NA - CVE-2025-31414 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Stylemix Cost Calculator Builder allows Stored XSS. This issue affects Cost...
NA - CVE-2025-31417 - Missing Authorization vulnerability in Fahad...
Missing Authorization vulnerability in Fahad Mahmood WP Docs allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Docs: from n/a through n/a.
NA - CVE-2025-2402 - A hard-coded, non-random password for the...
A hard-coded, non-random password for the object store (minio) of KNIME Business Hub in all versions except the ones listed below allows an unauthenticated remote attacker in possession of the...
Low - CVE-2025-2980 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in Legrand SMS PowerView 1.x. This vulnerability affects unknown code. The manipulation of the argument redirect leads to open redirect. The...
Low - CVE-2025-2981 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in Legrand SMS PowerView 1.x. This issue affects some unknown processing. The manipulation of the argument redirect leads to...
NA - CVE-2025-3019 - KNIME Business Hub is affected by several...
KNIME Business Hub is affected by several cross-site scripting vulnerabilities in its web pages. If a user clicks on a malicious link or opens a malicious web page, arbitrary Java Script may be...
Medium - CVE-2025-2982 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Legrand SMS PowerView 1.x. Affected is an unknown function. The manipulation of the argument redirect leads to file inclusion. It is...
Medium - CVE-2025-2983 - A vulnerability has been found in Legrand SMS...
A vulnerability has been found in Legrand SMS PowerView 1.x and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument redirect leads...
NA - CVE-2025-2071 - A critical OS Command Injection vulnerability...
A critical OS Command Injection vulnerability has been identified in the FAST LTA Silent Brick WebUI, allowing remote attackers to execute arbitrary operating system commands via specially crafted...
NA - CVE-2025-2072 - A Reflected Cross-Site Scripting (XSS)...
A Reflected Cross-Site Scripting (XSS) vulnerability has been discovered in FAST LTA Silent Brick WebUI, allowing attackers to inject malicious JavaScript code into web pages viewed by users. This...