NA - CVE-2025-53904 - The Scratch Channel is a news website that is...
The Scratch Channel is a news website that is under development as of time of this writing. The file `/api/admin.js` contains code that could make the website vulnerable to cross-site scripting. No...
High - CVE-2025-36097 - IBM WebSphere Application Server 9.0 and...
IBM WebSphere Application Server 9.0 and WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.7 are vulnerable to a denial of service, caused by a stack-based overflow. An attacker can...
High - CVE-2025-40777 - If a `named` caching resolver is configured...
If a `named` caching resolver is configured with `serve-stale-enable` `yes`, and with `stale-answer-client-timeout` set to `0` (the only allowable value other than `disabled`), and if the resolver,...
NA - CVE-2025-53908 - RomM is a self-hosted rom manager and player....
RomM is a self-hosted rom manager and player. Versions prior to 3.10.3 and 4.0.0-beta.3 have an authenticated path traversal vulnerability in the `/api/raw` endpoint. Anyone running the latest...
NA - CVE-2025-6983 - A
Clickjacking vulnerability in TP-Link...
A Clickjacking vulnerability in TP-Link Archer C1200 web management page allows an attacker to trick users into performing unintended actions via rendered UI layers or frames.This issue affects...
NA - CVE-2025-34117 - A remote code execution vulnerability exists in...
A remote code execution vulnerability exists in multiple Netcore and Netis routers models with firmware released prior to August 2014 due to the presence of an undocumented backdoor listener on UDP...