NA - CVE-2025-53093 - TabberNeue is a MediaWiki extension that allows...
TabberNeue is a MediaWiki extension that allows the wiki to create tabs. Starting in version 3.0.0 and prior to version 3.1.1, any user can insert arbitrary HTMLinto the DOM by inserting a payload...
NA - CVE-2025-5310 - Dover Fueling Solutions ProGauge MagLink LX...
Dover Fueling Solutions ProGauge MagLink LX Consoles expose an undocumented and unauthenticated target communication framework (TCF) interface on a specific port. Files can be created, deleted, or...
NA - CVE-2025-6522 - Unauthenticated users on an adjacent network...
Unauthenticated users on an adjacent network with the Sight Bulb Pro can run shell commands as root through a vulnerable proprietary TCP protocol available on Port 16668. This vulnerability...
High - CVE-2025-6772 - A vulnerability was found in eosphoros-ai...
A vulnerability was found in eosphoros-ai db-gpt up to 0.7.2. It has been classified as critical. Affected is the function import_flow of the file /api/v2/serve/awel/flow/import. The manipulation...
Medium - CVE-2025-6773 - A vulnerability was found in HKUDS LightRAG up...
A vulnerability was found in HKUDS LightRAG up to 1.3.8. It has been declared as critical. Affected by this vulnerability is the function upload_to_input_dir of the file...
NA - CVE-2025-53094 - ESPAsyncWebServer is an asynchronous HTTP and...
ESPAsyncWebServer is an asynchronous HTTP and WebSocket server library for ESP32, ESP8266, RP2040 and RP2350. In versions up to and including 3.7.8, a CRLF (Carriage Return Line Feed) injection...
Medium - CVE-2025-6774 - A vulnerability was found in gooaclok819...
A vulnerability was found in gooaclok819 sublinkX up to 1.8. It has been rated as critical. Affected by this issue is the function AddTemp of the file api/template.go. The manipulation of the...
Medium - CVE-2025-6775 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in xiaoyunjie openvpn-cms-flask up to 1.2.7. This affects the function create_user of the file /app/api/v1/openvpn.py of the component User...
High - CVE-2025-6776 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in xiaoyunjie openvpn-cms-flask up to 1.2.7. This vulnerability affects the function Upload of the file app/plugins/oss/app/controller.py of the...
High - CVE-2025-6777 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in code-projects Food Distributor Site 1.0. This issue affects some unknown processing of the file /admin/process_login.php. The...