NA - CVE-2025-5054 - Race condition in Canonical apport up to and...
Race condition in Canonical apport up to and including 2.32.0 allows a local attacker to leak sensitive information via PID-reuse by leveraging namespaces. When handling a crash, the function...
High - CVE-2025-5357 - A vulnerability was found in FreeFloat FTP...
A vulnerability was found in FreeFloat FTP Server 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component PWD Command Handler. The...
High - CVE-2025-5358 - A vulnerability was found in...
A vulnerability was found in PHPGurukul/Campcodes Cyber Cafe Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file...
NA - CVE-2025-48883 - Chrome PHP allows users to start playing with...
Chrome PHP allows users to start playing with chrome/chromium in headless mode from PHP. Prior to version 1.14.0, CSS Selector expressions are not properly encoded, which can lead to XSS...
NA - CVE-2025-48885 - application-urlshortener create shortened URLs...
application-urlshortener create shortened URLs for XWiki pages. Versions prior to 1.2.4 are vulnerable to users with view access being able to create arbitrary pages. Any user (even guests) can...
NA - CVE-2025-48938 - go-gh is a collection of Go modules to make...
go-gh is a collection of Go modules to make authoring GitHub CLI extensions easier. A security vulnerability has been identified in versions prior to 2.12.1 where an attacker-controlled GitHub...
NA - CVE-2025-48942 - vLLM is an inference and serving engine for...
vLLM is an inference and serving engine for large language models (LLMs). In versions 0.8.0 up to but excluding 0.9.0, hitting the /v1/completions API with a invalid json_schema as a Guided Param...
NA - CVE-2025-48943 - vLLM is an inference and serving engine for...
vLLM is an inference and serving engine for large language models (LLMs). Version 0.8.0 up to but excluding 0.9.0 have a Denial of Service (ReDoS) that causes the vLLM server to crash if an invalid...
NA - CVE-2025-48944 - vLLM is an inference and serving engine for...
vLLM is an inference and serving engine for large language models (LLMs). In version 0.8.0 up to but excluding 0.9.0, the vLLM backend used with the /v1/chat/completions OpenAPI endpoint fails to...
High - CVE-2025-5359 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in Campcodes Online Hospital Management System 1.0. This affects an unknown part of the file /appointment-history.php. The manipulation of the...