Show filters
350,199 Total Results
Displaying 421-430 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2025-1634

Disclosure Date: February 26, 2025 (last updated February 28, 2025)
A flaw was found in the quarkus-resteasy extension, which causes memory leaks when client requests with low timeouts are made. If a client request times out, a buffer is not released correctly, leading to increased memory usage and eventual application crash due to OutOfMemoryError.
0
Attacker Value
Unknown

CVE-2025-0941

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
MET ONE 3400+ instruments running software v1.0.41 can, under rare conditions, temporarily store credentials in plain text within the system. This data is not available to unauthenticated users.
0
Attacker Value
Unknown

CVE-2025-25462

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
A SQL Injection vulnerability was found in /admin/add-propertytype.php in PHPGurukul Land Record System Project in PHP v1.0 allows remote attackers to execute arbitrary code via the propertytype POST request parameter.
0
Attacker Value
Unknown

CVE-2024-53427

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
jq v1.7.1 contains a stack-buffer-overflow in the decNumberCopy function within decNumber.c.
0
Attacker Value
Unknown

CVE-2024-46226

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
A stored cross site scripting (XSS) vulnerability in HelpDeskZ < v2.0.2 allows remote attackers to execute arbitrary JavaScript in the administration panel by including a malicious payload into the file name and upload file function when creating a new ticket.
0
Attacker Value
Unknown

CVE-2025-25827

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
A Server-Side Request Forgery (SSRF) in the component sort.php of Emlog Pro v2.5.4 allows attackers to scan local and internal ports via supplying a crafted URL.
0
Attacker Value
Unknown

CVE-2025-25825

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Titile in the article category section.
0
Attacker Value
Unknown

CVE-2025-25823

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the article header at /admin/article.php.
0
Attacker Value
Unknown

CVE-2025-25818

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the postStrVar function at article_save.php.
0
Attacker Value
Unknown

CVE-2025-25813

Disclosure Date: February 26, 2025 (last updated February 27, 2025)
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_files.php.
0