High - CVE-2025-7131 - A vulnerability was found in Campcodes Payroll...
A vulnerability was found in Campcodes Payroll Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file...
NA - CVE-2025-43930 - Hashview 0.8.1 allows account takeover via the...
Hashview 0.8.1 allows account takeover via the password reset feature because SERVER_NAME is not configured and thus a reset depends on the Host HTTP header.
NA - CVE-2025-53486 - The WikiCategoryTagCloud extension is...
The WikiCategoryTagCloud extension is vulnerable to reflected XSS via the linkstyle attribute, which is improperly concatenated into inline HTML without escaping. An attacker can inject JavaScript...
Medium - CVE-2025-5987 - A flaw was found in libssh when using the...
A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a...
NA - CVE-2025-6711 - An issue has been identified in MongoDB Server...
An issue has been identified in MongoDB Server where unredacted queries may inadvertently appear in server logs when certain error conditions are encountered. This issue affects MongoDB Server v8.0...
NA - CVE-2025-6712 - MongoDB Server may be susceptible to disruption...
MongoDB Server may be susceptible to disruption caused by high memory usage, potentially leading to server crash. This condition is linked to inefficiencies in memory management related to internal...
NA - CVE-2025-6713 - An unauthorized user may leverage a specially...
An unauthorized user may leverage a specially crafted aggregation pipeline to access data without proper authorization due to improper handling of the $mergeCursors stage in MongoDB Server. This...
NA - CVE-2025-6714 - MongoDB Server's mongos component can...
MongoDB Server's mongos component can become unresponsive to new connections due to incorrect handling of incomplete data. This affects MongoDB when configured with load balancer support. This...
NA - CVE-2025-6793 - Marvell QConvergeConsole QLogicDownloadImpl...
Marvell QConvergeConsole QLogicDownloadImpl Directory Traversal Arbitrary File Deletion and Information Disclosure Vulnerability. This vulnerability allows remote attackers to delete arbitrary...