NA - CVE-2025-0927 - Attila Szász discovered that the HFS+ file...
Attila Szász discovered that the HFS+ file system implementation in the Linux Kernel contained a heap overflow vulnerability. An attacker could use a specially crafted file system image that, when...
NA - CVE-2025-27553 - Relative Path Traversal vulnerability in Apache...
Relative Path Traversal vulnerability in Apache Commons VFS before 2.10.0. The FileObject API in Commons VFS has a 'resolveFile' method that takes a 'scope' parameter....
Medium - CVE-2025-2651 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /oews/admin/. The manipulation leads to...
Medium - CVE-2025-2652 - A vulnerability has been found in...
A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The...
NA - CVE-2025-2691 - Versions of the package nossrf before 1.0.4 are...
Versions of the package nossrf before 1.0.4 are vulnerable to Server-Side Request Forgery (SSRF) where an attacker can provide a hostname that resolves to a local or reserved IP address space and...
NA - CVE-2025-30474 - Exposure of Sensitive Information to an...
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Commons VFS. The FtpFileObject class can throw an exception when a file is not found, revealing the original URI...
Medium - CVE-2025-2653 - A vulnerability was found in FoxCMS 1.25 and...
A vulnerability was found in FoxCMS 1.25 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to improper authorization. The attack may be...
High - CVE-2025-2654 - A vulnerability was found in SourceCodester AC...
A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/services/manage_service.php. The...
High - CVE-2025-29795 - Improper link resolution before file access...
Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.