NA - CVE-2025-25184 - Rack provides an interface for developing web...
Rack provides an interface for developing web applications in Ruby. Prior to versions 2.2.11, 3.0.12, and 3.1.11, Rack::CommonLogger can be exploited by crafting input that includes newline...
NA - CVE-2025-25742 - D-Link DIR-853 A1 FW1.20B07 was discovered to...
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the AccountPassword parameter in the SetSysEmailSettings module.
NA - CVE-2025-25744 - D-Link DIR-853 A1 FW1.20B07 was discovered to...
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetDynamicDNSSettings module.
NA - CVE-2025-25746 - D-Link DIR-853 A1 FW1.20B07 was discovered to...
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetWanSettings module.
NA - CVE-2024-6097 - In Progress® Telerik® Reporting versions prior...
In Progress® Telerik® Reporting versions prior to 2025 Q1 (19.0.25.211), information disclosure is possible by a local threat actor through an absolute path vulnerability.
Low - CVE-2025-1213 - A vulnerability was found in pihome-shc PiHome...
A vulnerability was found in pihome-shc PiHome 1.77. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /index.php. The manipulation of the argument...
Medium - CVE-2025-1214 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in pihome-shc PiHome 2.0. This affects an unknown part of the file /user_accounts.php?uid of the component Role-Based Access Control. The...
NA - CVE-2025-25198 - mailcow: dockerized is an open source...
mailcow: dockerized is an open source groupware/email suite based on docker. Prior to version 2025-01a, a vulnerability in mailcow's password reset functionality allows an attacker to...
NA - CVE-2025-25199 - go-crypto-winnative Go crypto backend for...
go-crypto-winnative Go crypto backend for Windows using Cryptography API: Next Generation (CNG). Prior to commit f49c8e1379ea4b147d5bff1b3be5b0ff45792e41, calls to `cng.TLS1PRF` don't release...