NA - CVE-2024-46210 - An arbitrary file upload vulnerability in the...
An arbitrary file upload vulnerability in the MediaPool module of Redaxo CMS v5.17.1 allows attackers to execute arbitrary code via uploading a crafted file.
NA - CVE-2024-56511 - DataEase is an open source data visualization...
DataEase is an open source data visualization analysis tool. Prior to 2.10.4, there is a flaw in the authentication in the io.dataease.auth.filter.TokenFilter class, which can be bypassed and cause...
NA - CVE-2025-22152 - Atheos is a self-hosted browser-based cloud...
Atheos is a self-hosted browser-based cloud IDE. Prior to v600, the $path and $target parameters are not properly validated across multiple components, allowing an attacker to read, modify, or...
NA - CVE-2025-22596 - WeGIA is a web manager for charitable...
WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the modulos_visiveis.php endpoint of the WeGIA application. This...
NA - CVE-2025-22597 - WeGIA is a web manager for charitable...
WeGIA is a web manager for charitable institutions. A Stored Cross-Site Scripting (XSS) vulnerability was identified in the CobrancaController.php endpoint of the WeGIA application. This...
NA - CVE-2025-22598 - WeGIA is a web manager for charitable...
WeGIA is a web manager for charitable institutions. A Stored Cross-Site Scripting (XSS) vulnerability was identified in the cadastrarSocio.php endpoint of the WeGIA application. This vulnerability...
NA - CVE-2025-22599 - WeGIA is a web manager for charitable...
WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the home.php endpoint of the WeGIA application. This vulnerability allows...