NA - CVE-2024-55570 - /api/user/users in the web GUI for the Cubro...
/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018) fixed in V5.0R14.5P4-V3.3R1 allows remote authenticated users of the application to increase their...
NA - CVE-2025-0555 - A Cross Site Scripting (XSS) vulnerability in...
A Cross Site Scripting (XSS) vulnerability in GitLab-EE affecting all versions from 16.6 prior to 17.7.6, 17.8 prior to 17.8.4, and 17.9 prior to 17.9.1 allows an attacker to bypass security...
NA - CVE-2025-24023 - Flask-AppBuilder is an application development...
Flask-AppBuilder is an application development framework. Prior to 4.5.3, Flask-AppBuilder allows unauthenticated users to enumerate existing usernames by timing the response time from the server...
NA - CVE-2025-25185 - GPT Academic provides interactive interfaces...
GPT Academic provides interactive interfaces for large language models. In 3.91 and earlier, GPT Academic does not properly account for soft links. An attacker can create a malicious file as a soft...
NA - CVE-2025-27094 - Tuleap is an open-source suite designed to...
Tuleap is an open-source suite designed to improve software development management and collaboration. A malicious user with access to a tracker could force-reset certain field configurations,...
NA - CVE-2025-27099 - Tuleap is an Open Source Suite to improve...
Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap allows cross-site scripting (XSS) via the tracker names used in the semantic timeframe...
NA - CVE-2025-27417 - WeGIA is an open source Web Manager for...
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A Stored Cross-Site Scripting (XSS) vulnerability was identified in the adicionar_status_atendido.php...
NA - CVE-2025-27418 - WeGIA is an open source Web Manager for...
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A Stored Cross-Site Scripting (XSS) vulnerability was identified in the adicionar_tipo_atendido.php...
NA - CVE-2025-27419 - WeGIA is an open source Web Manager for...
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A Denial of Service (DoS) vulnerability exists in WeGIA. This vulnerability allows any...
NA - CVE-2025-27420 - WeGIA is an open source Web Manager for...
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A Stored Cross-Site Scripting (XSS) vulnerability was identified in the...