NA - CVE-2025-43877 - WRC-1167GHBK2-S contains a stored cross-site...
WRC-1167GHBK2-S contains a stored cross-site scripting vulnerability in WebGUI. If exploited, an arbitrary script may be executed on the web browser of the user who accessed WebGUI of the product.
NA - CVE-2025-43879 - WRH-733GBK and WRH-733GWH contain an improper...
WRH-733GBK and WRH-733GWH contain an improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in the telnet function. If a remote...
NA - CVE-2025-48890 - WRH-733GBK and WRH-733GWH contain an improper...
WRH-733GBK and WRH-733GWH contain an improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in miniigd SOAP service. If a remote...
NA - CVE-2025-50213 - Failure to Sanitize Special Elements into a...
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in Apache Airflow Providers Snowflake. This issue affects Apache Airflow Providers Snowflake:...
Medium - CVE-2025-5258 - The Conference Scheduler plugin for WordPress...
The Conference Scheduler plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘className’ parameter in all versions up to, and including, 2.5.1 due to insufficient input...
High - CVE-2025-3091 - An low privileged remote attacker in possession...
An low privileged remote attacker in possession of the second factor for another user can login as that user without knowledge of the other user`s password.
High - CVE-2025-6206 - The Aiomatic - Automatic AI Content Writer &...
The Aiomatic - Automatic AI Content Writer & Editor, GPT-3 & GPT-4, ChatGPT ChatBot & AI Toolkit plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in...