Medium - CVE-2025-0677 - A flaw was found in grub2. When performing a...
A flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to read the file content, however, it fails...
NA - CVE-2023-51297 - A lack of rate limiting in the 'Email...
A lack of rate limiting in the 'Email Settings' feature of PHPJabbers Hotel Booking System v4.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a...
NA - CVE-2023-51298 - PHPJabbers Event Booking Calendar v4.0 is...
PHPJabbers Event Booking Calendar v4.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on...
NA - CVE-2023-51299 - PHPJabbers Hotel Booking System v4.0 is...
PHPJabbers Hotel Booking System v4.0 is vulnerable to HTML Injection in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters.
NA - CVE-2023-51300 - PHPJabbers Hotel Booking System v4.0 is...
PHPJabbers Hotel Booking System v4.0 is vulnerable to Cross-Site Scripting (XSS) vulnerabilities in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters.
NA - CVE-2023-51301 - A lack of rate limiting in the "Login Section,...
A lack of rate limiting in the "Login Section, Forgot Email" feature of PHPJabbers Hotel Booking System v4.0 allows attackers to send an excessive amount of reset requests for a legitimate user,...
NA - CVE-2023-51302 - PHPJabbers Hotel Booking System v4.0 is...
PHPJabbers Hotel Booking System v4.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on...
NA - CVE-2023-51303 - PHPJabbers Event Ticketing System v1.0 is...
PHPJabbers Event Ticketing System v1.0 is vulnerable to Multiple HTML Injection in the "lid, name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters.
NA - CVE-2025-25196 - OpenFGA is a high-performance and flexible...
OpenFGA is a high-performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar. OpenFGA < v1.8.4 (Helm chart < openfga-0.2.22, docker < v.1.8.4) are...
NA - CVE-2025-27090 - Sliver is an open source cross-platform...
Sliver is an open source cross-platform adversary emulation/red team framework, it can be used by organizations of all sizes to perform security testing. The reverse port forwarding in sliver...