CVE Alert: CVE-2025-33020
Vulnerability Summary: CVE-2025-33020 IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 transmits sensitive information without encryption that could allow...
Vulnerability Summary: CVE-2025-33020 IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 transmits sensitive information without encryption that could allow...
Vulnerability Summary: CVE-2025-50481 A cross-site scripting (XSS) vulnerability in the component /blog/blogpost/add of Mezzanine CMS v6.1.0 allows attackers to execute...
Vulnerability Summary: CVE-2025-8069 During the AWS Client VPN client installation on Windows devices, the install process references the C:\usr\local\windows-x86_64-openssl-localbuild\ssl directory...
Vulnerability Summary: CVE-2025-46171 vBulletin 3.8.7 is vulnerable to a denial-of-service condition via the misc.php?do=buddylist endpoint. If an authenticated user has...
Vulnerability Summary: CVE-2025-2633 Out of bounds read vulnerability due to improper bounds checking in NI LabVIEW in lvre!UDecStrToNum that may...
Vulnerability Summary: CVE-2025-2634 Out of bounds read vulnerability due to improper bounds checking in NI LabVIEW in fontmgr may result...
Vulnerability Summary: CVE-2025-4439 An issue has been discovered in GitLab CE/EE affecting all versions from 15.10 before 18.0.5, 18.1 before...
Vulnerability Summary: CVE-2025-50477 A URL redirection in lbry-desktop v0.53.9 allows attackers to redirect victim users to attacker-controlled pages. Affected Endpoints:...
Vulnerability Summary: CVE-2025-46686 Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an...
Vulnerability Summary: CVE-2025-4700 An issue has been discovered in GitLab CE/EE affecting all versions from 15.10 before 18.0.5, 18.1 before...
Vulnerability Summary: CVE-2025-47187 A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970...
Vulnerability Summary: CVE-2025-53537 LibHTP is a security-aware parser for the HTTP protocol and its related bits and pieces. In versions...
Vulnerability Summary: CVE-2025-44109 A URL redirection in Pinokio v3.6.23 allows attackers to redirect victim users to attacker-controlled pages. Affected Endpoints:...
Vulnerability Summary: CVE-2025-54377 Roo Code is an AI-powered autonomous coding agent that lives in users' editors. In versions 3.23.18 and...
Vulnerability Summary: CVE-2025-47281 Kyverno is a policy engine designed for cloud native platform engineering teams. In versions 1.14.1 and below,...
Vulnerability Summary: CVE-2025-32019 Harbor is an open source trusted cloud native registry project that stores, signs, and scans content. Versions...
Vulnerability Summary: CVE-2025-4295 Improper Validation of Certificate with Host Mismatch vulnerability in HotelRunner B2B allows HTTP Response Splitting.This issue affects...
Vulnerability Summary: CVE-2025-8017 A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the...
Vulnerability Summary: CVE-2025-4294 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in HotelRunner B2B allows...
Vulnerability Summary: CVE-2025-51860 Stored Cross-Site Scripting (XSS) in TelegAI (telegai.com) 2025-05-26 in its chat component and character container component. An...
Vulnerability Summary: CVE-2025-51862 Insecure Direct Object Reference (IDOR) vulnerability in TelegAI (telegai.com) thru 2025-05-26 in its chat component. An attacker...
Vulnerability Summary: CVE-2025-4878 A vulnerability was found in libssh, where an uninitialized variable exists under certain conditions in the privatekey_from_file()...
Vulnerability Summary: CVE-2025-51859 Stored Cross-Site Scripting (XSS) vulnerability in Chaindesk thru 2025-05-26 in its agent chat component. An attacker can...
Vulnerability Summary: CVE-2025-51864 A reflected cross-site scripting (XSS) vulnerability exists in AIBOX LLM chat (chat.aibox365.cn) through 2025-05-27, allowing attackers to...