NA - CVE-2025-22402 - Dell Update Manager Plugin, version(s) 1.5.0...
Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability. A low privileged attacker with...
NA - CVE-2025-1072 - A Denial of Service (DoS) issue has been...
A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14.1 prior to 17.3.7, 17.4 prior to 17.4.4, and 17.5 prior to 17.5.2. A denial of service...
NA - CVE-2024-13352 - The Legull WordPress plugin through 1.2.2 does...
The Legull WordPress plugin through 1.2.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against...
NA - CVE-2024-13492 - The Guten Free Options WordPress plugin through...
The Guten Free Options WordPress plugin through 0.9.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used...
Medium - CVE-2024-13841 - The Builder Shortcode Extras – WordPress...
The Builder Shortcode Extras – WordPress Shortcodes Collection to Save You Time plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.0 via the...
NA - CVE-2025-23085 - A memory leak could occur when a remote peer...
A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to...
NA - CVE-2025-22880 - Delta Electronics CNCSoft-G2 lacks proper...
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. If a target visits a malicious page or opens a...
NA - CVE-2025-1077 - A security vulnerability has been identified in...
A security vulnerability has been identified in the IBL Software Engineering Visual Weather and derived products (NAMIS, Aero Weather, Satellite Weather). The vulnerability is present in the...
NA - CVE-2025-0303 - in OpenHarmony v4.1.2 and prior versions allow...
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through buffer overflow.