NA - CVE-2024-53698 - A double free vulnerability has been reported...
A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to...
NA - CVE-2024-53699 - An out-of-bounds write vulnerability has been...
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator...
NA - CVE-2024-53700 - A command injection vulnerability has been...
A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute arbitrary...
High - CVE-2025-0162 - IBM Aspera Shares 1.9.9 through 1.10.0 PL7 is...
IBM Aspera Shares 1.9.9 through 1.10.0 PL7 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote authenticated attacker could exploit this vulnerability...
NA - CVE-2025-27604 - XWiki Confluence Migrator Pro helps admins to...
XWiki Confluence Migrator Pro helps admins to import confluence packages into their XWiki instance. The homepage of the application is public which enables a guest to download the package which...
NA - CVE-2025-27607 - Python JSON Logger is a JSON Formatter for...
Python JSON Logger is a JSON Formatter for Python Logging. Between 30 December 2024 and 4 March 2025 Python JSON Logger was vulnerable to RCE through a missing dependency. This occurred because...
NA - CVE-2025-27822 - An issue was discovered in the Masquerade...
An issue was discovered in the Masquerade module before 1.x-1.0.1 for Backdrop CMS. It allows people to temporarily switch to another user account. The module provides a "Masquerade as admin"...