High - CVE-2025-33112 - IBM AIX 7.3 and IBM VIOS 4.1.1 Perl...
IBM AIX 7.3 and IBM VIOS 4.1.1 Perl implementation could allow a non-privileged local user to exploit a vulnerability to execute arbitrary code due to improper neutralization of pathname input.
High - CVE-2025-43558 - InDesign Desktop versions ID20.2, ID19.5.3 and...
InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user....
High - CVE-2025-43589 - InDesign Desktop versions ID20.2, ID19.5.3 and...
InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation...
High - CVE-2025-43590 - InDesign Desktop versions ID20.2, ID19.5.3 and...
InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user....
High - CVE-2025-43593 - InDesign Desktop versions ID20.2, ID19.5.3 and...
InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user....
NA - CVE-2024-37394 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability in the Project Dashboards of REDCap 13.1.9 allows authenticated users to execute arbitrary web script or HTML by injecting a crafted payload into...
NA - CVE-2024-37395 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability in the Public Survey function of REDCap 13.1.9 allows authenticated users to execute arbitrary web script or HTML by injecting a crafted payload...
NA - CVE-2024-37396 - A stored cross-site scripting (XSS)...
A stored cross-site scripting (XSS) vulnerability in the Calendar function of REDCap 13.1.9 allows authenticated users to execute arbitrary web script or HTML by injecting a crafted payload into...