Medium - CVE-2025-6976 - The Events Manager – Calendar, Bookings,...
The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including,...
Medium - CVE-2025-7152 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in Campcodes Advanced Online Voting System 1.0. Affected is an unknown function of the file /admin/candidates_add.php. The manipulation of the...
Low - CVE-2025-7153 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in CodeAstro Simple Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /doctor.html of the...
Medium - CVE-2025-31326 - SAP?BusinessObjects Business?Intelligence...
SAP?BusinessObjects Business?Intelligence Platform (Web Intelligence) is vulnerable to HTML Injection, allowing an attacker with basic user privileges to inject malicious code into specific input...
High - CVE-2025-42952 - SAP Business Warehouse and SAP Plug-In Basis...
SAP Business Warehouse and SAP Plug-In Basis allows an authenticated attacker to add fields to arbitrary SAP database tables and/or structures, potentially rendering the system unusable. On...
High - CVE-2025-42953 - SAP Netweaver System Configuration does not...
SAP Netweaver System Configuration does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. This could completely compromise the integrity...