NA - CVE-2025-0914 - An improper access control issue in the VQL...
An improper access control issue in the VQL shell feature in Velociraptor Versions < 0.73.4 allowed authenticated users to execute the execve() plugin in deployments where this was explicitly...
Medium - CVE-2025-1741 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in b1gMail up to 7.4.1-pl1. Affected by this vulnerability is an unknown functionality of the file src/admin/users.php of the component Admin...
NA - CVE-2025-1755 - MongoDB Compass may be susceptible to local...
MongoDB Compass may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privileges, when a crafted...
NA - CVE-2025-1756 - mongosh may be susceptible to local privilege...
mongosh may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privilege, when a crafted file is...
NA - CVE-2025-25323 - An issue in Qianjin Network Information...
An issue in Qianjin Network Information Technology (Shanghai) Co., Ltd 51Job iOS 14.22.0 allows attackers to access sensitive user information via supplying a crafted link.
NA - CVE-2025-25324 - An issue in Shandong Provincial Big Data Center...
An issue in Shandong Provincial Big Data Center AiShanDong iOS 5.0.0 allows attackers to access sensitive user information via supplying a crafted link.
NA - CVE-2025-25325 - An issue in Yibin Fengguan Network Technology...
An issue in Yibin Fengguan Network Technology Co., Ltd YuPao DirectHire iOS 8.8.0 allows attackers to access sensitive user information via supplying a crafted link.
NA - CVE-2025-25326 - An issue in Merchants Union Consumer Finance...
An issue in Merchants Union Consumer Finance Company Limited Merchants Union Finance iOS 6.19.0 allows attackers to access sensitive user information via supplying a crafted link.