NA - CVE-2025-6522 - Unauthenticated users on an adjacent network...
Unauthenticated users on an adjacent network with the Sight Bulb Pro can run shell commands as root through a vulnerable proprietary TCP protocol available on Port 16668. This vulnerability...
High - CVE-2025-6772 - A vulnerability was found in eosphoros-ai...
A vulnerability was found in eosphoros-ai db-gpt up to 0.7.2. It has been classified as critical. Affected is the function import_flow of the file /api/v2/serve/awel/flow/import. The manipulation...
Medium - CVE-2025-6773 - A vulnerability was found in HKUDS LightRAG up...
A vulnerability was found in HKUDS LightRAG up to 1.3.8. It has been declared as critical. Affected by this vulnerability is the function upload_to_input_dir of the file...
NA - CVE-2025-53094 - ESPAsyncWebServer is an asynchronous HTTP and...
ESPAsyncWebServer is an asynchronous HTTP and WebSocket server library for ESP32, ESP8266, RP2040 and RP2350. In versions up to and including 3.7.8, a CRLF (Carriage Return Line Feed) injection...
Medium - CVE-2025-6774 - A vulnerability was found in gooaclok819...
A vulnerability was found in gooaclok819 sublinkX up to 1.8. It has been rated as critical. Affected by this issue is the function AddTemp of the file api/template.go. The manipulation of the...
Medium - CVE-2025-6775 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in xiaoyunjie openvpn-cms-flask up to 1.2.7. This affects the function create_user of the file /app/api/v1/openvpn.py of the component User...
High - CVE-2025-6776 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in xiaoyunjie openvpn-cms-flask up to 1.2.7. This vulnerability affects the function Upload of the file app/plugins/oss/app/controller.py of the...
High - CVE-2025-6777 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in code-projects Food Distributor Site 1.0. This issue affects some unknown processing of the file /admin/process_login.php. The...
Low - CVE-2025-6778 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, was found in code-projects Food Distributor Site 1.0. Affected is an unknown function of the file /admin/save_settings.php. The manipulation of...
NA - CVE-2025-53097 - Roo Code is an AI-powered autonomous coding...
Roo Code is an AI-powered autonomous coding agent. Prior to version 3.20.3, there was an issue where the Roo Code agent's `search_files` tool did not respect the setting to disable reads...