NA - CVE-2025-46406 - A Privilege Context Switching Error (CWE-270)...
A Privilege Context Switching Error (CWE-270) in the Command Center Server could allow a privileged Operator with high level access in one Division to perform limited privileged activities across...
NA - CVE-2024-7650 - Improper Control of Generation of Code...
Improper Control of Generation of Code ('Code Injection') vulnerability in OpenText™ Directory Services allows Remote Code Inclusion. The vulnerability could allow access to the system...
Medium - CVE-2025-32990 - A heap-buffer-overflow (off-by-one) flaw was...
A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads certain settings from a template file, it allows...
High - CVE-2025-5037 - A maliciously crafted RFA file, when parsed...
A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the...
High - CVE-2025-5040 - A maliciously crafted RTE file, when parsed...
A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive...
NA - CVE-2025-6211 - A vulnerability in the DocugamiReader class of...
A vulnerability in the DocugamiReader class of the run-llama/llama_index repository, up to version 0.12.28, involves the use of MD5 hashing to generate IDs for document chunks. This approach leads...
NA - CVE-2024-36697 - A cross-site scripting (XSS) vulnerability in...
A cross-site scripting (XSS) vulnerability in the Admin Login page of Allworx System Software v9.1.9.12 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into...
NA - CVE-2025-7407 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Netgear D6400 1.0.0.114. This affects an unknown part of the file diag.cgi. The manipulation of the argument host_name leads to os...
High - CVE-2025-7424 - A flaw was found in the libxslt library. The...
A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability...
NA - CVE-2025-7425 - A flaw was found in libxslt where the attribute...
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree...