Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 594 595 596 597 598 599 600 601 602 603 [604] 605 606 607 608 609 610 611 612 613 614 ... Result(s) : 299795

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
7.8 2025-04-01 CVE-2025-1659 cve A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cau...
7.8 2025-04-01 CVE-2025-1658 cve A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cau...
N/A 2025-04-01 CVE-2025-1534 cve CVE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Payara Platform Payara Server allows : Remote Code Inclus...
6.4 2025-04-01 CVE-2025-1512 cve The PowerPack Elementor Addons (Free Widgets, Extensions and Templates) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Cursor Extension in all ...
5.5 2025-04-01 CVE-2025-1267 cve The Groundhogg plugin for Wordpress is vulnerable to Stored Cross-Site Scripting via the ‘label' parameter in versions up to, and including, 3.7.4.1 due to insufficient inp...
N/A 2025-04-01 CVE-2025-0418 cve Valmet DNA user passwords in plain text. This practice poses a security risk as attackers who gain access to local project data can read the passwords.
N/A 2025-04-01 CVE-2025-0417 cve Lack of protection against brute force attacks in Valmet DNA visualization in DNA Operate. The possibility to make an arbitrary number of login attempts without any rate limit g...
N/A 2025-04-01 CVE-2025-0416 cve Local privilege escalation through insecure DCOM configuration in Valmet DNA versions prior to C2023. The DCOM object Valmet DNA Engineering has permissions that allow it to run...
N/A 2025-04-01 CVE-2024-56325 cve Authentication Bypass Issue If the path does not contain / and contain., authentication is not required. Expected Normal Request and Response Example curl -X POST -H "Content...
N/A 2025-04-01 CVE-2024-13941 cve A vulnerability was found in ouch-org ouch up to 0.3.1. It has been classified as critical. This affects the function ouch::archive::zip::convert_zip_date_time of the file zip.r...
7.5 2025-04-01 CVE-2024-13567 cve The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.3.1 via th...
9.8 2025-04-01 CVE-2024-13553 cve The SMS Alert Order Notifications – WooCommerce plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.7.9. This...
6.1 2025-04-01 CVE-2024-12278 cve The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via any location that typically sanitizes data using wp_kses, like comments, in all...
6.4 2025-04-01 CVE-2024-12189 cve The WDesignKit – Elementor & Gutenberg Starter Templates, Patterns, Cloud Workspace & Widget Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom...
N/A 2025-04-01 CVE-2023-46988 cve Path Traversal vulnerability in ONLYOFFICE Document Server before v8.0.1 allows a remote attacker to copy arbitrary files by manipulating the fileExt parameter in the /example/e...
N/A 2025-04-01 CVE-2018-1472 cve Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it was erroneously associated with an open source vulnerability by another ven...
N/A 2025-04-01 CVE-2003-20001 cve An issue was discovered on Mitel ICP VoIP 3100 devices. When a remote user attempts to log in via TELNET during the login wait time and an external call comes in, the system inc...
N/A 2025-04-01 CVE-2025-21931 cve In the Linux kernel, the following vulnerability has been resolved: hwpoison, memory_hotplug: lock folio before unmap hwpoisoned folio Commit b15c87263a69 ("hwpoison, memory_h...
N/A 2025-03-31 CVE-2025-31697 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Formatter Suite allows Cross-Site Scripting (XSS).This iss...
N/A 2025-03-31 CVE-2025-31696 cve Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal RapiDoc OAS Field Formatter allows Cross-Site Scripting (X...
Page(s) : 1 ... 594 595 596 597 598 599 600 601 602 603 [604] 605 606 607 608 609 610 611 612 613 614 ... Result(s) : 299795