NA - CVE-2025-34061 - A backdoor in PHPStudy versions 2016 through...
A backdoor in PHPStudy versions 2016 through 2018 allows unauthenticated remote attackers to execute arbitrary PHP code on affected installations. The backdoor listens for base64-encoded PHP...
NA - CVE-2025-34082 - A command injection vulnerability exists in...
A command injection vulnerability exists in IGEL OS versions prior to 11.04.270 within the Secure Terminal and Secure Shadow services. The flaw arises due to improper input sanitization in the...
NA - CVE-2025-34086 - Bolt CMS versions 3.7.0 and earlier contain a...
Bolt CMS versions 3.7.0 and earlier contain a chain of vulnerabilities that together allow an authenticated user to achieve remote code execution. A user with valid credentials can inject arbitrary...
NA - CVE-2025-34087 - An authenticated command injection...
An authenticated command injection vulnerability exists in Pi-hole versions up to 3.3. When adding a domain to the allowlist via the web interface, the domain parameter is not properly sanitized,...
NA - CVE-2025-34088 - An authenticated remote code execution...
An authenticated remote code execution vulnerability exists in Pandora FMS version 7.0NG and earlier. The net_tools.php functionality allows authenticated users to execute arbitrary OS commands via...
NA - CVE-2025-34089 - An unauthenticated remote code execution...
An unauthenticated remote code execution vulnerability exists in Remote for Mac, a macOS remote control utility developed by Aexol Studio, in versions up to and including 2025.7. When the...
NA - CVE-2025-52554 - n8n is a workflow automation platform. Prior to...
n8n is a workflow automation platform. Prior to version 1.99.1, an authorization vulnerability was discovered in the /rest/executions/:id/stop endpoint of n8n. An authenticated user can stop...
NA - CVE-2025-53368 - Citizen is a MediaWiki skin that makes...
Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, page descriptions are inserted into raw HTML without proper sanitization by...
NA - CVE-2025-53369 - Short Description is a MediaWiki extension that...
Short Description is a MediaWiki extension that provides local short description support. In version 4.0.0, short descriptions are not properly sanitized before being inserted as HTML using...