NA - CVE-2025-46035 - Buffer Overflow vulnerability in Tenda AC6...
Buffer Overflow vulnerability in Tenda AC6 v.15.03.05.16 allows a remote attacker to cause a denial of service via the oversized schedStartTime and schedEndTime parameters in an unauthenticated...
NA - CVE-2025-49467 - A SQL injection vulnerability in JEvents...
A SQL injection vulnerability in JEvents component before 3.6.88 and 3.6.82.1 for Joomla was discovered. The extension is vulnerable to SQL injection via publicly accessible actions to list events...
NA - CVE-2023-45256 - Multiple SQL injection vulnerabilities in the...
Multiple SQL injection vulnerabilities in the EuroInformation MoneticoPaiement module before 1.1.1 for PrestaShop allow remote attackers to execute arbitrary SQL commands via the TPE, societe, MAC,...
NA - CVE-2024-55567 - Improper input validation was discovered in...
Improper input validation was discovered in UsbCoreDxe in Insyde InsydeH2O kernel 5.4 before 05.47.01, 5.5 before 05.55.01, 5.6 before 05.62.01, and 5.7 before 05.71.01. The SMM module has an SMM...
NA - CVE-2025-49080 - There is a memory management vulnerability in...
There is a memory management vulnerability in Absolute Secure Access server versions 9.0 to 13.54. Attackers with network access to the server can cause a Denial of Service by sending a specially...
NA - CVE-2025-5982 - An issue has been discovered in GitLab EE...
An issue has been discovered in GitLab EE affecting all versions from 12.0 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. Under certain conditions users could bypass IP access...
NA - CVE-2025-43863 - vantage6 is an open source framework built to...
vantage6 is an open source framework built to enable, manage and deploy privacy enhancing technologies like Federated Learning and Multi-Party Computation. If attacker gets access to an...
NA - CVE-2025-43866 - vantage6 is an open-source infrastructure for...
vantage6 is an open-source infrastructure for privacy preserving analysis. The JWT secret key in the vantage6 server is auto-generated unless defined by the user. The auto-generated key is a UUID1,...
NA - CVE-2025-49081 - There is an insufficient input validation...
There is an insufficient input validation vulnerability in the warehouse component of Absolute Secure Access prior to server version 13.55. Attackers with system administrator permissions can...
NA - CVE-2025-49575 - Citizen is a MediaWiki skin that makes...
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. Multiple system messages are inserted into the CommandPaletteFooter as raw HTML, allowing anybody who can edit...