NA - CVE-2025-1497 - A vulnerability, that could result in Remote...
A vulnerability, that could result in Remote Code Execution (RCE), has been found in PlotAI. Lack of validation of LLM-generated output allows attacker to execute arbitrary Python code. Vendor...
NA - CVE-2025-25616 - Unifiedtransform 2.0 is vulnerable to Incorrect...
Unifiedtransform 2.0 is vulnerable to Incorrect Access Control, which allows students to modify rules for exams. The affected endpoint is /exams/edit-rule?exam_rule_id=1.
NA - CVE-2025-26865 - Improper Neutralization of Special Elements...
Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Apache OFBiz. This issue affects Apache OFBiz: from 18.12.17 before 18.12.18. It's a regression...
Medium - CVE-2025-2152 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function Assimp::BaseImporter::ConvertToUTF8 of the file...
Medium - CVE-2025-2153 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in HDF5 1.14.6. Affected is the function H5SM_delete of the file H5SM.c of the component h5 File Handler. The manipulation leads to...
High - CVE-2024-12604 - Cleartext Storage of Sensitive Information in...
Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password...