Medium - CVE-2024-8494 - The Elementor Website Builder Pro plugin for...
The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.25.10 via the 'elementor-template'...
NA - VU#733789 - ChatGPT-4o contains security bypass vulnerability through time and search functions called "Time Bandit"
OverviewChatGPT-4o contains a jailbreak vulnerability called "Time Bandit" that allows an attacker the ability to circumvent the safety guardrails of ChatGPT and instruct it to provide illicit or...
NA - CVE-2024-53615 - A command injection vulnerability in the video...
A command injection vulnerability in the video thumbnail rendering component of Karl Ward's files.gallery v0.3.0 through 0.11.0 allows remote attackers to execute arbitrary code via a crafted...
NA - CVE-2024-55416 - DevDojo Voyager through version 1.8.0 is...
DevDojo Voyager through version 1.8.0 is vulnerable to reflected XSS via /admin/compass. By manipulating an authenticated user to click on a link, arbitrary Javascript can be executed.
NA - CVE-2024-55417 - DevDojo Voyager through version 1.8.0 is...
DevDojo Voyager through version 1.8.0 is vulnerable to bypassing the file type verification when an authenticated user uploads a file via /admin/media/upload. An authenticated user can upload a web...
Low - CVE-2025-0871 - A vulnerability classified as problematic has...
A vulnerability classified as problematic has been found in Maybecms 1.2. This affects an unknown part of the file /mb/admin/index.php?u=article-edit of the component Add Article. The manipulation...
NA - CVE-2025-22218 - VMware Aria Operations for Logs contains an...
VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product...
Medium - CVE-2025-23367 - A flaw was found in the Wildfly Server Role...
A flaw was found in the Wildfly Server Role Based Access Control (RBAC) provider. When authorization to control management operations is secured using the Role Based Access Control provider, a user...
Medium - CVE-2025-0872 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an unknown function of the file /addpayment.php. The manipulation of the argument...