Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 31 32 33 34 35 36 37 38 39 40 [41] 42 43 44 45 46 47 48 49 50 51 ... Result(s) : 114976

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
4.3 2025-05-22 CVE-2025-4419 cve The Hot Random Image plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.9.2 via the 'path' parameter. This makes it possible ...
5.3 2025-05-22 CVE-2025-3939 cve Observable Response Discrepancy vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysi...
4.3 2025-05-22 CVE-2025-1110 cve An issue has been discovered in GitLab CE/EE affecting all versions from 18.0 before 18.0.1. In certain circumstances, a user with limited permissions could access Job Data via ...
6.5 2025-05-22 CVE-2025-2853 cve An issue has been discovered in GitLab CE/EE affecting all versions before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. A lack of proper validation in GitLab could all...
6.5 2025-05-22 CVE-2025-3111 cve An issue has been discovered in GitLab CE/EE affecting all versions from 10.2 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. A lack of input validation in the Kub...
4.3 2025-05-22 CVE-2025-0605 cve An issue has been discovered in GitLab CE/EE affecting all versions from 16.8 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. Group access controls could allow cer...
4.3 2025-05-22 CVE-2025-0679 cve An issue has been discovered in GitLab CE/EE affecting all versions from 17.1 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. Under certain conditions un-authorise...
6.5 2025-05-22 CVE-2025-0993 cve An issue has been discovered in GitLab CE/EE affecting all versions before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. This could allow an authenticated attacker to c...
6.1 2025-05-22 CVE-2025-33138 cve IBM Aspera Faspex 5.0.0 through 5.0.12 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim�...
5.5 2025-05-22 CVE-2025-48066 cve wire-webapp is the web application for the open-source messaging service Wire. A bug fix caused a regression causing an issue with function to delete local data. Instructing the...
5.4 2025-05-22 CVE-2025-48366 cve Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions 6.8.119 and 25.0.20, a stored and blind XSS vulnerability exists in the Phon...
5.4 2025-05-22 CVE-2025-48368 cve Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions 6.8.119 and 25.0.20, a DOM-based Cross-Site Scripting (XSS) vulnerability ex...
5.4 2025-05-22 CVE-2025-48369 cve Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions 6.8.119 and 25.0.20, a persistent Cross-Site Scripting (XSS) vulnerability e...
4.7 2025-05-21 CVE-2025-5010 cve A vulnerability classified as problematic has been found in moonlightL hexo-boot 4.3.0. This affects an unknown part of the file /admin/home/index.html of the component Blog Bac...
4.7 2025-05-21 CVE-2025-5011 cve A vulnerability classified as problematic was found in moonlightL hexo-boot 4.3.0. This vulnerability affects unknown code of the file /admin/home/index.html of the component Dy...
4.7 2025-05-21 CVE-2025-5013 cve A vulnerability, which was classified as problematic, was found in HkCms up to 2.3.2.240702. This affects an unknown part of the file /index.php/search/index.html of the compone...
5.3 2025-05-21 CVE-2021-25254 cve Yandex Browser Lite for Android before 21.1.0 allows remote attackers to spoof the address bar.
5.4 2025-05-21 CVE-2021-25262 cve Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homograph attack.
6.1 2025-05-21 CVE-2024-12561 cve The Affiliate Sales in Google Analytics and other tools plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 1.4.9. This is due to insuffici...
6.4 2025-05-21 CVE-2025-3750 cve The Network Posts Extended plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘post_height’ parameter in all versions up to, and including, 7.7.1 due to i...
Page(s) : 1 ... 31 32 33 34 35 36 37 38 39 40 [41] 42 43 44 45 46 47 48 49 50 51 ... Result(s) : 114976