High - CVE-2025-6863 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in PHPGurukul Local Services Search Engine Management System 2.1. Affected by this vulnerability is an unknown functionality of the file...
Medium - CVE-2025-6864 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in SeaCMS up to 13.2. Affected by this issue is some unknown functionality of the file /admin_type.php. The manipulation leads...
Medium - CVE-2025-6865 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, was found in DaiCuo up to 1.3.13. This affects an unknown part of the file /admin.php/addon/index. The manipulation leads to cross-site request...
Medium - CVE-2025-6866 - A vulnerability has been found in code-projects...
A vulnerability has been found in code-projects Simple Forum 1.0 and classified as critical. This vulnerability affects unknown code of the file /forum_downloadfile.php. The manipulation of the...
Medium - CVE-2025-6867 - A vulnerability was found in SourceCodester...
A vulnerability was found in SourceCodester Simple Company Website 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/services/manage.php. The...
Medium - CVE-2025-6868 - A vulnerability was found in SourceCodester...
A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/clients/manage.php. The manipulation...
NA - CVE-2025-24289 - A Cross-Site Request Forgery (CSRF) leading to...
A Cross-Site Request Forgery (CSRF) leading to Cross-Site Scripting (XSS) vulnerability in the UCRM Client Signup Plugin (v1.3.4 and earlier) could allow privilege escalation if an Administrator is...
NA - CVE-2025-24290 - Multiple Authenticated SQL Injection...
Multiple Authenticated SQL Injection vulnerabilities found in UISP Application (Version 2.4.206 and earlier) could allow a malicious actor with low privileges to escalate privileges.
NA - CVE-2025-24292 - A misconfigured query in UniFi Network...
A misconfigured query in UniFi Network (v9.1.120 and earlier) could allow users to authenticate to Enterprise WiFi or VPN Server (l2tp and OpenVPN) using a device’s MAC address from 802.1X or MAC...
Medium - CVE-2025-6869 - A vulnerability was found in SourceCodester...
A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file...