NA - CVE-2024-55416 - DevDojo Voyager through version 1.8.0 is...
DevDojo Voyager through version 1.8.0 is vulnerable to reflected XSS via /admin/compass. By manipulating an authenticated user to click on a link, arbitrary Javascript can be executed.
NA - CVE-2024-55417 - DevDojo Voyager through version 1.8.0 is...
DevDojo Voyager through version 1.8.0 is vulnerable to bypassing the file type verification when an authenticated user uploads a file via /admin/media/upload. An authenticated user can upload a web...
Low - CVE-2025-0871 - A vulnerability classified as problematic has...
A vulnerability classified as problematic has been found in Maybecms 1.2. This affects an unknown part of the file /mb/admin/index.php?u=article-edit of the component Add Article. The manipulation...
NA - CVE-2025-22218 - VMware Aria Operations for Logs contains an...
VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product...
Medium - CVE-2025-23367 - A flaw was found in the Wildfly Server Role...
A flaw was found in the Wildfly Server Role Based Access Control (RBAC) provider. When authorization to control management operations is secured using the Role Based Access Control provider, a user...
Medium - CVE-2025-0872 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an unknown function of the file /addpayment.php. The manipulation of the argument...
NA - CVE-2025-22219 - VMware Aria Operations for Logs contains a...
VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious actor with non-administrative privileges may be able to inject a malicious script that (can...
NA - CVE-2025-22220 - VMware Aria Operations for Logs contains a...
VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor with non-administrative privileges and network access to Aria Operations for Logs API may be able to...
NA - CVE-2025-22221 - VMware Aria Operation for Logs contains a...
VMware Aria Operation for Logs contains a stored cross-site scripting vulnerability. A malicious actor with admin privileges to VMware Aria Operations for Logs may be able to inject a malicious...
NA - CVE-2025-22222 - VMware Aria Operations contains an information...
VMware Aria Operations contains an information disclosure vulnerability. A malicious user with non-administrative privileges may exploit this vulnerability to retrieve credentials for an outbound...