Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 40 41 42 43 44 45 46 47 48 49 [50] 51 52 53 54 55 56 57 58 59 60 ... Result(s) : 324174

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
2.8 2025-06-11 CVE-2025-1699 cve An incorrect default permissions vulnerability was reported in the MotoSignature application that could result in unauthorized access.
N/A 2025-06-11 CVE-2025-22874 cve Calling Verify with a VerifyOptions.KeyUsages that contains ExtKeyUsageAny unintentionally disabledpolicy validation. This only affected certificate chains which contain policy ...
N/A 2025-06-11 CVE-2025-40915 cve Mojolicious::Plugin::CSRF 1.03 for Perl uses a weak random number source for generating CSRF tokens. That version of the module generates tokens as an MD5 of the process id, th...
N/A 2025-06-11 CVE-2025-4673 cve Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive information.
N/A 2025-06-11 CVE-2025-6001 cve A Cross-Site Request Forgery (CSRF) vulnerability exists in the product image upload function of VirtueMart that bypasses the CSRF protection token. An attacker is able to craft...
N/A 2025-06-11 CVE-2025-6002 cve An unrestricted file upload vulnerability exists in the Product Image section of the VirtueMart backend. Authenticated attackers can upload files with arbitrary extensions, incl...
8.8 2025-06-11 CVE-2025-4315 cve The CubeWP – All-in-One Dynamic Content Framework plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.1.23. This is due to the plu...
N/A 2025-06-11 CVE-2025-4128 cve Mattermost versions 10.5.x
N/A 2025-06-11 CVE-2025-4573 cve Mattermost versions 10.7.x
7.2 2025-06-11 CVE-2025-3302 cve The Xagio SEO – AI Powered SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘HTTP_REFERER’ parameter in all versions up to, and including, 7.1.0.16 ...
N/A 2025-06-11 CVE-2025-49709 cve Certain canvas operations could have lead to memory corruption. This vulnerability affects Firefox < 139.0.4.
N/A 2025-06-11 CVE-2025-49710 cve An integer overflow was present in `OrderedHashTable` used by the JavaScript engine This vulnerability affects Firefox < 139.0.4.
N/A 2025-06-11 CVE-2025-5687 cve A vulnerability in Mozilla VPN on macOS allows privilege escalation from a normal user to root. *This bug only affects Mozilla VPN on macOS. Other operating systems are unaffect...
N/A 2025-06-11 CVE-2025-5986 cve A crafted HTML email using mailbox:/// links can trigger automatic, unsolicited downloads of .pdf files to the user's desktop or home directory without prompting, even if a...
6.4 2025-06-11 CVE-2025-5144 cve The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-date-*’ parameters in all versions up to, and including, 6.13.2 due to in...
N/A 2025-06-11 CVE-2024-35295 cve A vulnerability has been identified in Perfect Harmony GH180 (All versions >= V8.0 < V8.3.3 with NXGPro+ controller manufactured between April 2020 to April 2025). The maintenan...
8.8 2025-06-11 CVE-2025-5395 cve The WordPress Automatic Plugin plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'core.php' file in all vers...
N/A 2025-06-11 CVE-2025-29756 cve SunGrow's back end users system iSolarCloud https://isolarcloud.com  uses an MQTT service to transport data from the user's connected devices to the user's web b...
N/A 2025-06-11 CVE-2025-5991 cve There is a "Use After Free" vulnerability in Qt's QHttp2ProtocolHandler in the QtNetwork module. This only affects HTTP/2 handling, HTTP handling is not affected by this at...
N/A 2025-06-11 CVE-2025-26412 cve The SIMCom SIM7600G modem supports an undocumented AT command, which allows an attacker to execute system commands with root permission on the modem. An attacker needs either ph...
Page(s) : 1 ... 40 41 42 43 44 45 46 47 48 49 [50] 51 52 53 54 55 56 57 58 59 60 ... Result(s) : 324174