NA - CVE-2025-6710 - MongoDB Server may be susceptible to stack...
MongoDB Server may be susceptible to stack overflow due to JSON parsing mechanism, where specifically crafted JSON inputs may induce unwarranted levels of recursion, resulting in excessive stack...
NA - CVE-2025-29331 - An issue in MHSanaei 3x-ui before v.2.5.3 and...
An issue in MHSanaei 3x-ui before v.2.5.3 and before allows a remote attacker to execute arbitrary code via the management script x-ui passes the no check certificate option to wget when...
NA - CVE-2025-51672 - A time-based blind SQL injection vulnerability...
A time-based blind SQL injection vulnerability was identified in the PHPGurukul Dairy Farm Shop Management System 1.3. The vulnerability exists in the manage-companies.php file and allows remote...
NA - CVE-2025-52887 - cpp-httplib is a C++11 single-file header-only...
cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. In version 0.21.0, when many http headers fields are passed in, the library does not limit the number of headers,...
NA - CVE-2025-52900 - File Browser provides a file managing interface...
File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, preview, rename and edit files. The file access permissions for files uploaded to...
NA - CVE-2025-52902 - File Browser provides a file managing interface...
File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, preview, rename and edit files. The Markdown preview function of File Browser...
NA - CVE-2025-53002 - LLaMA-Factory is a tuning library for large...
LLaMA-Factory is a tuning library for large language models. A remote code execution vulnerability was discovered in LLaMA-Factory versions up to and including 0.9.3 during the LLaMA-Factory...
NA - CVE-2025-53007 - arduino-esp32 provides an Arduino core for the...
arduino-esp32 provides an Arduino core for the ESP32. Versions prior to 3.3.0-RC1 and 3.2.1 contain a HTTP Response Splitting vulnerability. The `sendHeader` function takes arbitrary input for the...
Low - CVE-2025-6696 - A vulnerability was found in LabRedesCefetRJ...
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been classified as problematic. Affected is an unknown function of the file /html/atendido/Cadastro_Atendido.php of the component...