NA - CVE-2025-2747 - An authentication bypass vulnerability in...
An authentication bypass vulnerability in Kentico Xperience allows authentication bypass via the Staging Sync Server component password handling for the server defined None type. Authentication...
NA - CVE-2025-2748 - The Kentico Xperience application does not...
The Kentico Xperience application does not fully validate or filter files uploaded via the multiple-file upload functionality, which allows for stored XSS.This issue affects Kentico Xperience...
NA - CVE-2025-2749 - An authenticated remote code execution in...
An authenticated remote code execution in Kentico Xperience allows authenticated users Staging Sync Server to upload arbitrary data to path relative locations. This results in path traversal and...
NA - CVE-2025-30162 - Cilium is a networking, observability, and...
Cilium is a networking, observability, and security solution with an eBPF-based dataplane. For Cilium users who use Gateway API for Ingress for some services and use LB-IPAM or BGP for LB Service...
NA - CVE-2025-30163 - Cilium is a networking, observability, and...
Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Node based network policies (`fromNodes` and `toNodes`) will incorrectly permit traffic to/from non-node...
Medium - CVE-2025-2708 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in zhijiantianya ruoyi-vue-pro 2.4.1. This affects an unknown part of the file /admin-api/infra/file/upload of the component Backend...
Medium - CVE-2025-2709 - A vulnerability has been found in Yonyou UFIDA...
A vulnerability has been found in Yonyou UFIDA ERP-NC 5.0 and classified as problematic. This vulnerability affects unknown code of the file /login.jsp. The manipulation of the argument...
NA - CVE-2025-29135 - A stack-based buffer overflow vulnerability in...
A stack-based buffer overflow vulnerability in Tenda AC7 V15.03.06.44 allows a remote attacker to execute arbitrary code through a stack overflow attack using the security parameter of the...