Medium - CVE-2025-5291 - The Master Slider – Responsive Touch Slider...
The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's masterslider_pb and ms_slide shortcodes in all versions up to,...
Medium - CVE-2025-5700 - The Simple Logo Carousel plugin for WordPress...
The Simple Logo Carousel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 1.9.3 due to insufficient input sanitization...
High - CVE-2025-6020 - A flaw was found in linux-pam. The module...
A flaw was found in linux-pam. The module pam_namespace may use access user-controlled paths without proper protection, allowing local users to elevate their privileges to root via multiple symlink...
High - CVE-2025-33122 - IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 could allow a...
IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 could allow a user to gain elevated privileges due to an unqualified library call in IBM Advanced Job Scheduler for i. A malicious actor could cause...
NA - CVE-2025-47865 - A Local File Inclusion vulnerability in a Trend...
A Local File Inclusion vulnerability in a Trend Micro Apex Central widget below version 8.0.6955 could allow an attacker to gain remote code execution on affected installations.
NA - CVE-2025-47866 - An unrestricted file upload vulnerability in a...
An unrestricted file upload vulnerability in a Trend Micro Apex Central widget below version 8.0.6955 could allow an attacker to upload arbitrary files on affected installations.
NA - CVE-2025-47867 - A Local File Inclusion vulnerability in a Trend...
A Local File Inclusion vulnerability in a Trend Micro Apex Central widget in versions below 8.0.6955 could allow an attacker to include arbitrary files to execute as PHP code and lead to remote...