Medium - CVE-2025-1891 - A vulnerability was found in shishuocms 1.1 and...
A vulnerability was found in shishuocms 1.1 and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery. The attack may be...
NA - CVE-2025-27219 - In the CGI gem before 0.4.2 for Ruby, the...
In the CGI gem before 0.4.2 for Ruby, the CGI::Cookie.parse method in the CGI library contains a potential Denial of Service (DoS) vulnerability. The method does not impose any limit on the length...
NA - CVE-2025-27221 - In the URI gem before 1.0.3 for Ruby, the URI...
In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an inadvertent leakage of authentication credentials because userinfo is retained even after...
NA - CVE-2025-1695 - In NGINX Unit before version 1.34.2 with the...
In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests can lead to an infinite loop and cause an increase in CPU resource utilization. This vulnerability...