Page(s) : 1 ... 16 17 18 19 20 21 22 23 24 25 [26] 27 28 29 30 31 32 33 34 35 36 ... | Result(s) : 114970 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
6.7 | 2025-06-10 | CVE-2025-47171 | cve | Improper input validation in Microsoft Office Outlook allows an authorized attacker to execute code locally. |
5.5 | 2025-06-10 | CVE-2025-47956 | cve | External control of file name or path in Windows Security App allows an authorized attacker to perform spoofing locally. |
4.4 | 2025-06-10 | CVE-2025-47969 | cve | Exposure of sensitive information to an unauthorized actor in Windows Hello allows an authorized attacker to disclose information locally. |
5.4 | 2025-06-10 | CVE-2025-5970 | cve | A vulnerability was found in PHPGurukul Restaurant Table Booking System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admi... |
4.3 | 2025-06-10 | CVE-2025-41657 | cve | Due to an undocumented active bluetooth stack on products delivered within the period 01.01.2024 to 09.05.2025 fingerprinting is possible by an unauthenticated adjacent attacker. |
6.4 | 2025-06-10 | CVE-2025-2918 | cve | The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 3.3.3 ... |
6.4 | 2025-06-10 | CVE-2025-4577 | cve | The Smash Balloon Social Post Feed – Simple Social Feeds for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the data-color attribute in all vers... |
6.4 | 2025-06-10 | CVE-2025-4774 | cve | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the data-countdown attribute of Countdown widget in all versions up to, an... |
6.4 | 2025-06-10 | CVE-2025-3076 | cve | The Elementor Website Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘button_text’ parameter in all versions up to, and including, 3.29.0 ... |
5.3 | 2025-06-10 | CVE-2025-5935 | cve | A vulnerability was found in Open5GS up to 2.7.3. It has been declared as problematic. Affected by this vulnerability is the function common_register_state of the file src/mme/e... |
5.8 | 2025-06-10 | CVE-2025-31325 | cve | Due to a Cross-Site Scripting vulnerability in SAP NetWeaver (ABAP Keyword Documentation), an unauthenticated attacker could inject malicious JavaScript into a web page through ... |
5.4 | 2025-06-10 | CVE-2025-42984 | cve | SAP S/4HANA Manage Central Purchase Contract does not perform necessary authorization checks for an authenticated user. Due to this, an attacker could execute the function impor... |
4.3 | 2025-06-10 | CVE-2025-42987 | cve | SAP Manage Processing Rules (For Bank Statement) allows an attacker with basic privileges to edit shared rules of any user by tampering the request parameter. Due to missing aut... |
4.3 | 2025-06-10 | CVE-2025-42991 | cve | SAP S/4HANA (Bank Account Application) does not perform necessary authorization checks. This allows an authenticated 'approver' user to delete attachment from bank acc... |
6.7 | 2025-06-10 | CVE-2025-42993 | cve | Due to a missing authorization check vulnerability in SAP S/4HANA (Enterprise Event Enablement), an attacker with access to the Inbound Binding Configuration could create an RFC... |
5.6 | 2025-06-10 | CVE-2025-42996 | cve | SAP MDM Server allows an attacker to gain control of existing client sessions and execute certain functions without having to re-authenticate giving the ability to access or mod... |
5.3 | 2025-06-10 | CVE-2025-42998 | cve | The security settings in the SAP Business One Integration Framework are not adequately checked, allowing attackers to bypass the 403 Forbidden error and access restricted pages.... |
4.3 | 2025-06-10 | CVE-2025-5925 | cve | The Bunny’s Print CSS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.95. This is due to missing or incorrect nonce vali... |
4.3 | 2025-06-09 | CVE-2025-5888 | cve | A vulnerability was found in jsnjfz WebStack-Guns 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to... |
4.3 | 2025-06-09 | CVE-2025-5890 | cve | A vulnerability classified as problematic has been found in actions toolkit 0.5.0. This affects the function globEscape of the file toolkit/packages/glob/src/internal-pattern.ts... |
Page(s) : 1 ... 16 17 18 19 20 21 22 23 24 25 [26] 27 28 29 30 31 32 33 34 35 36 ... | Result(s) : 114970 |