NA - CVE-2025-6377 - A remote
code execution security issue exists...
A remote code execution security issue exists in the Rockwell Automation Arena®. A crafted DOE file can force Arena Simulation to write beyond the boundaries of an allocated object. Exploitation...
Medium - CVE-2025-1112 - IBM OpenPages with Watson 8.3 and 9.0 could...
IBM OpenPages with Watson 8.3 and 9.0 could allow an authenticated user to obtain sensitive information that should only be available to privileged users.
Medium - CVE-2025-2670 - IBM OpenPages 9.0 is vulnerable to information...
IBM OpenPages 9.0 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points related to workflow feature of OpenPages. An...
NA - CVE-2025-52364 - Insecure Permissions vulnerability in Tenda CP3...
Insecure Permissions vulnerability in Tenda CP3 Pro Firmware V22.5.4.93 allows the telnet service (telnetd) by default at boot via the initialization script /etc/init.d/eth.sh. This allows remote...
NA - CVE-2025-53546 - Folo organizes feeds content into one timeline....
Folo organizes feeds content into one timeline. Using pull_request_target on .github/workflows/auto-fix-lint-format-commit.yml can be exploited by attackers, since untrusted code can be executed...
NA - CVE-2025-7204 - In ConnectWise PSA versions older than 2025.9,...
In ConnectWise PSA versions older than 2025.9, a vulnerability exists where authenticated users could gain access to sensitive user information. Specific API requests were found to return an overly...
NA - CVE-2025-44177 - A directory traversal vulnerability was...
A directory traversal vulnerability was discovered in White Star Software Protop version 4.4.2-2024-11-27, specifically in the /pt3upd/ endpoint. An unauthenticated attacker can remotely read...
NA - CVE-2025-44526 - Realtek RTL8762EKF-EVB RTL8762E SDK V1.4.0 was...
Realtek RTL8762EKF-EVB RTL8762E SDK V1.4.0 was discovered to utilize insufficient permission checks on critical fields within Bluetooth Low Energy (BLE) data packets. This issue allows attackers to...
NA - CVE-2025-49604 - For Realtek AmebaD devices, a heap-based buffer...
For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and ameba-rtos-d before commit c2bfd8216a1cbc19ad2ab5f48f372ecea756d67a on...
NA - CVE-2025-53650 - Jenkins Credentials Binding Plugin...
Jenkins Credentials Binding Plugin 687.v619cb_15e923f and earlier does not properly mask (i.e., replace with asterisks) credentials present in exception error messages that are written to the build...