
Vulnerability Summary: CVE-2024-31896 IBM SPSS Statistics 26.0, 27.0.1, 28.0.1, and 29.0.2 uses weaker than expected cryptographic algorithms that could allow...
Vulnerability Summary: CVE-2025-2312 A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the...
Vulnerability Summary: CVE-2024-58105 A vulnerability in the Trend Micro Apex One Security Agent Plug-in User Interface Manager could allow a...
Vulnerability Summary: CVE-2025-2530 Luxion KeyShot DAE File Parsing Access of Uninitialized Pointer Remote Code Execution Vulnerability. This vulnerability allows remote...
Vulnerability Summary: CVE-2024-58104 A vulnerability in the Trend Micro Apex One Security Agent Plug-in User Interface Manager could allow a...
Vulnerability Summary: CVE-2025-28904 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shamalli Web Directory...
Vulnerability Summary: CVE-2025-30741 Pixelfed before 0.12.5 allows anyone to follow private accounts and see private posts on other Fediverse servers....