High - CVE-2025-26395 - SolarWinds Observability Self-Hosted
was...
SolarWinds Observability Self-Hosted was susceptible to a cross-site scripting (XSS) vulnerability due to an unsanitized field in the URL. The attack requires authentication using an...
NA - CVE-2025-27505 - GeoServer is an open source server that allows...
GeoServer is an open source server that allows users to share and edit geospatial data. It is possible to bypass the default REST API security and access the index page. The REST API security...
NA - CVE-2025-30145 - GeoServer is an open source server that allows...
GeoServer is an open source server that allows users to share and edit geospatial data. Malicious Jiffle scripts can be executed by GeoServer, either as a rendering transformation in WMS dynamic...
NA - CVE-2025-37100 - A vulnerability in the APIs of HPE Aruba...
A vulnerability in the APIs of HPE Aruba Networking Private 5G Core could potentially expose sensitive information to unauthorized users. A successful exploitation could allow an attacker to...
NA - CVE-2025-46612 - The Panel Designer dashboard in Airleader...
The Panel Designer dashboard in Airleader Master and Easy before 6.36 allows remote attackers to execute arbitrary commands via a wizard/workspace.jsp unrestricted file upload. To exploit this, the...
High - CVE-2025-5335 - A maliciously crafted binary file when...
A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the Autodesk Installer application....
Medium - CVE-2025-27206 - Adobe Commerce versions 2.4.8, 2.4.7-p5,...
Adobe Commerce versions 2.4.8, 2.4.7-p5, 2.4.6-p10, 2.4.5-p12, 2.4.4-p13 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An...
Medium - CVE-2025-27207 - Adobe Commerce versions 2.4.8, 2.4.7-p5,...
Adobe Commerce versions 2.4.8, 2.4.7-p5, 2.4.6-p10, 2.4.5-p12, 2.4.4-p13 and earlier are affected by an Improper Access Control vulnerability that could result in privilege escalation. A low...