NA - CVE-2025-25299 - CKEditor 5 is a modern JavaScript rich-text...
CKEditor 5 is a modern JavaScript rich-text editor with an MVC architecture. During a recent internal audit, a Cross-Site Scripting (XSS) vulnerability was discovered in the CKEditor 5 real-time...
NA - CVE-2025-27097 - GraphQL Mesh is a GraphQL Federation framework...
GraphQL Mesh is a GraphQL Federation framework and gateway for both GraphQL Federation and non-GraphQL Federation subgraphs, non-GraphQL services, such as REST and gRPC, and also databases such as...
NA - CVE-2025-27098 - GraphQL Mesh is a GraphQL Federation framework...
GraphQL Mesh is a GraphQL Federation framework and gateway for both GraphQL Federation and non-GraphQL Federation subgraphs, non-GraphQL services, such as REST and gRPC, and also databases such as...
NA - CVE-2025-25960 - Cross Site Scripting vulnerability in phpcmsv9...
Cross Site Scripting vulnerability in phpcmsv9 v.9.6.3 allows a remote attacker to escalate privileges via the menu interface of the member center of the background administrator.
NA - CVE-2024-54756 - A remote code execution (RCE) vulnerability in...
A remote code execution (RCE) vulnerability in the ZScript function of ZDoom Team GZDoom v4.13.1 allows attackers to execute arbitrary code via supplying a crafted PK3 file containing a malicious...
NA - CVE-2025-22973 - An issue in QiboSoft QiboCMS X1.0 allows a...
An issue in QiboSoft QiboCMS X1.0 allows a remote attacker to obtain sensitive information via the http_curl() function in the '/application/common. php' file that directly retrieves the...
NA - CVE-2025-25662 - Tenda O4 V3.0 V1.0.0.10(2936) is vulnerable to...
Tenda O4 V3.0 V1.0.0.10(2936) is vulnerable to Buffer Overflow in the function SafeSetMacFilter of the file /goform/setMacFilterList via the argument remark/type/time.
NA - CVE-2025-25663 - A vulnerability was found in Tenda AC8V4...
A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based...