NA - CVE-2025-2593 - A vulnerability has been found in FastCMS up to...
A vulnerability has been found in FastCMS up to 0.1.5 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /api/client/article/list. The manipulation...
NA - CVE-2025-2598 - When the AWS Cloud Development Kit (AWS CDK)...
When the AWS Cloud Development Kit (AWS CDK) Command Line Interface (AWS CDK CLI) is used with a credential plugin which returns an expiration property with the retrieved AWS credentials, the...
NA - CVE-2025-30157 - Envoy is a cloud-native high-performance...
Envoy is a cloud-native high-performance edge/middle/service proxy. Prior to 1.33.1, 1.32.4, 1.31.6, and 1.30.10, Envoy's ext_proc HTTP filter is at risk of crashing if a local reply is sent...
NA - CVE-2025-30168 - Parse Server is an open source backend that can...
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 7.5.2 and 8.0.2, the 3rd party authentication handling of Parse Server allows the...
NA - CVE-2019-16151 - An improper neutralization of input during web...
An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS 6.4.1 and below, 6.2.9 and below may allow a remote unauthenticated attacker to either redirect...
NA - CVE-2024-53349 - Insecure permissions in kuadrant v0.11.3 allow...
Insecure permissions in kuadrant v0.11.3 allow attackers to gain access to the service account's token, leading to escalation of privileges via the secretes component in the k8s cluster