NA - CVE-2025-48917 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal EU Cookie Compliance (GDPR Compliance) allows Cross-Site Scripting (XSS).This...
NA - CVE-2025-49580 - XWiki is a generic wiki platform. From 8.2 and...
XWiki is a generic wiki platform. From 8.2 and 7.4.5 until 17.1.0-rc-1, 16.10.4, and 16.4.7, pages can gain script or programming rights when they contain a link and the target of the link is...
NA - CVE-2025-49581 - XWiki is a generic wiki platform. Any user with...
XWiki is a generic wiki platform. Any user with edit right on a page (could be the user's profile) can execute code (Groovy, Python, Velocity) with programming right by defining a wiki macro....
Medium - CVE-2025-6035 - A flaw was found in GIMP. An integer overflow...
A flaw was found in GIMP. An integer overflow vulnerability exists in the GIMP "Despeckle" plug-in. The issue occurs due to unchecked multiplication of image dimensions, such as width, height, and...
Low - CVE-2025-6052 - A flaw was found in how GLib’s GString manages...
A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is already very large, combining it with more input can cause a hidden overflow in the size...
NA - CVE-2025-49582 - XWiki is a generic wiki platform. When editing...
XWiki is a generic wiki platform. When editing content that contains "dangerous" macros like malicious script macros that were authored by a user with fewer rights, XWiki warns about the execution...