Medium - CVE-2025-5658 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in PHPGurukul Complaint Management System 2.0. Affected is an unknown function of the file /admin/updatecomplaint.php. The manipulation of the...
Medium - CVE-2025-5659 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in PHPGurukul Complaint Management System 2.0. Affected by this vulnerability is an unknown functionality of the file /user/profile.php. The...
Medium - CVE-2025-5660 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in PHPGurukul Complaint Management System 2.0. Affected by this issue is some unknown functionality of the file...
NA - CVE-2025-0691 - Improper access control in permissions...
Improper access control in permissions component in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the "Edit permission" permission by bypassing the client side...
NA - CVE-2025-27445 - A path traversal vulnerability in RSFirewall...
A path traversal vulnerability in RSFirewall component 2.9.7 - 3.1.5 for Joomla was discovered. This vulnerability allows authenticated users to read arbitrary files outside the Joomla root...
NA - CVE-2025-27753 - A SQLi vulnerability in RSMediaGallery...
A SQLi vulnerability in RSMediaGallery component 1.7.4 - 2.1.6 for Joomla was discovered. The vulnerability is due to the use of unescaped user-supplied parameters in SQL queries within the...
NA - CVE-2025-27754 - A stored XSS vulnerability in RSBlog! component...
A stored XSS vulnerability in RSBlog! component 1.11.6 - 1.14.4 for Joomla was discovered. The vulnerability allows authenticated users to inject malicious JavaScript into the plugin's...
NA - CVE-2025-30084 - A stored XSS vulnerability in RSMail! component...
A stored XSS vulnerability in RSMail! component 1.19.20 - 1.22.26 for Joomla was discovered. The issue occurs within the dashboard component, where user-supplied input is not properly sanitized...
NA - CVE-2025-3768 - Improper access control in Tor network blocking...
Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the tor blocking feature when the Devolutions hosted...
NA - CVE-2025-47827 - In IGEL OS before 11, Secure Boot can be...
In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptographic signature. Ultimately, a crafted root filesystem can be mounted from an...