NA - CVE-2025-0928 - In Juju versions prior to 3.6.8 and 2.9.52, any...
In Juju versions prior to 3.6.8 and 2.9.52, any authenticated controller user was allowed to upload arbitrary agent binaries to any model or to the controller itself, without verifying model...
High - CVE-2025-30312 - Dimension versions 4.1.2 and earlier are...
Dimension versions 4.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this...
Medium - CVE-2025-47135 - Dimension versions 4.1.2 and earlier are...
Dimension versions 4.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass...
NA - CVE-2025-4663 - An Improper Check for Unusual or
Exceptional...
An Improper Check for Unusual or Exceptional Conditions vulnerability in Brocade Fabric OS before 9.2.2.a could allow an authenticated, network-based attacker to cause a Denial-of-Service...
NA - CVE-2025-53479 - The CheckUser extension’s Special:CheckUser...
The CheckUser extension’s Special:CheckUser interface is vulnerable to reflected XSS via the rev-deleted-user message. This message is rendered without proper escaping, making it possible to inject...
Medium - CVE-2025-7188 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in code-projects Chat System 1.0. Affected by this vulnerability is an unknown functionality of the file /user/addmember.php. The manipulation of...
Medium - CVE-2025-7189 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in code-projects Chat System 1.0. Affected by this issue is some unknown functionality of the file /user/send_message.php. The...
NA - CVE-2025-7362 - The MsUpload extension for MediaWiki is...
The MsUpload extension for MediaWiki is vulnerable to stored XSS via the msu-continue system message, which is inserted into the DOM without proper sanitization. The vulnerability occurs in the...
NA - CVE-2025-7363 - The TitleIcon extension for MediaWiki is...
The TitleIcon extension for MediaWiki is vulnerable to stored XSS through the #titleicon_unicode parser function. User input passed to this function is wrapped in an HtmlArmor object without...